GSA introduces vendor risk assessment program in draft solicitation
The General Services Administration could soon start requiring on-site assessments of certain federal contractors under a new program to scrutinize risks to the supply chain. Tucked into the draft of...
View ArticleCybersecurity and government contracting: False Claims Act considerations
As the recent SolarWinds Orion attack makes clear, cybersecurity will be a focus in the coming years for both governmental and non-governmental entities alike. In the federal contracting community, it...
View ArticleDoD’s cybersecurity certification requirements to appear in DHS contracts
The Department of Defense is figuring out how to incorporate its Cybersecurity Maturity Model Certification (CMMC) program in contracts offered by the Department of Homeland Security, according to the...
View ArticleCMMC implementation creates issues for ‘shop floors’
As of Nov. 30, defense contractors and suppliers are required to comply with an interim rule that strengthens implementation of the Cybersecurity Maturity Model Certification (CMMC), which is designed...
View ArticleCMMC model tweaks coming after industry feedback
The foundation of the Cybersecurity Maturity Model Certification (CMMC) — the Department of Defense’s new cyber requirements for contractors — will see some coming changes, its leaders recently said....
View ArticleArmy awards $5 million ‘bridge’ contract for cyber training
Army Materials Command skipped a competitive bidding process for short-term cyber training services, citing urgent need while it waits for a bid protest to be resolved. “The growth of the Cyber threat...
View Article2021 NDAA includes numerous provisions impacting government contracts
The National Defense Authorization Act (NDAA) for Fiscal Year (FY) 2021 (Pub. L. No. 116-283) was enacted into law on January 1, 2021, when the Senate voted to override President Trump’s veto of the...
View Article10 of 15 of DoD’s major IT projects are behind schedule, GAO finds
The Defense Department’s software development approaches are helping to avoid cost increases and schedule delays for many major information technology systems, but uneven implementation of...
View ArticleCMMC: The dramatic year of the Pentagon’s contractor cybersecurity program
In 2020, an ambitious Defense Department effort to account for its suppliers’ cybersecurity had many in the community kicking and screaming in tow, but represents a new collective policy thrust that...
View ArticleGSA could be vulnerable to security threats from ‘trusted insiders’
The General Services Administration needs to bolster its efforts to protect against insider threats from current and recently separated employees, a watchdog reported recently. The GSA inspector...
View Article