Cybersecurity Maturity Model Certification (CMMC) Program Implementation UPDATE #2
Contract Opportunity Analysis
The Department of Defense, specifically the U.S. Army Corps of Engineers (USACE), is implementing the Cybersecurity Maturity Model Certification (CMMC) 2.0 program, with a special notice issued to update stakeholders on its requirements. This program mandates that all organizations handling Federal Contract Information (FCI) or Controlled Unclassified Information (CUI) achieve specific cybersecurity maturity levels to enhance the protection of sensitive data, aligning with NIST SP 800-171 standards. The CMMC will be rolled out in four phases, commencing on November 10, 2025, and concluding on November 10, 2028, with contractors advised to align their cybersecurity posture, utilize the Procurement Integrated Enterprise Environment (PIEE) for self-assessment, and monitor updates from the DoD. This notice serves informational purposes only and does not impose new requirements; contractors are encouraged to reach out to the contracting officer listed on SAM.gov for further inquiries.