Earlier this month hundreds of cybersecurity experts gathered in San Francisco for the 2022 RSA conference to discuss the current state of cybersecurity. Some of the biggest takeaways from the conference include updates regarding CMMC 2.0 and its timeline. For those unaware the CMMC is a framework that provides standardized controls and processes for manufacturers and organizations contracted by the Department of Defense(DoD) and working within the Defense Industrial Base(DIB). Read below to learn about some of the biggest CMMC takeaways from RSAC 2022.
The DoD will begin instituting continuous assessments of CMMC-compliant organizations. Once an organization submits a self-attestation questionnaire regarding CMMC compliance they will be subject to the monitoring of open-source channels by the Department of Defense through 3rd parties and internal resources. This monitoring will confirm whether or not the organization's attestation is reflective of their current security posture. If their actual security controls contradict the applicable level of certification they could lose their contract.
These CMMC takeaways from RSAC 2022 will continue to evolve. CorpInfoTech will help you stay on top of the latest CMMC information with our blogs and social media.
CorpInfoTech can help your organization establish and maintain CMMC compliance. Our unique assessment methodology allows for mapping between most common control frameworks including those required by DoD and numerous regulatory agencies, including PCI and HIPPA.