DoD Previews New Third-Party Cyber Certification Requirements
Client Alert | 1 min read | 06.17.19
The Department of Defense is moving closer to a third-party certification to ensure compliance with its standard cybersecurity requirements – what is being called the “Cybersecurity Maturity Model Certification” (CMMC). While still in the early stages of development, the CMMC would likely require all contractors subject to DFARS 252.204-7012 to obtain a certification issued by an independent third party stating that the contractor has sufficiently implemented its required cybersecurity controls. Holding this certification would be a “go/no-go” condition to compete for relevant DoD work. Although NIST SP 800-171 is the default cybersecurity standard currently required under -7012, DoD is also exploring the creation of a new standard that would govern the certification. DoD is projecting that the CMMC will start appearing in solicitations as early as Fall 2020, but much work remains to be done – including potential revisions to -7012 – and will no doubt be informed by extensive industry engagement.
Contacts

Partner, Crowell Global Advisors Senior Director
- Washington, D.C.
- D | +1.202.624.2698
- Washington, D.C. (CGA)
- D | +1 202.624.2500
Insights
Client Alert | 8 min read | 12.10.25
Creativity You Can Use: CJEU Clarifies Copyright for Applied Art
On 4 December 2025, the Court of Justice of the EU (CJEU) issued a landmark judgment in the joined cases C-580/23 (Mio v. Asplund) and C-795/23 (USM v. Konektra) concerning copyright protection for “works of applied art” (i.e., utilitarian objects such as tables, furniture, lighting fixtures, sofas, chairs, kitchen appliances, vases, and fashion items).
Client Alert | 8 min read | 12.09.25
Client Alert | 4 min read | 12.08.25
California’s AB 2013 Requires Generative AI Data Disclosure by January 1, 2026
Client Alert | 4 min read | 12.04.25
District Court Grants Preliminary Injunction Against Seller of Gray Market Snack Food Products

