An introduction to CMMC for the small and medium-size contractor by NH Business Review for Jeff Stutzman

Jeff Stutzman The Cybersecurity Maturity Model Certification (CMMC) is a framework developed by the U.S. Department of Defense (DoD) to enhance cybersecurity measures across the defense industrial base (DIB), and it becomes law on December 16, 2024. The aim of CMMC is to protect sensitive unclassified information, including Federal Contract…

Continue reading →

Don’t oversell your cybersecurity by NH Business Review for James P. Harris

The Federal Trade Commission (FTC) enforces federal laws prohibiting false advertising. It also enforces consumer protection laws aimed to prevent fraud, cyberattacks and identity theft. The FTC has become increasingly active when those two issues collide — when companies falsely represent the extent to which they protect consumers’ data from…

Continue reading →

The difference between discovery and defense by NH Business Review for Domenic Steinbrueck

Domenic Steinbrueck Vulnerability Assessment vs. Penetration Test Many security professionals, from CISOs to aspiring penetration testers, continue to debate whether to employ vulnerability assessments or penetration testing within their information technology (IT) and operational technology (OT) environments. Although both actions can strengthen an organization’s security posture, they are separate practices…

Continue reading →