Pentagon Pauses Cybersecurity Certification Rollout for Defense Contractors

MT Newswires Live07-14

The Pentagon paused the next phase of its Cybersecurity Maturity Model Certification (CMMC) program, suspending a requirement for third-party cybersecurity audits that defense contractors said was driving small suppliers out of military work, Reuters reported Monday.

The Defense Department said program offices will continue requiring only Level 1 or Level 2 self-assessments instead of the third-party audits that were scheduled to become mandatory on Nov. 10. The department also launched a 60-day review, saying "CMMC compliance is forcing innovative companies out of the Defense Industrial Base."

The move follows complaints from small and mid-sized defense suppliers that compliance costs and lengthy waits for audits were prompting some companies to reconsider defense work, according to Reuters.

Disclaimer: Investing carries risk. This is not financial advice. The above content should not be regarded as an offer, recommendation, or solicitation on acquiring or disposing of any financial products, any associated discussions, comments, or posts by author or other users should not be considered as such either. It is solely for general information purpose only, which does not consider your own investment objectives, financial situations or needs. TTM assumes no responsibility or warranty for the accuracy and completeness of the information, investors should do their own research and may seek professional advice before investing.

Comments

We need your insight to fill this gap
Leave a comment