Military and Defense

Defense Department Will Likely Require Cybersecurity Capabilities for All Defense Contractors in 2020

The Defense Department expects that by June 2020, industry will see cybersecurity requirements included as part of new requests for information, which typically serve as one of the first steps in the awarding of new defense contracts.

Ellen Lord, the undersecretary of defense for acquisition and sustainment, said the new cybersecurity maturity model certification program is a critical part of ensuring that companies hoping to do business with the department meet important cybersecurity requirements.

“The cybersecurity maturity model certification, or CMMC program, establishes security as the foundation to acquisition and combines the various cybersecurity standards into one unified standard to secure the DOD supply chain,” Lord said.

She said the program will establish five levels of certification tailored to the criticality of a system or subsystem that a contractor might hope to do work on. The CMMC framework was developed by working with the defense industry, leadership on Capitol Hill and engagement with the public.

“These levels will measure technical capabilities and process maturity,” Lord said. “The CMMC framework will be made fully available in January 2020.”

The program’s concept is designed to ensure that any business doing work for the government can demonstrate that their computer networks and cybersecurity practices are up to the task of defending against intrusions by adversaries who want access to information about government contracts and weapons systems development.

“Cybersecurity is a threat for the DOD and for all of government, as well as critical U.S. business sectors, such as banking and healthcare,” Lord said. “We know the adversary is at cyberwar with us every day. So, this is a U.S. economic security issue, as well as a U.S. security issue. When we look at cybersecurity standards, I believe it is absolutely critical to be crystal clear as to what expectations [and] measurements are, what the metrics are and how we will basically audit against those.”

The government itself won’t audit potential contractors for compliance with the program’s standards. Instead, a third party will perform those audits. Lord said DOD is working with multiple companies that are interested in performing that work, and she said she expects a decision by January.

Lord said DOD expects some challenges for small businesses to meet the program’s requirements. DOD is aware of industry’s concerns, and efforts are being made to alleviate some of those concerns, she said.

“We know that this can be a burden to small companies, particularly, and small companies is where the preponderance of our innovation comes from,” Lord said. “So, we have been working with the primes, with the industry associations, with the mid-tiers, with the small companies on how we can most effectively roll this out so it doesn’t cause an enormous cost penalty for the industrial base.”

 

Source: Department of Defense

Content created by Conservative Daily News is available for re-publication without charge under the Creative Commons license. Visit our syndication page for details.

C. Todd Lopez

Share
Published by
C. Todd Lopez

Recent Posts

When Does Peaceful Protest Become Civil Unrest

Many of us have been watching the images of the protests on the Columbia, Yale,…

45 seconds ago

School Districts Slapped With Civil Rights Complaints Over Racially-Organized ‘Affinity Groups’

A parental rights organization filed civil-rights complaints against two school districts in Colorado on Friday,…

2 mins ago

Biden’s Heading Into An Election With The Lowest Approval Numbers In Modern History, Gallup Finds

President Joe Biden received the lowest 13th-quarter approval ratings in modern history heading into an…

4 hours ago

The VA Is Finally Catching Up With The 21st Century

America’s veterans deserve world-class healthcare. But for years, the infrastructure established to meet their needs…

8 hours ago

Lobbyists Rake In Record Revenue As Americans Grapple With Declining Wages

Washington, D.C.’s biggest lobbying firms are posting record revenues as Americans feel the heat from…

8 hours ago

Biden’s SEC Is After Your Privacy

A new program initiated by the Securities and Exchange Commission (SEC) will collect the details…

9 hours ago