All posts by Sharice Ruan

C3PAOs Signal Maturity in CMMC Program – The Time to Act is Now

C3PAO

The first CMMC Third Party Assessor Organization (C3PAO) was announced and listed on the CMMC Marketplace earlier this month. There are at least 156 known organizations aspiring for C3PAO status to pass the full Defense Industrial Base Cybersecurity Assessment Center (DIBCAC) assessment at CMMC Level 3. Ardalyst is one of those companies. The announcement of […]

Read more

Defense Contract Management Agency leader discusses CMMC and new DFARS interim rule during Ardalyst-hosted webinar

Understanding the DFARS Rule Change & the DIBCAC Assessment Process

John A. Ellis, Director of the Defense Contract Management Agency (DCMA) Software Division presided over a webinar with Ardalyst Mar. 3rd to assist the company’s efforts to help defense contractors understand the new Defense Acquisition Regulations System (DFARS) interim rule, requirements, and assessment methodology. With the new DFARS interim rule, defense contractors are facing increased scrutiny […]

Read more

Initial Thoughts on CMMC v0.4

Initial Thoughts on CMMC Version 0.4

The Department of Defense (DoD) Undersecretary for Acquisition and Sustainment is developing a unified cybersecurity standard for DoD acquisitions, the Cybersecurity Maturity Management Certification (CMMC). With the recent release of version 0.4 of the draft framework, we have much more information to start planning ahead for this requirement, though changes are expected after review and […]

Read more