Going to the campus in New Haven for first time since March.
Kinda want to skip work and spend 1000s at all the restaurants I have been missing.
Life hard in a take out desert like East Haddam
Going to the campus in New Haven for first time since March.
Kinda want to skip work and spend 1000s at all the restaurants I have been missing.
Life hard in a take out desert like East Haddam
Going to the campus in New Haven for first time since March.
Kinda want to skip work and spend 1000s at all the restaurants I have been missing.
Life hard in a take out desert like East Haddam
Going to the campus in New Haven for first time since March.
Kinda want to skip work and spend 1000s at all the restaurants I have been missing.
Life hard in a take out desert like East Haddam
Monday again folks. Time for my weekly call for your organuizations to support the programs we have running with Conecpts for Adapative Learning. I believe in the maturation model included in the cmmc. I cringe when you hear SMEs (and their is 10–2 per webinar) say the …
Our CyberDI team had a wonderful meeting yesterday planning our #CMMC roll out.
Yesterday we focused on the State of Connecticut. We work with each of our #HigherEd partner institutions to help protect the local DIB ecnomoy.
Looking all official we got our partnership badge from the CMMC-AB
We had a wonderful planning meeting around #cmmc yesterday and how we hope to leverage #HigherEducsation and State Agency to quickly scale and grow a culture around maturation
I just RSVPd yes to
I just RSVPd yes to
When I say we have to build the culture of #cybersecurity well before the workplace I mean it. I am excited to present on the #cmmc at today’s Connecticut Commission of Education al Technologies Community is the curriculum (h/t David Cormier) when it comes to culture Agenda …
Do I have a System Security Plan? Check! Do I have proof I do the stuff in my plan? Check! Do I have a Network Diagram? Check! Does the diagram reflect my Access Control Policy? Check! Can I tell this story? Answer these five questions and your journey to #compliance almost …
I teach cybersecurity from kindergarten to Sikorsky. By the time we get to protecting the DIB we have lost decades of instilling practices of good cyber hygiene into students so I propose starting the Maturation Model not at Level one, but in grade one. (This is my once a week …
Your #MondayMessage Remember folks we pronounce #CUI as " C U I" not “cooey” Very scientific reason for this. If we had to protect Cooey all it would take would be saying, “Circle, Circle, Dot, Dot now I have my cooey shot” and all #cybersecurity …
It's not that the pricing regulations are made up. They are just set in a different reality. DFARS 252.204-7012 gave companies until Dec, 2017 to be compliant with NIST 800-171. Therefore your #DFARS interim assessments should not be too cost prohibitive. You aren’t …
As the DFARS Interim rules go into effect this got me thinking about how will small businsses in the DIB handle the required trainings, certifications, and assessments. So I did some digging through publicly available data here in Connecticut. 650 or so companies share around …
Allison Giddens on LinkedIn: #CMMC #manufacturer #CUI | 12 comments linkedin.comArchiving... linkedin.com https://www.linkedin.com/posts/allisongiddens_cmmc-manufacturer-cui-activity-6725043502331252736-BQh_ A impt ? around primes>subs>subs and flow down/up of #cmmc in the …
I have worked in #OpenBadges and #microcredentialing for years with folks like Doug Belshaw and @mozilla Yet I have I not really seen as much uptake until I started working in #cybersecurity assessment and training. You see more verified achievements (mainly through Acclaim) then …
Black Anvil LLC-NIST800-171-DoD Assessment Methodology.e drive.google.comArchiving...
Another great tool you can use for your #dfars self-assessment using NIST 8001-171
What does the DIB think of CMMC? Let's discuss with them. - YouTube youtube.comArchiving...
Great perspective from the DIB on #cmmc in terms of proactive steps.
A Cloud’s Eye View Of Cyber VUCA In Age Of Rapid Change linkedin.com
Great post on describing the tensions of #cybersecurity and the cloud
SPRS - Reference Material sprs.csd.disa.milArchiving...
DoD has releasd some helpful guidance on Supplier Performance Risk System including assessment methodology for NIST-800-171 to comply with DFARS interim rules
(This post is a pre-publication and draft of chapter two of a handbook I and Terry Lehman will publish on complying wwith DFARS Interim rule 252.204-7019,7020 and 7021 while also preparing for a CMMC future. We welcome feedback and corrections.) Billions of bytes swiped at a time …
This is an example page from the Workbook Terry Lehman and I are working on a handbook for the DFARS Interim rules. Like always this work has a Creative Commons BY-SA license. Feel free to use in any as long as you share the love. Access Control In many ways good cyber hygeine …
Good to see impact CMMC may have in protecting other government and public supply chains: www.meritalk.com/articles/…

“Lock Up The Forest” by cogdogblog is licensed under CC0
This post is co-written by Terry Lehman Nation Under Attack As American combat pilots scream across the sky flying an F-35, the finest fighter jet in the world, they may have to engage a Chinese cousin, the J-20. The NSA reported sophisticated cyber security attacks allowed the …
Katie Arrington on DFARS Interim Rule - YouTube youtube.comArchiving... youtube.com https://www.youtube.com/watch?v=jgy6xvFvC58 there are several pathways a rule can go down, proposed rule and interim rule. It is a matter of national emergency and national security. If you …
Cybersecurity Maturity Model Certification (CMMC) Part 2: Process Maturity's Role in Cybersecurity insights.sei.cmu.eduRead: insights.sei.cmu.edu insights.sei.cmu.edu …
Capability Maturity Model for Software (Version 1.1) resources.sei.cmu.eduArchiving... resources.sei.cmu.edu https://resources.sei.cmu.edu/library/asset-view.cfm?assetid=11955 When trying to understand a construct I find it best to go back to its earliest citation and watch how …
Building organizational capabilities: McKinsey Global Survey results | McKinsey mckinsey.comArchiving... mckinsey.com https://www.mckinsey.com/business-functions/organization/our-insights/building-organizational-capabilities-mckinsey-global-survey-results In the CMMC Model we …
An Introduction to the Cybersecurity Maturity Model Certification (CMMC) insights.sei.cmu.eduRead: insights.sei.cmu.edu insights.sei.cmu.edu https://insights.sei.cmu.edu/sei_blog/2020/03/an-introduction-to-the-cybersecurity-maturity-model-certification-cmmc.html The Office of …
Bob Metzger on the DFARS Interim Rule and Cloud Compliance - YouTube youtube.comRead: www.youtube.com youtube.com https://www.youtube.com/watch?v=HZ5TQboesww&feature=youtu.be ## Notes on Bob Metzger on the DFARS Interim Rule and Cloud Compliance several billion dollars to one …
Hey folks anyone else getting the bookmark entry field to work. I just get a spin every time I try to save a bookmark
Enjoy the third episode of Dr Mac’s CyberSecurity Brief. Today we dig deeper into CUI (Controlled Unclassified Information).
Episode Two of Dr. Mac’s CyberSecurity brief. Join me as I define FCI.
This show is licensed with a CC-BY-SA 4.0
Thank you to this month’s sponsor Data Intelligence Technologies. Interested in sponsoring content? Get in touch.
Welcome to my new microcast on #cybersecurity where I reflect on my journey as a member of the #cmmcab objectives and assessment working group. I plan on two epispode formats: Quick briefs where I define ONE thing in the cybersecurity matuaration model certification …
Hello everyone. This is @jgmac1106 here as well. Going to try microblog as a learning and reflection space as I work on the #cmmcab cybersecuirity standards.
I am on a Working Group designing the test objectives and assessments