Skip to main content

CISO Global CEO Explains CMMC Compliance for DoD Contractors

New to The Street TVDecember 17, 20256 min11,826 views
10 connections·12 entities in this video→

Understanding CMMC

  • πŸ’‘ CMMC (Cyber Maturity Model Certification) is a certification rolled out by the DoD to control federal contract information and controlled unclassified documentation.
  • 🎯 It's a tiered approach, with Level 2 requiring 110 specific cybersecurity controls.
  • πŸ”‘ Unlike previous self-attestation, CMMC Level 2 mandates independent third-party audits to validate compliance.

CISO Global's Role and Expertise

  • πŸš€ CISO Global is a certified C3PAO (Certified Third-Party Assessment Organization), authorized to conduct official CMMC assessments.
  • πŸ› οΈ The company has been involved in DoD cybersecurity preparation and holds FedRAMP-certified compliance software since 2014.
  • 🧩 They emphasize a holistic approach to helping organizations become more secure and implement safeguards around software.

Impact and Urgency for Contractors

  • πŸ“ˆ An estimated 220,000 to 300,000 companies within the DoD ecosystem are impacted by CMMC requirements.
  • ⚠️ There's a sense of urgency as the first phase of enforcement began November 10th, 2025.
  • πŸ’° Delaying preparation can lead to increased costs and risks, potentially jeopardizing access to future DoD contracts.

Maintaining Independence

  • βš–οΈ CISO Global maintains independence by either helping organizations prepare for an audit or acting as the third-party auditor, but not both for the same client.
  • πŸ” The government is becoming more proactive due to past cybersecurity incidents, and CMMC aims to improve the cyber posture of contractors.
Knowledge graph12 entities Β· 10 connections

How they connect

An interactive map of every person, idea, and reference from this conversation. Hover to trace connections, click to explore.

Hover Β· drag to explore
12 entities
Chapters1 moments

Key Moments

Transcript24 segments

Full Transcript

Topics14 themes

What’s Discussed

CMMCCybersecurity Maturity Model CertificationDoDDefense ContractorsCybersecurity ControlsThird-Party AuditsC3PAOCISO GlobalFedRAMPGRC SoftwareFederal ComplianceControlled Unclassified InformationCyber RiskDoD Contracts
Smart Objects12 Β· 10 links
ConceptsΒ· 7
CompaniesΒ· 4
EventΒ· 1