Artwork

Content provided by Cherry Bekaert. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Cherry Bekaert or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!

How Will NIST Special Publication (SP) 800-171, Revision 3 Impact CMMC?

10:46
 
Share
 

Manage episode 365938728 series 2772889
Content provided by Cherry Bekaert. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Cherry Bekaert or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

In this episode, Eric Poppe, a Managing Director in Cherry Bekaert’s Government Contractor Industry practice, is joined by Brian Kirk, Senior Manager in the Firm’s Information Assurance & Cybersecurity practice, to discuss the impact of the Draft NIST Special Publication (SP) 800-171 Revision 3 on the Department of Defense’s (DoD) Cybersecurity Maturity Model Certification (CMMC) 2.0 program. The Revision 3 draft was released on May 10, 2023, and is out for public comment through July 14, 2023.

Listen in as they share insights into:

  • Why the update to NIST SP 800-171 is significant to CMMC
  • Timeline for the final version of NIST SP 800-171 Revision 3 and subsequent revisions to the CMMC Assessment Guide, which is based on NIST 800-171 Revision 2
  • Revisions to the set of supporting NIST publications on protecting controlled unclassified information, including SPs 800-171A (security requirement assessment), SP 800-172 (enhanced security requirements) and SP 800-172A (enhanced security requirement assessment)
  • A summary of the significant changes between NIST SP 800-171, Revision 2 and Draft NIST SP 800-171, Revision 3
  • Recommendations to DoD contractors seeking a CMMC assessment with CMMC readiness and Defense Industrial Base Cybersecurity Assessment Center (DIBCAC) Joint Surveillance Voluntary Level 2 assessments in partnership with the DIBCAC

If you have any questions regarding CMMC, Cherry Bekaert’s Information Assurance & Cybersecurity and Government Contracting advisors are available to discuss your situation with you. Cherry Bekaert is authorized by the Cybersecurity Maturity Model Certification (CMMC) Accreditation Body, Inc. (The Cyber AB) as a CMMC Third-Party Assessment Organization (C3PAO). As an authorized C3PAO, Cherry Bekaert assists DoD contractors seeking a CMMC assessment with CMMC readiness and DIBCAC Joint Surveillance Voluntary Level 2 assessments in partnership with the DIBCAC.
Having undergone Level 2 assessment as a Firm, Cherry Bekaert has a deep understanding of the assessment process to guide DoD contractors seeking a CMMC assessment.

Catch up on Cherry’s Bekaert’s previous guidance pertaining to CMMC 2.0:

View all Government Contracting Podcasts

  continue reading

83 episodes

Artwork
iconShare
 
Manage episode 365938728 series 2772889
Content provided by Cherry Bekaert. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Cherry Bekaert or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

In this episode, Eric Poppe, a Managing Director in Cherry Bekaert’s Government Contractor Industry practice, is joined by Brian Kirk, Senior Manager in the Firm’s Information Assurance & Cybersecurity practice, to discuss the impact of the Draft NIST Special Publication (SP) 800-171 Revision 3 on the Department of Defense’s (DoD) Cybersecurity Maturity Model Certification (CMMC) 2.0 program. The Revision 3 draft was released on May 10, 2023, and is out for public comment through July 14, 2023.

Listen in as they share insights into:

  • Why the update to NIST SP 800-171 is significant to CMMC
  • Timeline for the final version of NIST SP 800-171 Revision 3 and subsequent revisions to the CMMC Assessment Guide, which is based on NIST 800-171 Revision 2
  • Revisions to the set of supporting NIST publications on protecting controlled unclassified information, including SPs 800-171A (security requirement assessment), SP 800-172 (enhanced security requirements) and SP 800-172A (enhanced security requirement assessment)
  • A summary of the significant changes between NIST SP 800-171, Revision 2 and Draft NIST SP 800-171, Revision 3
  • Recommendations to DoD contractors seeking a CMMC assessment with CMMC readiness and Defense Industrial Base Cybersecurity Assessment Center (DIBCAC) Joint Surveillance Voluntary Level 2 assessments in partnership with the DIBCAC

If you have any questions regarding CMMC, Cherry Bekaert’s Information Assurance & Cybersecurity and Government Contracting advisors are available to discuss your situation with you. Cherry Bekaert is authorized by the Cybersecurity Maturity Model Certification (CMMC) Accreditation Body, Inc. (The Cyber AB) as a CMMC Third-Party Assessment Organization (C3PAO). As an authorized C3PAO, Cherry Bekaert assists DoD contractors seeking a CMMC assessment with CMMC readiness and DIBCAC Joint Surveillance Voluntary Level 2 assessments in partnership with the DIBCAC.
Having undergone Level 2 assessment as a Firm, Cherry Bekaert has a deep understanding of the assessment process to guide DoD contractors seeking a CMMC assessment.

Catch up on Cherry’s Bekaert’s previous guidance pertaining to CMMC 2.0:

View all Government Contracting Podcasts

  continue reading

83 episodes

所有剧集

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Quick Reference Guide