NIST 800-171 & CMMC 2.0
CMMC Phase 2 Is on Hold: What Contractors Need to Know
Christopher Souza | CEO The Department of War has issued another significant update to the Cybersecurity Maturity Model Certification (CMMC) program. Class Deviation 2026-O0025, Revision 3. The most important takeaway is that the planned November 2026 rollout of mandatory CMMC Level 2 C3PAO certification assessments has been suspended. For now, applicable contracts may continue using CMMC Level 1 or Level 2 self-assessment requirements while the Phase 2 transition remains suspended.…
Continued about CMMC Phase 2 Is on Hold: What Contractors Need to KnowCMMC Is Delayed. Your Responsibility to Protect CUI Is Not!
Christopher Souza | CEO On July 13, 2026, the Department of Defense announced a 60-day suspension of CMMC 2.0 Phase II. That same day, the NSA and its international partners warned that Russian state-sponsored actors were actively exploiting vulnerable and poorly configured networks. Although the NSA warning focused primarily on routers, the threat was not limited to network equipment, as Russia, China, North Korea, Iran, and other nation-state adversaries continue…
Continued about CMMC Is Delayed. Your Responsibility to Protect CUI Is Not!CMMC Phase II Delayed: Why Preparation Still Matters
Christopher Souza | CEO On July 13, 2026, the Department of Defense (DoD) announced the temporary suspension of CMMC Phase II, which had been scheduled to begin on November 10, 2026. As part of the announcement, the DoD established a task force to conduct a 60-day review of the program while continuing to enforce existing cybersecurity requirements. Phase I remains in effect, and organizations must still comply with applicable self-assessment…
Continued about CMMC Phase II Delayed: Why Preparation Still MattersLeonardo DRS Sets CMMC Deadline! Is Your Organization Ready?
Christopher Souza | CEO The Cybersecurity Maturity Model Certification (CMMC) continues to gain momentum across the Defense Industrial Base (DIB). Leonardo DRS has formally notified suppliers that organizations supporting applicable Department of Defense programs will be expected to meet CMMC requirements by November 10, 2026, when the next phase of the Department of Defense’s (DoD’s) CMMC rollout begins. At that point, many contractors handling Controlled Unclassified Information (CUI) will need…
Continued about Leonardo DRS Sets CMMC Deadline! Is Your Organization Ready?Still on Windows 10? Why Not Upgrading is a Serious Security Risk for Businesses
Christopher Souza | CEO As of October 2025, Microsoft stopped supporting Windows 10, ending any new security updates, patches, or protection against newly discovered vulnerabilities. Despite this, millions of systems are still running on outdated software, presenting a considerable direct and indirect risk to organizations like yours. With extended support available ending on October 13, 2026, now is the time to take action to update these imminently vulnerable systems. Why…
Continued about Still on Windows 10? Why Not Upgrading is a Serious Security Risk for BusinessesImpacted by NeoSystem’s Dissolution? We’re Here to Help!
Christopher Souza | CEO The reported dissolution of NeoSystems has sent shockwaves across the Defense Industrial Base (DIB) and the broader CMMC ecosystem. Public reporting has alleged that NeoSystems terminated staff and ceased operations on May 1, 2026 without advance notice to clients leaving many organizations uncertain about access, documentation, data, and a clear path toward CMMC. For organizations working toward CMMC, this is more than a vendor disruption. It…
Continued about Impacted by NeoSystem’s Dissolution? We’re Here to Help!Categories
- Backup & Disaster Recovery
- Business Operations
- Case Studies
- Cloud Services
- Cyber Security
- Employee Spotlight
- Finance & Budgeting
- Glossary Term
- Governance & IT Compliance
- Managed Services
- Mobile Device Management
- Network Infrastructure
- NIST 800-171 & CMMC 2.0
- PCI
- Podcast
- Project Management
- TSI
- Uncategorized
- vCIO
Cyber Security Policy Starter Kit:
10 Critical Policies That Every Company Should Have in Place