Cuick 10

Cuick 10

di Derek White
Stagione 1

Scope & Boundaries for CMMC

In this episode of the Cuick 10 Podcast, Derek White, CPO and Co-Founder of Cuick Trac is joined by Koren Wise, CEO of Wise Technical Innovations, to discuss the complexities of scope and boundaries in CMMC compliance. Koren shares valuable insights on how organizations should define their limits, the challenges of managing CUI flows, and best practices for ensuring compliance across multiple locations and systems. Learn how understanding these boundaries can streamline your compliance efforts and set you up for successful assessments.

CMMC Rule Update - 32 CFR Part 170

The CMMC Program rule-making process has reached a major milestone, with 32 CFR Part 170 officially published on the National Register. Industry-leading cyber lawyer, Robert Metzger, head of cybersecurity practice at Rogers Joseph O'Donnell, PC,, joins Cuick Trac's Derek White to discuss the immediate effects on defense contractors, while also discussing the update to the FAR CUI rule-making process, which will have a potentially significant impact across other agencies.

SPRS: Myth vs Fact

CMMC may be all the rage now, but your SPRS score is also important and has been for the past few years. Cyber Compliance Community Contributor Wayne Boline joins Cuick Trac's Derek White to discuss what you need to know about SPRS and the myths and facts that come with it.

The Challenge of Documentation for CMMC

Are you feeling the pressure of CMMC and not knowing exactly what details you might be missing? Have you been struggling with the challenges of documentation for CMMC? If so, this episode is for you. Cuick Trac's Derek White is joined by Vince Scott, CEO and Founder of Defense Cybersecurity Group, to discuss the important details you don't want to miss as the CMMC rule-making process takes another step forward to being a requirement in your DoD contracts.

CMMC Through the Eyes of a CISO

Are you responsible for your organization's CMMC compliance program? Are you in a position of leadership where the responsibility lies on your shoulders, regardless of who's been tasked to implement NIST SP 800-171? In this episode, Landon Carlson, Chief Information Security Officer at Metron, shares his experience, insight, and opinions on CMMC as a CISO who is relatively new to the organization.

What GRC Means to You and What to Do

Governance, Risk and Compliance, or GRC, helps organizations manage risk, achieve business goals, and comply with regulations. When it comes to CMMC, the GRC approach an organization takes can mean the difference between passing or failing third-party assessments. In this episode, Mark Berman, CEO of FutureFeed, talks about what GRC tools should do for you and the benefits of using one above passing an assessment.

Starting (or Re-starting) Your CMMC Program

Are you new to an organization and the CMMC burden falls on you? Or is CMMC being prioritized again? Or are you focusing on CMMC for the very first time? Regardless of your answer, this podcast is for you. If you miss some of the core aspects of CMMC early on, the price to pay later can be damaging. Special guest Regan Edens of the CMMC Industry Standards Council and DTC Global joins host Derek White to discuss what OSCs should think about on the front end of their CMMC journey.

So You Think You're Ready for a CMMC Assessment?

As the Cybersecurity Maturity Model Certification (CMMC) requirement gets closer, many organizations seeking certification (OSC) are preparing for an assessment with an authorized CMMC third-party assessment organization (C3PAO). OSCs should not engage with C3PAOs until they are ready, If you think you are, listen to Glenda Snodgrass of The Net Effect, LLC, as she discusses the top things you should have ready before you prepare further.

CMMC: A Small Business Perspective

Most of the Defense Industrial Base is made up of small businesses. That innovation is critical to our nation's competitive advantage. However, navigating Controlled Unclassified Information (CUI) and NIST SP 800-171, and preparing for CMMC can be challenging for small businesses. This episode features the small business perspective of Allison Giddens, President of Operations at Win-Tech, Inc., and their approach to these cybersecurity requirements.

Identifying CUI & Why It Matters

Identifying CUI is the #1 most important aspect of properly building a successful compliance program to meet CMMC requirements. In this episode, Ryan Bonner of DEFCERT discusses how an organization can identify CUI, and why it matters to their scope and overall costs of implementation and CMMC certification.
7 di 8