Do I need CMMC?

Does your company need a CMMC?

Around 300,000 companies will need to earn a cybersecurity maturity model certification (CMMC) to work on U.S. Department of Defense contracts. Is your company one of them?

Join our newsletter:
Roughly 300,000 companies making up the defense industrial base (DIB) will need to earn a cybersecurity maturity model certification (CMMC). This applies to both prime and sub contractors. The exception is for companies that sell commercial-off-the-shelf items to the U.S. Department of Defense.
If your company handles federal contract information (FCI) or controlled unclassified information (CUI) then it will need to earn a cybersecurity maturity model certification (CMMC). If you do not currently have a DoD contract but want to win one then you will need to earn a CMMC. Not having a CMMC at the required level disqualifies you from the contract.
CMMC requirements will start applying to some contracts this coming year. The best way to find out if they apply to you is to check your contract. If you are a subcontractor reach out to your prime for more information on your CMMC requirements.
 

Quick & Simple

Discover Our Cybersecurity Compliance Solutions:

Whether you need to meet and maintain your compliance requirements, help your clients meet them, or verify supplier compliance we have the expertise and solution for you

 NIST SP 800-171 & CMMC Compliance App

NIST SP 800-171 & CMMC Compliance

Become compliant, provide compliance services, or verify partner compliance with NIST SP 800-171 and CMMC requirements.
 HIPAA Compliance App

HIPAA Compliance

Become compliant, provide compliance services, or verify partner compliance with HIPAA security rule requirements.
 FAR 52.204-21 Compliance App

FAR 52.204-21 Compliance

Become compliant, provide compliance services, or verify partner compliance with FAR 52.204-21 Basic Safeguarding of Covered Contractor Information Systems requirements.
 ISO 27001 Compliance App

ISO 27001 Compliance

Become compliant, provide compliance services, or verify partner compliance with ISO 27001 requirements.