Everyone saw the headline that CMMC Phase 2 was suspended.
Almost nobody read the part that says government-led assessments are still happening.
In this episode we look at what the DoD actually said, how DIBCAC decides who gets assessed, why the LogZone False Claims Act case matters, and why today's approach looks surprisingly similar to the original CMMC 1.0 phased rollout.
If you think the suspension means nobody is verifying cybersecurity anymore, you may want to read the Phase 2 suspension memo one more time.
Podden och tillhörande omslagsbild på den här sidan tillhör
Summit 7. Innehållet i podden är skapat av Summit 7 och inte av,
eller tillsammans med, Poddtoppen.