
Sum IT Up: CMMC News Roundup
Summit 7
It's difficult to keep up with all of the moving parts that make up the Department of Defense's Cybersecurity Maturity Model Certification Program. It's even more difficult to keep up with the relevant bits and bites that influence CMMC. This weekly podcast sums up the news and developments relevant to CMMC; DFARS and other regulations; and NIST standards such as SP 800-171, SP 800-53, the NIST Cybersecurity Framework, and others.
All episodes
Best episodes
Seasons
Top 10 Sum IT Up: CMMC News Roundup Episodes
Goodpods has curated a list of the 10 best Sum IT Up: CMMC News Roundup episodes, ranked by the number of listens and likes each episode have garnered from our listeners. If you are listening to Sum IT Up: CMMC News Roundup for the first time, there's no better place to start than with one of these standout episodes. If you are a fan of the show, vote for your favorite Sum IT Up: CMMC News Roundup episode by adding your comments to the episode page.

Contractor Cybersecurity Isn’t Improving
Sum IT Up: CMMC News Roundup
10/10/24 • 17 min
CMMC Pathfinder Tool | In 5 minutes or less, this free tool will give you a clear path from where you are now to CMMC confidence: https://www.summit7.us/pathfinder
Yet another report analyzing defense contractor cybersecurity and compliance with DFARS contract clauses has found that adoption remains low. Even when companies are aware of their obligations, believe that CMMC will happen in 2024, and support minimum requirements there is no guarantee that implementation will happen. This week we dive into why that might be.

What’s New with the Cyber AB?
Sum IT Up: CMMC News Roundup
01/30/25 • 16 min
The Cyber AB is back with their monthly Town Hall meeting. This week we dive into the current status of the CMMC Program, the last checklist item before official L2 certification announcements, and more.
Register for CS2 Reston: https://cs2.cloud/reston - Use code SUMITUPRESTON for listener discount
Pathfinder 101: https://www.summit7.us/pathfinder
Pathfinder Demo: https://youtu.be/JiDTCchfCa0?si=JJFplxSfvkaRVhRo
AB Town Halls: https://cyberab.org/News-Events/Town-Halls/Details/february-town-hall
“Freeze” Memo: https://youtu.be/L6FUBpogntM?si=0blDfn4tj3E6y_hC

CMMC’s smoking gun? (DoD IG Audit)
Sum IT Up: CMMC News Roundup
02/06/25 • 34 min
The DoD Inspector General's report on the C3PAO authorization process is out and people haven't been shy with their takes on the findings. This week we dive into the first set of recommendations to see if there really is a smoking gun. We think you'll be surprised at the disparity between the headlines and what the report actually says.
Register for CS2 Reston: https://cs2.cloud/reston
Pathfinder 101: https://www.summit7.us/pathfinder
Pathfinder Demo: https://youtu.be/JiDTCchfCa0?si=JJFplxSfvkaRVhRo
DoD IG report: https://www.dodig.mil/reports.html/Article/4028189/audit-of-the-dods-process-for-authorizing-third-party-organizations-to-perform/

Cyber AB Town Hall Recap
Sum IT Up: CMMC News Roundup
08/08/24 • 34 min
If you haven't caught a Cyber AB Town Hall lately, then you're missing out on valuable information. This week we give our take on the AB's rulemaking timeline, what the FY25 NDAA says about CMMC, the upcoming DoD IG report on the Cyber AB, and more!
Cyber AB Town Halls: https://cyberab.org/News-Events/Town-Halls
Secure the DIB replay: https://www.summit7.us/securethedib

New CUI Executive Order in 2024?!
Sum IT Up: CMMC News Roundup
08/01/24 • 49 min
Register for Secure the DIB: Summer Camp for FREE here: https://www.securethedib.us/
You're not crazy. According to a new inspector general report the federal CUI Program has been in hibernation for the last few years. But the story goes much deeper than run-of-the-mill findings. Desperately overworked civil servants, stubbornly non-compliant federal agencies, the lofty heights of the National Security Council, and even rumors of a new CUI executive order. This story might seem a world away from the day-to-day concerns of defense contractors, but what happens on top of the mountain inevitably rolls downhill.
ISOO IG Report: https://naraoig.oversight.gov/reports/audit/audit-naras-information-security-oversight-office
History of CMMC (2010 – 2020): https://youtu.be/jbY2irZ1ePg?si=bGiInfLCpr-WFvcF

Secure the DIB Summer Camp
Sum IT Up: CMMC News Roundup
07/25/24 • 28 min
Register for Secure the DIB: Summer Camp for FREE here: https://www.securethedib.us/
Summer is coming to a close and that means it's time for our annual Secure the DIB Summer Camp webinar. Summit 7's Daniel Akridge joins the show this week to share what he's seeing and hearing from defense contractors regarding market dynamics, what the primes are up to, and how companies are dealing with the cost of compliance.
Episode Links:
DIB Summer Camp: https://www.summit7.us/securethedib
Big Dan: https://www.linkedin.com/in/danielakridge/

Cyber Overconfidence in the DIB
Sum IT Up: CMMC News Roundup
07/18/24 • 54 min
Register for Secure the DIB: Summer Camp for FREE here: https://www.securethedib.us/
The DoD's Center for Manufacturing Cybersecurity has released a report documenting the level of confidence that defense contractors have in their cybersecurity posture. The conclusion? There is a systemic cybersecurity overconfidence problem in the DIB.
Episode Links:
DIB Summer Camp: https://www.summit7.us/securethedib
MxD Report: https://www.mxdusa.org/cyber/cyberreport/

Live, Laugh, Rulemaking
Sum IT Up: CMMC News Roundup
07/11/24 • 37 min
Register for Secure the DIB: Summer Camp for FREE here: https://www.securethedib.us/
The 32 CFR CMMC final rule has officially left the DoD and is currently undergoing final regulatory review. This is the last step before publication in the Federal Register. Based on what we know, CMMC should be a reality before the end of 2024.
Episode Links: Proposed Rule Webinar: https://www.summit7.us/webinars/proposed-cmmc-rule

What the Heck is an ODP?
Sum IT Up: CMMC News Roundup
07/04/24 • 50 min
Now that SP 800-171 revision 3 is official, organizationally defined parameters (ODPs) are officially a part of our the rest of our lives. Like most things in SP 800-171 there are great details in SP 800-53 that help explain what's going on. In this episode we take a deep dive in requirement 3.1.8 through the lens of ODPs.
Episode Links:
SP 800-53: https://csrc.nist.gov/pubs/sp/800/53/r5/upd1/final
FedRAMP baselines: https://www.fedramp.gov/baselines/

So Much for CMMC Level 2 Self-Assessments
Sum IT Up: CMMC News Roundup
02/20/25 • 22 min
The DoD has released guidance to the contracting workforce that implements the 32 CFR CMMC final rule. This week we discuss the two big takeaways for defense contractors. 1) Level 2 self-assessments are unlikely for 99% of companies. 2) CMMC waivers will be even more rare.
Register for CS2 Reston: https://cs2.cloud/reston
Pathfinder 101: https://www.summit7.us/pathfinder
Pathfinder Demo: https://youtu.be/JiDTCchfCa0?si=JJFplxSfvkaRVhRo
Memo (PDF): https://dodprocurementtoolbox.com/uploads/DOPSR_Cleared_OSD_Memo_CMMC_Implementation_Policy_d26075de0f.pdf
NARA CUI Registry: https://www.archives.gov/cui/registry/category-list DoDI 5230.24 (PDF): https://www.esd.whs.mil/portals/54/documents/dd/issuances/dodi/523024p.pdf
Show more best episodes

Show more best episodes
FAQ
How many episodes does Sum IT Up: CMMC News Roundup have?
Sum IT Up: CMMC News Roundup currently has 102 episodes available.
What topics does Sum IT Up: CMMC News Roundup cover?
The podcast is about Podcasts, Msp, Technology, Cybersecurity and Government.
What is the most popular episode on Sum IT Up: CMMC News Roundup?
The episode title 'New CUI Executive Order in 2024?!' is the most popular.
What is the average episode length on Sum IT Up: CMMC News Roundup?
The average episode length on Sum IT Up: CMMC News Roundup is 51 minutes.
How often are episodes of Sum IT Up: CMMC News Roundup released?
Episodes of Sum IT Up: CMMC News Roundup are typically released every 7 days.
When was the first episode of Sum IT Up: CMMC News Roundup?
The first episode of Sum IT Up: CMMC News Roundup was released on Oct 11, 2022.
Show more FAQ

Show more FAQ