In January of 2025 the FAR council proposed expanding CUI cybersecurity requirements to all federal contractors handling Controlled Unclassified Information or CUI. The proposed rule would require the contractor to comply with the requirements of NIST Special Publication 800-171 Revision 2 as early as December, 2025. Join us as we discuss the options, and consequences, involved in complying with the 110 requirements of NIST 800-17 rev 2. The rules are the same for all, but options differ widely. Federal cybersecurity is a fast MOVING TARGET, and one size does NOT fit all!
Registration is free, but seating is limited. Registration link at
https://attendee.gotowebinar.com/register/8002976152602793814
After more than 14 years the Federal Acquisition Regulation (“FAR”) Proposed Rule on Controlled Unclassified Information (“CUI”) was released on January 15, 2025. This rule stems from Executive Order 13556, from November 2010. Any contractor handling non-public federal information will now need to meet the 110 cybersecurity safeguards of NIST 800-171 rev 2, plus any agency specific NIST 800-53 requirements, starting as early as December, 2025. Given that the median federal contractor has three staff, this is concerning to many people. Fortunately, there is a quick if temporary fix for contractors up to about 25 staff. Using software originally developed for community banks, a initial System Security Plan (SSP), NIST 800-30 risk assessment, SPRS score and Action Plan (POAM) can be created in a half day of admittedly intense effort, for a flat fee of $360. Having a valid SSP will usually get the contractor 6-12 month of grace to implement their POAM and achieve full NIST 800-171 compliance. Since 2007 over 400 ACR 2 Solutions cybersecurity clients have been audited, with zero audit failures. Free registration link at https://attendee.gotowebinar.com/register/8797107221414419292
In January of 2025 the FAR council proposed expanding CUI cybersecurity requirements to all federal contractors handling Controlled Unclassified Information or CUI. The proposed rule would require the contractor to comply with the requirements of NIST Special Publication 800-171 Revision 2 as early as December, 2025. Join us as we discuss the options, and consequences, involved in complying with the 110 requirements of NIST 800-17 rev 2. Register at
https://attendee.gotowebinar.com/register/5158020602058224985