Category: Compliance
-
ComplianceOctober 6, 2026
CMMC Pharmacy Compliance Guide for Secure Healthcare Data
Pharmacies holding DoD contracts must meet CMMC requirements; this guide maps the specific obligations for a CMMC pharmacy handling Controlled Unclassified Information. This...
-
ComplianceOctober 6, 2026
Senate Unanimously Passes the Health Care Cybersecurity and Resiliency Act
On a quiet Tuesday, the United States Senate reached a unanimous decision to pass the Health Care Cybersecurity and Resiliency Act. The legislation, backed by bipartisan...
-
ComplianceOctober 4, 2026
Fairchild Medical Center & Boone Health Settle Pixel Lawsuits
In a landmark enforcement action that underscores the evolving threat landscape for health‑care providers, Fairchild Medical Center and Boone Health have reached settlements...
-
ComplianceOctober 3, 2026
CMMC Patient Portal Compliance Checklist for Secure Access
A CMMC patient portal must follow NIST SP 800-171 when it holds CUI from a DoD contract. This guide explains the triggers, assessment steps, and scope controls.
-
ComplianceOctober 2, 2026
Rolling the cyber dice with open-source and open-weight AI models
When the headline “Rolling the cyber dice with open-source and open-weight AI models” appeared on cso_online, it was a stark reminder that the very tools we use to defend...
-
ComplianceSeptember 30, 2026
What Is the Cyber AB? CMMC Accreditation Body Explained
The Cyber AB (Cybersecurity Maturity Model Certification Accreditation Body, Inc.) is the single accreditation body for the Department of Defense CMMC Program. Under 32 CFR Part...
-
ComplianceSeptember 29, 2026
DOJ’s $2 Million Honeywell Settlement Under the Civil Cyber-Fraud Initiative: What Complia
On September 1, the Department of Justice announced that Honeywell Aerospace Inc. had agreed to pay 2,042,518 to resolve allegations that it failed to meet contractual...
-
ComplianceSeptember 28, 2026
Federal Contractor Fraud Defenses Broadened by DOJ Policy Shift
On September 23, 2026, the Justice Department announced a sweeping reinterpretation of the False Claims Act that expands the array of defenses available to federal contractors....
-
ComplianceSeptember 24, 2026
1factory FedRAMP Moderate Equivalent Environment to Support Defense Manufacturers Pursuing
Defense manufacturers are currently navigating a convergence of regulatory frameworks that demand a high‑level of protection for controlled unclassified information. The recent...
-
ComplianceSeptember 22, 2026
DOD Codifies Pause of CMMC Phase 2, DOD CIO Says More Work Needed on CMMC - MeriTalk
For years the Department of Defense has pursued a rigorous, tiered approach to cybersecurity, culminating in the Cybersecurity Maturity Model Certification (CMMC). The latest...
-
Compliance
ComplianceSeptember 20, 2026
Cybersecurity and Compliance Glossary: 23 Terms Defined
Plain-English definitions of 23 cybersecurity and compliance terms, from CUI, CMMC, SPRS and ITAR to SOC, SIEM, PCI DSS and RAG, each tied to a primary source.
-
ComplianceSeptember 18, 2026
Schneider Electric Modicon M340 Controller and Communication Modules
When the Cybersecurity and Infrastructure Security Agency released an advisory about a vulnerability in Schneider Electric’s Modicon M340 controllers and a suite of...