Nist Expert

CMMC 2.0 vs. NIST 800-171 – The Relationship Explained

Computer screen with code that complies with CMMC 2.0 and NIST 800-171.

There’s often confusion about CMMC 2.0 vs. NIST 800-171 — let’s take a look at the two to help understand the relationship. The Cybersecurity Maturity Model Certification (CMMC) and the National Institute of Standards and Technology Special Publication 800-171 (NIST SP 800-171) are two important cybersecurity terms that are often confused and are related to[…]

CMMC Compliance – Consulting vs Managed IT Services

NIST Expert performing CMMC audit.

For companies that are part of the federal supply chain and provide products or services to the Department of Defense (DoD), there are stringent cybersecurity requirements that are currently in place and will be mandatory in May 2023. Private contractors, subcontractors, and their suppliers and vendors are impacted by these requirements and must meet criteria[…]

What Does CUI Stand For?

Two people discussing image on a laptop computer - what does CUI stand for.

If your organization is doing contract or subcontract work for the U.S. Department of Defense (DoD), you are almost assuredly in possession of CUI! As a DoD contracting partner (or an organization hoping to obtain a DoD contract), it’s important to understand what it is and how to handle it as part of your contractual[…]

What Is NIST 800-171 Compliance?

Image of a laptop keyboard for NIST 800-171 Compliance.

Doing business with the Department of Defense (DoD) or other government agencies means ensuring your organization can effectively protect sensitive information in today’s environment of ever-increasing cybersecurity threats and the appropriation of business intelligence. To codify contractors’ obligations in a set of required best practices, the National Institute of Standards and Technology (NIST) created NIST[…]