CMMC Articles & Mentions
The latest CMMC news articles and announcements from Redspin.

Redspin’s Managed Security Services Achieve Perfect Score in CMMC Level 2 Assessment
Independent Third‑Party Validation Reinforces Redspin as a Trusted External Service Provider (ESP) for the Defense Industrial Base
Disruptive By Design: The Lie We Tell Ourselves About Cybersecurity Ownership
Organizations instinctively assign complete cybersecurity ownership to information technology (IT). Multifactor authentication, phishing drills, security awareness training and virtual private networks are all visible markers of a “serious” program, and they all live within the IT function.
Clearwater Ranked #36 on MSSP Alert’s 2025 Top Global MSSPs List
New Redspin Report finds lagging execution despite increased CMMC awareness.
CMMC enforcement begins with mixed industry readiness
A new survey finds two-thirds of contractors prepared for the cybersecurity certification over many years, while nearly 40% have not yet completed required self-assessments.
Report: CMMC Momentum Grows, Execution Lags
One week into the Pentagon’s effort to move its cybersecurity compliance program from policy to practice, adoption of the CMMC program is gaining momentum, but execution remains slow, according to a new industry survey.
New Redspin Report Finds Lagging Execution Despite Increased CMMC Awareness
New Redspin Report finds lagging execution despite increased CMMC awareness.
The CMMC Assessor Shortage Is The New Federal Contracting Bottleneck
This capacity bottleneck may prove more disruptive to federal contracting than any single technical control.
CMMC: New Cyber Rules Hit Defense Supply Chain
Pentagon Formally Rolls Out Long-Awaited Cybersecurity Requirements for Vendors
Pentagon Begins Enforcing CMMC Compliance, But Readiness Gaps Remain
Experts told DefenseScoop that readiness gaps are fueled by CMMC’s controversial history, misconceptions of what the rule change means and challenges in proving compliance.
Industry Leaders Say CMMC Rollout Redefines Security, Accountability Across the DIB
The Pentagon will officially launch the phased rollout of its long-awaited Cybersecurity Maturity Model Certification (CMMC) program on Nov. 10
Uncertainty Swirls as CMMC Rollout Nears
Implementation of the Defense Department’s Cybersecurity Maturity Model Certification program is set to begin Nov. 10.
CMMC and SWFT: Why the DIB Needs To Embrace Both
The adoption of SWFT technologies should complement Cybersecurity Maturity Model Certification efforts.
New Cybersecurity Certification for Defense Contractors Gets Underway
The end of fiscal 2025 on Sept. 30 will usher in a substantial change for the Department of Defense (DoD).
How failing to meet CMMC requirements can expose your supply chain vulnerabilities
CMMC is not the holy grail of supply chain risk management, but it is one of the most effective tools for validating that information security vulnerabilities are being addressed, writes CMMC expert Aron Freitag.
CMMC Could Begin Showing Up in DoD Contracts Oct. 1
The clock is ticking for contractors to comply with the Department of Defense’s (DoD) long-anticipated cybersecurity compliance policy.
CMMC readiness: Top 3 disruptions affecting the Defense Industrial Base
Engage a CMMC certified professional or assessor, or at least assess your contracts and clarify CUI expectations with your contracting officer.
CMMC and the Shared Responsibility in the Cloud
The Department of Defense’s (DoD) Cybersecurity Maturity Model Certification (CMMC) program officially went into effect on December 16, 2024, and it kicked off with a bang.
Hidden Costs in CMMC Cloud Compliance Could Jeopardize Certification
CMMC compliance is now critical for defense contractors, with hidden cloud costs, unclear provider roles and tenant ownership risks threatening budgets and certification. Without due diligence, the cheapest CMMC cloud option can quickly become the most costly.
Maintain to sustain: why CMMC is a continued practice
Dr. Thomas Graham, vice president and chief information security officer at Redspin, lays out key principles for contractors to follow in the preparation and execution of their compliance with the Cybersecurity Maturity Model Certification.
Navigating compliance: A guide for small teams to tackle Cybersecurity Maturity Model Certification
To fully appreciate the importance of Controlled Unclassified Information (CUI), it’s essential to understand its origins and significance.

Subscribe to our newsletter
Securing The Nation's Defense Industrial Base
Get started with Redspin Today
Helping you navigate CMMC.

















