PodcastsGovernmentSum IT Up: CMMC News Roundup

Sum IT Up: CMMC News Roundup

Summit 7
Sum IT Up: CMMC News Roundup
Latest episode

143 episodes

  • Sum IT Up: CMMC News Roundup

    The End of SPRS Scores (sort of)

    2026/2/05 | 33 mins.
    The largest change to DFARS cybersecurity requirements other than CMMC took place on February 1st, 2026, and nobody knew it happened. DFARS 7019 and 7020 have been replaced by DFARS clause 252.240-7997. Basic self-assessments have been eliminated. FAR 52.204-21 has a new number. And none of this went through rulemaking. This week we're diving deep into the mysterious world of class deviations and what they mean for defense contractors moving forward.



    RFO Website: https://www.acquisition.gov/far-overhaul



    DFARS RFO Deviations: https://www.acq.osd.mil/dpap/dars/dfars_far_overhaul_class_deviations.html



    CMMC class deviation: https://youtu.be/vC4IJ2JQ5NU?si=B8I9DII4ZEbQ2dNx



    7012 class deviation: https://youtu.be/voziZRAMvv4?si=HxIkpUWnxyergEUQ
  • Sum IT Up: CMMC News Roundup

    Monthly Cyber AB Town Hall Recap (January)

    2026/1/29 | 46 mins.
    After a brief hiatus, the Cyber AB has gathered the CMMC Ecosystem to deliver its monthly update. On this week's show, we breakdown the information distributed on this month's meeting that you need to know. Things like:



    • Who is the new DoW CIO?



    • Pending shutdown and CMMC Impacts



    • Ecosystem Growth and Certification updates



    • Does this show count for CPEs?



    And so much more...Tune in to find out!



    ISACA Webinar - CMMC: Requirements, Roles, and Professional Credentials: https://store.isaca.org/s/community-event?id=a33VQ000001otC1YAI



    DAU CMMC microlearning: https://www.dau.edu/acquipedia?combine=cmmc&title=C&field_functional_area_target_id=All&field_topic_area_target_id=All



    ISACA CMMC Page: https://www.isaca.org/credentialing/cmmc
  • Sum IT Up: CMMC News Roundup

    CMMC for GSA Contractors?

    2026/1/22 | 18 mins.
    Defense contractors aren't the only ones who need to implement NIST cybersecurity requirements for CUI. The big question has always been whether other agencies would require proof of implementation via the CMMC program. The GSA just revised their process for assessing nonfederal systems handling controlled unclassified information and it's way closer to NIST's Risk Management Framework than CMMC.



    CIO-IT Security-21-112r1 (PDF): https://www.gsa.gov/system/files/Protecting-Controlled-Unclassified-Information-%28CUI%29-in-Nonfederal-Systems-and-Organizations-Process-%5BCIO-IT-Security-21-112-Rev-1%5D.pdf



    Summit 7 Live San Diego: https://www.summit7.us/s7live
  • Sum IT Up: CMMC News Roundup

    Securing the Supply Chain with Elbit America

    2026/1/15 | 47 mins.
    This week we sit down with Supply Chain Director Bo Birdwell to discuss Elbit America's latest open letter to suppliers regarding CMMC. Elbit's letter doesn't mince words: CMMC is here and the time to act is now. Bo not only walks us through the perspective of a major prime contractor on cost, timelines, outsourced services, CMMC Level 3, and more – he also drops a ton of helpful tips for current and prospective suppliers.



    Elbit Supplier Page: https://www.elbitamerica.com/suppliers#cyber



    MSP Collective: https://www.mspcollective.org/



    Bo Birdwell: https://www.linkedin.com/in/bobirdwell/
  • Sum IT Up: CMMC News Roundup

    New CMMC FAQs (January 2026)

    2026/1/08 | 20 mins.
    The defense department has updated the CMMC FAQs for the second time in 3 months. In lieu of rulemaking updates the CMMC FAQs are the best place for updated guidance. This week we're exploring DoD's answers regarding everything from encryption to enclaves to VDI endpoints.



    CMMC FAQs: https://dodcio.defense.gov/CMMC/

More Government podcasts

About Sum IT Up: CMMC News Roundup

It's difficult to keep up with all of the moving parts that make up the Department of Defense's Cybersecurity Maturity Model Certification Program. It's even more difficult to keep up with the relevant bits and bites that influence CMMC. This weekly podcast sums up the news and developments relevant to CMMC; DFARS and other regulations; and NIST standards such as SP 800-171, SP 800-53, the NIST Cybersecurity Framework, and others.
Podcast website

Listen to Sum IT Up: CMMC News Roundup, The Week in Westminster and many other podcasts from around the world with the radio.net app

Get the free radio.net app

  • Stations and podcasts to bookmark
  • Stream via Wi-Fi or Bluetooth
  • Supports Carplay & Android Auto
  • Many other app features

Sum IT Up: CMMC News Roundup: Podcasts in Family

Social
v8.5.0 | © 2007-2026 radio.de GmbH
Generated: 2/10/2026 - 3:52:24 PM