10 mars 2020 | International, C4ISR, Sécurité

The Pentagon’s first class of cybersecurity auditors is almost here

Mark Pomerleau

The Pentagon hopes to have the first class of auditors to evaluate contractors' cybersecurity ready by April, a top Department of Defense official said March 5.

The auditors will be responsible for certifying companies under the new Cybersecurity Maturity Model Certification (CMMC), which is a tiered cybersecurity framework that grades companies on a scale of one to five. A score of one designates basic hygiene and a five represents advanced hygiene.

Currently, there are no auditors — known as Certified Third-Party Assessment Organizations (C3PAO) — as the accreditation board came about officially in January.

“Our goal is to have, in late April, our pilot pathfinder on the training for the C3PAOs,” Katie Arrington, chief information security officer for the Office of the Under Secretary of Defense for Acquisition, said at an event hosted by DreamPort in Columbia, Maryland.

The accreditation board is working on training the auditors and the accompanying training materials

Arrington said just because there aren't any auditors already working doesn't mean companies shouldn't be getting ready.

“You've got to get prepared for the audit,” she said. “You should be able to say ‘I think I've done my self assessment, I think I'm at this CMMC level.' Waiting for the audit to come in and then decide to get good or to get on track is not the way I would position my business.”

If all goes according to plan, all new contracts in 2025 will feature the security requirements.

Arrington also suggested that the framework has received interest outside the DoD.

“Do I think that other federal agencies are getting on board? Yes they are. They're waiting for me to get through my pathfinder,” she said.

She also referred to comments made by Under Secretary of Defense for Acquisition and Sustainment Ellen Lord, who explained nearly a dozen nations and international organizations are interested in adopting CMMC.

https://www.fifthdomain.com/dod/2020/03/09/the-pentagons-first-class-of-cybersecurity-auditors-is-almost-here/

Sur le même sujet

  • Here’s who’s taking over as Sikorsky’s president

    19 novembre 2020 | International, Aérospatial, Terrestre

    Here’s who’s taking over as Sikorsky’s president

    By: Jen Judson WASHINGTON — Lockheed Martin-owned Sikorsky's President Dan Schultz is set to retire at the beginning of 2021 and Paul Lemmo, the company's current vice president of integrated warfare systems and sensors, will take over the role, according to a Nov. 18 Lockheed statement. The bench will shift within Lockheed with Jon Rambeau, the current vice president of C6ISR, taking over for Lemmo. Gregg Bauer, vice president for undersea warfare, will assume Rambeau's role. “Just recently the president of our Sikorsky business, Dan Schultz, announced his decision to retire at the beginning of 2021,” Stephanie Hill, executive vice president of Lockheed Martin Rotary and Mission Systems, said in the statement. “Dan has had a tremendous impact to Lockheed Martin and I'm grateful for his contributions.” Schultz joined Lockheed in 2006. Before assuming his current role at Sikorsky, he was the vice president and general manager of ship and aviation systems. Schultz served in the U.S. Marine Corps and was the program manager for the Joint V-22 Osprey tiltrotor program, according to his company biography. Lemmo “built a broad career” that spans more than 30 years at Lockheed Martin, Hill said. “I'm proud of Lockheed Martin's focus on talent development which allows for smooth and seamless transitions and ensures we continue to support our customers' missions without disruption,” Hill said. Sikorsky is in the midst of two major helicopter competitions with the U.S. Army — the Future Long Range Assault Aircraft (FLRAA) and the Future Attack Reconnaissance Aircraft (FARA). Sikorsky has partnered with Boeing in the FLRAA competition and in both efforts the company is competing head-to-head with Bell. https://www.defensenews.com/land/2020/11/18/heres-whos-taking-over-as-sikorskys-president/

  • Navigating the Threat Landscape: Understanding Exposure Management, Pentesting, Red Teaming and RBVM

    29 avril 2024 | International, Sécurité

    Navigating the Threat Landscape: Understanding Exposure Management, Pentesting, Red Teaming and RBVM

    Red Teaming or Exposure Management? Find out how combining these powerful approaches can fortify your cybersecurity defenses.

  • A Sneak Peak At The Singapore Airshow Flying Display

    11 février 2022 | International, Aérospatial

    A Sneak Peak At The Singapore Airshow Flying Display

    Despite a lower attendance and fewer participants, the Singapore Airshow continues to attract a respectable lineup for its flying display.

Toutes les nouvelles