The Virtual CISO Podcast

CMMC 2.0 is Here! Find Out What It Really Means for DIB and Non-DIB USG


Listen Later

The US Department of Defense (DoD) has just announced CMMC 2.0, a new strategic direction for its cybersecurity program based on public comment and internal assessment. So what does it all mean? Many sources say that CMMC 2.0 is about "less requirements,"—but it's really much more about changing how the DoD will hold defense contractors accountable to the NIST SP 800-171 requirements that have been in place all along. We're speaking to two of our best Security Consultants from right here within our ranks at Pivot Point Security: George Perezdiaz, CMMC / NIST Security Consultant, and Caleb Leidy, CMMC Consultant/Provisional Assessor. In this episode, we discuss: - What's new and what's not with CMMC Level 1 (for securing FCI) and what is now called CMMC Level 2 (for securing CUI) - The overall realignment of the US government's cybersecurity audit program with NIST 800-171 - "Bifurcation" and who will and won't need a third-party audit if you handle CUI - How CMMC 2.0's new accountability process fits with the recent cybersecurity executive order, the Civil Cyber-Fraud Initiative, the False Claims Act, and upcoming rule changes to 32 CFR and 48 CFR - Why "letters of affirmation" are a boon to SMB security and IT leaders compared to the threat of a third-party audit Mentioned during the podcast: eCFR :: Home To hear this episode and many more like it, you can subscribe to The Virtual CISO Podcast here. If you don't use Apple Podcasts, you can find all our episodes here. Listening on a desktop & can't see the links? Just search for The Virtual CISO Podcast in your favorite podcast player.
...more
View all episodesView all episodes
Download on the App Store

The Virtual CISO PodcastBy John Verry

  • 4.8
  • 4.8
  • 4.8
  • 4.8
  • 4.8

4.8

18 ratings


More shows like The Virtual CISO Podcast

View all
The Joe Rogan Experience by Joe Rogan

The Joe Rogan Experience

227,740 Listeners

Security Now (Audio) by TWiT

Security Now (Audio)

2,001 Listeners

Risky Business by Patrick Gray

Risky Business

373 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,017 Listeners

Gartner ThinkCast by Gartner

Gartner ThinkCast

109 Listeners

Smashing Security by Graham Cluley

Smashing Security

322 Listeners

The Daily by The New York Times

The Daily

112,454 Listeners

Click Here by Recorded Future News

Click Here

414 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

7,999 Listeners

CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

CISO Series Podcast

188 Listeners

Defense in Depth by David Spark, Steve Zalewski, Geoff Belknap

Defense in Depth

73 Listeners

The New CISO by Steve Moore

The New CISO

40 Listeners

All-In with Chamath, Jason, Sacks & Friedberg by All-In Podcast, LLC

All-In with Chamath, Jason, Sacks & Friedberg

9,829 Listeners

Cyber Security Headlines by CISO Series

Cyber Security Headlines

134 Listeners

The AI Daily Brief: Artificial Intelligence News and Analysis by Nathaniel Whittemore

The AI Daily Brief: Artificial Intelligence News and Analysis

559 Listeners