25: CMMC – NFOs, Don’t Ignore Your Appendix E

25: CMMC – NFOs, Don’t Ignore Your Appendix E

This episode addresses one topic taken from our top ten list of most common failed practices from the CMMC & DIBCAC High assessments. Today we discuss Non-Federal Organization (NFO) controls, where Appendix E comes into play, updates on the NIST 800-171 rev.3...
25: CMMC – NFOs, Don’t Ignore Your Appendix E

23: CMMC and Logging Capabilities, The Why and How

This episode addresses one topic taken from our top ten list of most common failed practices from the CMMC & DIBCAC High assessments. Logging plays a major role in protecting an organization’s CUI and FCI because it detects malicious activity. This episode...
25: CMMC – NFOs, Don’t Ignore Your Appendix E

22: CMMC – Understanding Documentation

This episode addresses one topic taken from our top ten list of most common failed practices from the CMMC & DIBCAC High assessments. The documentation episode, where we address some of Redspin’s most common questions like: Do I need documentation for every...
25: CMMC – NFOs, Don’t Ignore Your Appendix E

20: Rumor Control: DIBCAC HIGH

The Cyber AB and the PMO office recently announced that CMMC 2.0 certifications can be conducted, just not under the “CMMC 2.0” title. The certifications will temporarily be called “DIBCAC High certifications” until the rule-making phase is complete. So, what does...