Moving the Defense Department's authorization process for IT systems from the DOD Information Assurance Certification and Accreditation Process to the Risk Management Framework was supposed to provide ...
Some companies doing business with the Defense Department have opaque ownership structures that may conceal who owns, controls, or benefits from the company. The Government Accountability Office ...
As I recently argued here at War on the Rocks, many of the current Defense Department approaches to risk and risk management could stand an overhaul. In discussions on national security, risk is ...
Effective March 22, 2023, the Department of Defense (DOD) issued a final rule (Final Rule) amending the Defense Federal Acquisition Regulation Supplement (DFARS) requiring Contracting Officers (COs) ...
It’s time the National Institute of Standards and Technology point to how organizations should be assessing the risk they’re associating with systems when deciding what security controls to implement ...
The Defense Department’s Office of the Chief Information Officer has officially kicked off its effort to improve how the Pentagon manages cybersecurity risks with advanced automation and continuous ...
The U.S. Department of Defense (DOD) has published a July 2025 report entitled Update on Critical Per- and Polyfluoroalkyl Substance Uses. House Report 118-121, which accompanied the 2024 DOD ...