Insights
Sort by:
Client Alerts 85 results
Client Alert | 4 min read | 02.21.25
Client Alert | 8 min read | 01.17.25
Cyber For All: Proposed Rule Introduces Government-Wide CUI Cybersecurity Requirements
Client Alert | 8 min read | 10.14.24
Cybersecurity Matured: DoD Finalizes Cybersecurity Maturity Model Certification (CMMC) Program
Client Alert | 2 min read | 08.20.24
DFARS 7021 Clause 2.0: DoD Releases Proposed Rule Updating CMMC Clause
Client Alert | 6 min read | 07.30.24
Client Alert | 3 min read | 05.14.24
NIST Releases Final Version of NIST SP 800-171, Revision 3
Client Alert | 1 min read | 05.03.24
Client Alert | 2 min read | 03.21.24
Client Alert | 8 min read | 12.27.23
DoD’s New Year Resolution: A Cybersecurity Maturity Model Certification Program (CMMC) Proposed Rule
Client Alert | 4 min read | 11.14.23
The Holidays Come Early: NIST Unwraps Final Draft Revision 3 to NIST SP 800-171
Client Alert | 1 min read | 07.06.23
California Privacy Rights Act Enforcement Delayed
Client Alert | 4 min read | 06.21.23
Homeland Cybersecurity: DHS Overhauls Its CUI Program, Releases New Contract Clauses
Client Alert | 3 min read | 06.13.23
Softening the Blow: OMB Extends Software Supply Chain Security Deadline and Clarifies Scope
Client Alert | 2 min read | 05.12.23
Spring Has Sprung New Cyber Requirements: NIST Unveils Draft Revision 3 to NIST SP 800-171
Client Alert | 4 min read | 05.02.23
CISA Releases Draft Secure Software Development Self-Attestation Form
Client Alert | 1 min read | 03.27.23
Client Alert | 16 min read | 03.06.23
Biden Administration Releases Comprehensive National Cybersecurity Strategy
Client Alert | 5 min read | 01.13.23
Client Alert | 2 min read | 09.15.22
Going Hard on Software: OMB Unveils Mandatory Software Supply Chain Security Compliance Requirements
Yesterday, the Office of Management and Budget (OMB) released Memorandum M-22-18, implementing software supply chain security requirements that will have a significant impact on software companies and vendors in accordance with Executive Order 14028, Improving the Nation’s Cybersecurity. The Memorandum requires all federal agencies and their software suppliers to comply with the NIST Secure Software Development Framework (SSDF), NIST SP 800-218, and the NIST Software Supply Chain Security Guidance whenever third-party software is used on government information systems or otherwise affects government information. The term “software” includes firmware, operating systems, applications, and application services (e.g., cloud-based software), as well as products containing software. It is critical to note that these requirements will apply whenever there is a major version update or new software that the government will be using.
Client Alert | 1 min read | 08.01.22