Inside Cybersecurity

April 27, 2025

Daily News

Pentagon IG raises concerns over process to authorize third-party assessment organizations for CMMC program

By Sara Friedman / January 15, 2025

A new audit from the Defense Department Office of the Inspector General finds gaps in the Pentagon’s process to authorize 11 certified third-party assessment organizations that applied to be part of the Cybersecurity Maturity Model Certification program.

“The objective of this audit was to determine whether the DoD ensured that the process for authorizing third-party organizations to perform Cybersecurity Maturity Model Certification (CMMC) 2.0 assessments was effectively implemented,” the DOD IG says in the Jan. 10 report.

...

Log in to access this content.


Not a subscriber? Sign up for 30 days free access to exclusive news and analysis on cybersecurity regulations and more.