Government Contracting

  • The Legal Risk of Misrepresenting (or not being able to substantiate) SPRS Scores

    Most defense contractors understand that submitting an accurate SPRS scoring is a baseline requirement for doing business with the Department of War. What is far less understood, especially outside legal circles, is that misrepresenting your cybersecurity compliance status can expose your company to significant liability under the False Claims Act (FCA), even if no breach…

  • Your Holistic CMMC Journey Incorporating FutureFeed

    by Amy WilliamsVice-President of Compliance and Education This onboarding framework walks FutureFeed users step-by-step through building a complete, sustainable, and assessment-ready CMMC compliance program. Each step aligns with how FutureFeed organizes data, workflows, and reporting so that you can confidently manage your entire compliance lifecycle in one platform. Step 1 – Identify Where CUI Lives…

  • FutureFeed Users: You’re a Step Ahead When It Comes to CMMC Readiness

    If you’re using FutureFeed, you’ve already made one of the smartest strategic decisions in the defense contracting space. Compliance with NIST SP 800-171 and CMMC isn’t just a requirement, it’s a competitive differentiator. And while many contractors are still struggling with spreadsheets, fragmented workflows, and last-minute audit scrambles, you’ve chosen a platform that turns compliance…

  • Happy CMMC Day!

    November 10th marked an important milestone: the Cybersecurity Maturity Model Certification (CMMC) is now officially in effect. CMMC requirements can now be added to Department of Defense (DoD) contracts and solicitations. For the Defense Industrial Base (DIB), this begins a new chapter where cybersecurity readiness is not optional; it’s a contractual expectation. Having a current…

  • Breaking it Down: Why CRMAs Must Implement NIST SP 800-171 Requirements

    Clarifying CRMA Obligations and Assessment Expectations This position article addresses common misunderstandings surrounding Contractor Risk Managed Assets (CRMAs). Effectively managing CRMAs is crucial for organizations striving to comply with NIST SP 800-171 Level 2 requirements under the Cybersecurity Maturity Model Certification (CMMC). While CRMAs are not intended to process, store, or transmit Controlled Unclassified Information…

End of content

End of content