Upcoming Policy Items

Cyber Division - Upcoming Regulatory Comments:

January 2024

-MOSA - Defense Federal Acquisition Regulation Supplement: Modular Open Systems Approaches (DFARS Case 2021-D005)
-Submission Due: Tues 16 January

-NIST 800-171 rev 3, Assessing Security Requirements for Controlled Unclassified Information
-Please provide comments Michael Seeds at mseeds@ndia.org by Fri 19 January.
-Submission Due: Fri 26 January

-NIST SP 800-171 Rev. 2, Protecting Controlled Unclassified Information in Nonfederal Systems and Organizations
-Please provide comments Michael Seeds at mseeds@ndia.org by Fri 19 January.
-Submission Due: Fri 26 January 

February 2024

-FASCA Interim Rule

-FAR Case 2020-011, Implementation of Federal Acquisition Supply Chain Security Act (FASCSA) Orders
-Extension of Comment Period
-Please provide comments Michael Seeds at mseeds@ndia.org by Tue 16 January.
-Submission Due: Fri 2 February

-FAR Case 2021-017, Incident and Threat Reporting and Incident Response Requirements for Products and Services Containing Information and Communications Technology
-Extension of comment period
-Please provide comments Michael Seeds at mseeds@ndia.org by Tue 16 January.
-Submission Due: Fri 2 February

-FAR Case 2021-019, Standardizing Cybersecurity Requirements for Unclassified Federal Information Systems
-Extension of comment period
-Please provide comments Michael Seeds at mseeds@ndia.org by Tue 16 January.
-Submission Due: Fri 2 February

-Defense Federal Acquisition Regulation Supplement: Rights in Technical Data (DFARS Case 2019-D044); Extension of Comment Period
-Please provide comments Michael Seeds at mseeds@ndia.org by Mon 5 February.
-Submission Due: Thurs 15 February

-DFARS CMMC proposed rule - Cybersecurity Maturity Model Certification (CMMC) Program
-Please provide comments Michael Seeds at mseeds@ndia.org by Mon 19 February.
-Submission Due: Mon 26 February

-CMMC Guidance Documents