Cuick 10

Cuick 10

by Derek White
Season 2

Behind the Scenes of CMMC Assessments

In this episode of the Cuick 10 Podcast, recorded live at #CUICON 2025, Derek White, Chief Operating Officer of Cuick Trac, is joined by Steven Molter, Solutions Architect at IntelliGRC, to explore what’s actually happening inside CMMC Level 2 assessments right now. Steven shares what he’s seeing across multiple client engagements, including inconsistencies between C3PAOs, scoping guidance that’s still evolving, and practical strategies for addressing tough requirements like continuous monitoring. He also highlights how IntelliGRC is helping organizations ditch spreadsheet chaos and stay organized for audit success. Watch the full Episode on YouTube: https://www.cuicktrac.com/cuick-10-podcast/

CMMC Lessons from the Front Lines

In this episode of the Cuick 10 Podcast, recorded live at #CUICON 2025, Derek White, Chief Operating Officer of Cuick Trac, is joined by Matthew Titcombe, CEO & Sr. Information Security Consultant at Peak InfoSec, to share real-world insights from the early days of CMMC through where things stand in 2025. Matthew discusses his experiences as one of the first C3PAOs, the growing demand for in-person collaboration and education in the cybersecurity space, and the evolving expectations from primes within the Defense Industrial Base. He also gives a behind-the-scenes look at what’s next for CUICON and Peak InfoSec’s content series, including “As the CMMC Churns” and “CMMC Group Therapy.” Watch the full Episode on YouTube: https://www.cuicktrac.com/cuick-10-podcast/

CMMC & FedRAMP: What’s Next?

In this special episode of the Cuick 10 Podcast, Derek White, Chief Operating Officer of Cuick Trac, is joined by George Perezdiaz, Director of Advisory Services at Cuick Trac, to discuss the future of CMMC and FedRAMP compliance—recorded live from #CUICON 2025. George shares insights into how FedRAMP Moderate Equivalency is shaping the cybersecurity landscape for DoD contractors, the latest updates on CMMC, and what businesses need to know about evolving compliance regulations. They also break down the critical difference between incident response vs. incident awareness and why planning ahead is key to staying compliant.

CMMC Pitfalls – What Contractors Must Avoid

In this episode of the Cuick 10 Podcast, Derek White, Chief Operating Officer of Cuick Trac, is joined by Stephen Pratt, Chief Information Security Officer (CISO) and Director of Programs, Cyber Risk & Compliance Sector at Sentar, to discuss the biggest pitfalls organizations face when preparing for CMMC assessments. Stephen shares key insights on why contractors struggle with scoping, documentation, and cloud service provider compliance, and how early preparation and mock assessments can prevent certification failures. Watch the full Episode on YouTube: https://www.cuicktrac.com/cuick-10-podcast/

CNAPP & CMMC

In this episode of the Cuick 10 Podcast, Derek White, Chief Operating Officer of Cuick Trac, is joined by Bryan Rosensteel, Head of Public Sector Product Marketing at Wiz, to discuss how Cloud-Native Application Protection Platforms (CNAPP) are transforming CMMC compliance and cloud security. Bryan explains what CNAPP is, how it consolidates multiple security functions into a unified platform, and why it’s becoming essential for organizations managing Controlled Unclassified Information (CUI) in cloud environments. He also shares insights on how automation and real-time risk visibility can simplify audit preparation and improve security posture for defense contractors. Watch the full Episode on YouTube: https://www.cuicktrac.com/cuick-10-podcast/

Cuick Trac Achieves FedRAMP Moderate Equivalency

In this episode of the Cuick 10 Podcast, Derek White, Chief Operating Officer of Cuick Trac, is joined by Jeff Baldwin, Chief Information Security Officer, and George Perezdiaz, Director of Compliance Advisory, to discuss Cuick Trac’s achievement of FedRAMP Moderate Equivalency. They explore what this milestone means for organizations handling Controlled Unclassified Information (CUI), its impact on CMMC compliance, and how it strengthens cybersecurity within the Defense Industrial Base. Jeff and George break down the importance of third-party validation, how FedRAMP Moderate Equivalency aligns with NIST SP 800-171 and DFARS 252.204-7012 requirements, and how Cuick Trac’s secure enclave provides a managed solution for achieving compliance efficiently. Watch the full Episode on YouTube: https://youtu.be/BbkjKihhOas

CMMC & Your Affirming Official

In this episode of the Cuick 10 Podcast, Derek White, Chief Operating Officer of Cuick Trac, is joined by Justin Orcutt, Director of Cybersecurity for the Aerospace and Defense Market at Microsoft, to break down the role of the affirming official in CMMC compliance. Justin discusses the shift of accountability to senior business leaders, the need for annual self-assessments, and the importance of maintaining continuous compliance with CMMC Level 2 requirements. Tune in to learn how to navigate the evolving CMMC landscape and stay on track for 2025 compliance. Watch the full episode on YouTube: https://youtu.be/-7633FA1TSs

FAR CUI Rule Update – What DoD Contractors Need to Know

In this episode of the Cuick 10 Podcast, Derek White, Chief Operating Officer & Co-Founder of Cuick Trac, is joined by George Perezdiaz, Director of Compliance Advisory at Cuick Trac, to discuss the FAR CUI Rule Update and its implications for CMMC compliance. George breaks down what the FAR CUI Rule means for DoD contractors, the continued importance of CMMC compliance, and what changes are on the horizon in 2025. Tune in for key insights and guidance on staying compliant with the evolving rules. Watch the full episode on YouTube: https://www.youtube.com/watch?v=YOUR_VIDEO_ID
Season 1

CMMC Compliance – Are You Ready for 2025?

In this episode of the Cuick 10 Podcast, host Derek White, CPO & Co-Founder of Cuick Trac, is joined by George Perezdiaz, Director of Compliance Advisory at Cuick Trac, to discuss the final CMMC rule and what organizations need to do to get ready. They break down strategic steps for effective scoping, CUI management, and understanding third-party risk to ensure compliance for 2025. Presented by: Beryllium InfoSec Guest: George Perezdiaz, Director of Compliance Advisory at Cuick Trac Host: Derek White, CPO & Co-Founder of Cuick Trac Learn more: www.cuicktrac.com

CMMC Facility Scoping with VDI

In this episode of the Cuick 10 Podcast, Derek White, CPO & Co-Founder of Cuick Trac, is joined by Jeff Baldwin, CISO of Cuick Trac, to discuss how facility scoping works in the context of CMMC when utilizing Virtual Desktop Infrastructure (VDI). Jeff shares insights into how organizations should manage their controlled environments, and why it's important to secure CUI in virtual and remote settings.Learn the best practices for ensuring compliance while navigating the complexities of scoping and securing data in a virtual environment.
6 of 8