WASHINGTON, July 13 : The Pentagon is suspending the next phase of a cybersecurity certification program for defense contractors, backing off a compliance requirement that industry executives had warned was pushing small suppliers out of military work and narrowing competition in the defense supply chain.The

Top Pentagon officials said as currently executed, CMMC is too prohibitive and burdensome on the Defense Industrial Base.

The Defense Department will keep cybersecurity self-assessments, but will not require third-party certifications as planned.

Citing prohibitive costs for small and mid-size contractors, the Defense Department will keep Phase I self-assessments in place while a new task force studies the cyber and supply…

WASHINGTON, July 13 : The Pentagon is suspending the next phase of a cybersecurity certification program for defense contractors, backing off a compliance requirement that…

The Pentagon has suspended CMMC Phase 2 cybersecurity audits, citing prohibitive costs and a shortage of assessors driving small contractors out.

The Pentagon is suspending CMMC phase two requirements that were set to take effect in November, pending a review of the entire program.

The CMMC Phase II pause “shouldn’t be a shocker to anybody,” according to Katie Arrington, thought of as the creator of CMMC. But, she said, at the end of the day the Pentagon is…