
Sign up to save your podcasts
Or


Subscribe to Cyberspin on Apple iTunes, Spotify, or your preferred podcast platform. You can always stream the latest episodes at redspin.com.
This episode is a replay of the latest CMMC Connect session, where we tackle critical updates on CMMC rulemaking, public comments, and timelines. It features insights from the "Queen of CMMC" Tara Lemieux, Rob Teague, who joins us live from NCS, and cloud security expertise from Steve Akers.
We dive into essential tips for compliance, Cloud environments, the 48 CFR rule, and what small businesses need to know as 2025 approaches. Don't miss this deep dive into CMMC and the chance to prepare for what’s next.
Subscribe to Cyberspin on Apple iTunes, Spotify, or your preferred podcast platform. You can always stream the latest episodes at redspin.com.
In this month's episode, we revisit the August CMMC Connect session, where Jeremy, Thomas, and Rob discuss the latest updates and questions surrounding the Cybersecurity Maturity Model Certification (CMMC).
Tune in as we cover key topics, including the anticipated timeline for CMMC certification requirements, recent developments like the 32 CFR and 48 CFR publications, and the cost implications for small businesses aiming for CMMC Level 2 certification. The panel also addresses the complexities of scoping CMMC compliance in cloud environments, the role of joint surveillance assessments, and how to navigate potential challenges in meeting compliance requirements.
This episode is packed with actionable insights and answers to your most pressing CMMC questions, making it a must-listen for anyone involved in the defense industrial base (DIB) or interested in staying ahead of CMMC developments.
Key Takeaways:
Whether you're a prime contractor, subcontractor, or just getting started with CMMC, this episode provides valuable guidance on navigating the evolving landscape of cybersecurity compliance.
Subscribe to Cyberspin on Apple iTunes, Spotify, or your preferred podcast platform. You can always stream the latest episodes at redspin.com.
As part of our CMMC Connect Series of the Cyberspin Podcast, this episode presents a replay of our latest CMMC Connect session. Listen as Jeremy Mares, Tara Lemieux, Dr. Thomas Graham, and Rob Teague as they tackle audience questions on essential CMMC topics:
Subscribe to Cyberspin on Apple iTunes, Spotify, or your preferred podcast platform. You can always stream the latest episodes at redspin.com.
In this episode of the Cyberspin Podcast's CMMC Connect Series, we present a replay of our latest CMMC Connect session. Join Tara Lemieux, Dr. Thomas Graham, and Rob Teague as they answer audience questions on key CMMC topics, including NIST 800-171 Rev. 3 timelines, the impact of encryption on CUI, prime-to-subcontractor flow-down requirements and responsibilities, CMMC Certified Professional (CCP) courses, and more.
Subscribe to Cyberspin on Apple iTunes, Spotify, or your preferred podcast platform. You can always stream the latest episodes at redspin.com.
In this episode of the Cyberspin Podcast: CMMC Connect Series, we bring you a replay of our latest CMMC Connect session. Join Dr. Thomas Graham, Jeremy Mares, and Rob Teague as they answer audience questions on critical CMMC topics, including how remote desktop affects scoping, the best ways to share information with subcontractors within compliance, and strategies for gaining leadership buy-in.
Tune in for key takeaways and best practices to help you navigate your CMMC journey effectively.
Subscribe to Cyberspin on Apple iTunes, Spotify, or your preferred podcast platform. You can always stream the latest episodes at redspin.com.
In this episode of Cyberspin, join Rob Teague and Dr. Thomas Graham as they talk CMMC with special guests, Jennifer Simpson, Sr. Director, of Corporate Cyber Assurance and Shari Pettersson Director, of Information Security Authorizations & Decisions (ISAD) at BAE Systems, Inc.
Learn how BAE Systems, Inc. embarked on their CMMC journey early with a Joint Surveillance Voluntary Assessment (JSVA). From early preparations to final assessments, get an insider’s perspective on how one of the leading defense contractors navigates the complexities of CMMC, ensuring the security and compliance of their operations. This discussion sheds light on how to prepare for CMMC directly from a prime contractor who has taken early steps to demonstrate cybersecurity maturity through CMMC.
Subscribe to Cyberspin on Apple iTunes, Spotify, or your preferred podcast platform. You can always stream the latest episodes at redspin.com.
Contractors serving the DoD are in a constant battle to safeguard their data in compliance with the CMMC. Listen to this episode of Cyberspin as our experts explore how managed cloud services can accelerate the Cybersecurity Maturity Model Certification (CMMC) journey and how they are the fastest and easiest way to accommodate a segment of your organization that handles CUI data.
Subscribe & Stream: Gear up for your CMMC journey with "Cyberspin," available on Apple iTunes, Spotify, and redspin.com. Subscribe for the latest insights on navigating your cybersecurity landscape.
Contractors working with the Department of Defense (DoD) who store, process, and/or transmit CUI face a crucial challenge: ensuring that their technical security controls, documentation, policies, and processes are robust enough to meet the stringent demands of CMMC. With a range of Cloud offerings available, understanding how each aligns with CMMC standards can be quite a challenge.
Listen as we tackle the most prevalent misconceptions surrounding Azure Cloud and its ability to satisfy CMMC requirements. We'll break down the differences between Azure Commercial 365, Government Community Cloud (GCC), and GCC High. You'll learn when it's appropriate to choose GCC over GCC High, especially concerning ITAR data considerations, and whether FIPS Encryption is adequately provided for the communication and storage of Controlled Unclassified Information (CUI) data.
We'll also tackle the challenges that remote companies face in meeting CMMC's network criteria and explain why waiting until 2027 to address CMMC could be a misstep.
Tune in as we debunk myths and shed light on the essential criteria that will help you navigate your CMMC journey.
Subscribe to Cyberspin on Apple iTunes, Spotify, or your preferred podcast platform. You can always stream the latest episodes at redspin.com.
In this episode, we sit down with Robert Hill, the Founder and CEO of Cyturus, to unravel the WHY behind the Cybersecurity Maturity Model Certification (CMMC).
Our conversation kicks off with the pressing question: Why do small defense contractors need the same level of security as industry giants like Boeing and Raytheon? Robert Hill walks us through the tactical why, painting a vivid hypothetical scenario. Imagine a seemingly minor 4-millimeter adversarial change in the dimensions of a gasket from a subcontractor manufacturer. This breach has the potential to infect the Department of Defense like a virus, leading to the grounding of a warfighter jet and the potential to impact lives.
The discussion extends beyond supply chain issues, delving into the critical need to protect intellectual property. Hill emphasizes that the true threat lies not just in information breaches but in the subsequent manipulation of data—a concept with long-term real-world implications.
Join us as we explore the technical aspects. However, our conversation takes a turn as we point out CMMC is not merely about IT controls; it's about fostering a culture of cybersecurity. CMMC is not a checkbox compliance but a movement that requires business buy-in and a deep understanding of the WHY.
Tune in to gain insights into the world of cybersecurity, understand the genuine need to protect national defense information, and recognize that CMMC is more than compliance—it's a cybersecurity movement.
Subscribe to Cyberspin on Apple iTunes, Spotify, or your preferred podcast platform. You can always stream the latest episodes at redspin.com.
From the publisher's feed

137 Listeners

0 Listeners