Philip Duplisey

Five Takeaways from This Week’s CyberAB Town Hall

Over the past few weeks, much of the conversation surrounding CMMC has been driven by headlines following the Department of War’s decision to suspend Phase II implementation while the program is reviewed. Predictably, social media has been filled with speculation ranging from “CMMC is dead” to “everything has changed.” This week’s CyberAB Town Hall painted[…]

CMMC Phase II Paused: What Defense Contractors Should Do Next

The Department of War recently announced that it is suspending the implementation of CMMC Phase II requirements while it conducts a review of the program. The announcement has generated considerable discussion across the Defense Industrial Base (DIB), with many organizations asking a simple question:  “Does this mean CMMC is over?”  The short answer is no.  While[…]

The New Cybersecurity Risk: When Your Claims Don’t Match Reality

Introduction When most business leaders think about cybersecurity risk, they think about hackers, ransomware attacks, or data breaches. The Department of Justice is increasingly focused on something else: whether companies are actually doing what they say they’re doing. Last week, Alabama-based defense contractor LOGZONE agreed to pay more than $500,000 to settle allegations that it[…]

Who Audits the Auditors? The Wild Card in Your Next CMMC Assessment

CMMC has officially moved from “that thing we’ll deal with eventually” to “that thing in your current contract.” The urgency is real, and the stakes are high. Lately, our clients all ask some version of the same question: “If we do all the work, are we actually going to pass?” Usually, you’d expect a straight[…]

The New DoW CIO FAQ Just Dropped – What it means for you.

The Office of the Chief Information Officer at the Department of War (DoW) has released a new FAQ that strengthens expectations around safeguarding CUI and maintaining compliance across the defense supply chain. For organizations working within the DIB, the message is simple: your subcontractors’ cybersecurity posture now matters as much as your own. The FAQ[…]