
Sign up to save your podcasts
Or
The Cybersecurity Maturity Model Certification (CMMC) is a tiered system requiring defense contractors to be vetted by a third-party assessor on a five-level scale for the maturity of their enterprise cybersecurity. Every contract to include Small Business Innovation Research (SBIR) contracts and grants will be marked with a corresponding CMMC level that any bidding contractors must have that level of certification to bid on the contract.
Presently, there are over 350,000 Defense Contractors that required this certification. Also, any new government contractors seeking DoD contracts will have to be certified. Also, they will need to obtain the certification just to be able to bid on the contract.
Cost of BusinessA DoD representative states that they understand that this certification is going to cost money. The cost of the certification is going to depend on many factors. However, the initial cost for the certification is $3,000. That cost is for the lowest level certification.
The higher-level certifications are going to cost more money. Also, businesses will have to recertify every three years.
Impact on New Government ContractorsMany potential government contractors are brand new startups. Generally, they do not have the funds available to pay for these certifications. If the government decides that they are going to require this certification government-wide, it will have a significant impact on many micro government contractors and startups. These businesses are going to have to hire IT consultants to ensure that their systems meet the CMMC standards. This may cause many micro-businesses and startups to look elsewhere for opportunities outside government contracting.
In Summary
Is the CMMC certification worth all the hype that DoD is stating? That is something that only time will tell. The real impact that this certification is going to have is on small businesses. They are going to have to find the funds to ensure that their networks meet the new requirements. The CMMC certification may firm to leave the government marketplace and hinder many potential government contractors from even getting started.
Will this certification go Government-wide? I believe that it will. Only time will tell for sure.
The Cybersecurity Maturity Model Certification (CMMC) is a tiered system requiring defense contractors to be vetted by a third-party assessor on a five-level scale for the maturity of their enterprise cybersecurity. Every contract to include Small Business Innovation Research (SBIR) contracts and grants will be marked with a corresponding CMMC level that any bidding contractors must have that level of certification to bid on the contract.
Presently, there are over 350,000 Defense Contractors that required this certification. Also, any new government contractors seeking DoD contracts will have to be certified. Also, they will need to obtain the certification just to be able to bid on the contract.
Cost of BusinessA DoD representative states that they understand that this certification is going to cost money. The cost of the certification is going to depend on many factors. However, the initial cost for the certification is $3,000. That cost is for the lowest level certification.
The higher-level certifications are going to cost more money. Also, businesses will have to recertify every three years.
Impact on New Government ContractorsMany potential government contractors are brand new startups. Generally, they do not have the funds available to pay for these certifications. If the government decides that they are going to require this certification government-wide, it will have a significant impact on many micro government contractors and startups. These businesses are going to have to hire IT consultants to ensure that their systems meet the CMMC standards. This may cause many micro-businesses and startups to look elsewhere for opportunities outside government contracting.
In Summary
Is the CMMC certification worth all the hype that DoD is stating? That is something that only time will tell. The real impact that this certification is going to have is on small businesses. They are going to have to find the funds to ensure that their networks meet the new requirements. The CMMC certification may firm to leave the government marketplace and hinder many potential government contractors from even getting started.
Will this certification go Government-wide? I believe that it will. Only time will tell for sure.