1. Home
  2. |Insights
  3. |DCAA "Independence"

DCAA "Independence"

Client Alert | less than 1 min read | 03.24.09

The Defense Contract Audit Agency (DCAA) has revised its policy concerning "unsatisfactory conditions related to actions of Government Officials" to provide that "significant and serious" disagreements with actions by government officials, including contracting officers, will be reported directly to the Inspector General rather than to the Government official's management chain, as had been the policy in the past (Mar. 13, 2009). Prior guidance had already required direct reporting of "suspected irregularities" such as criminal violations, and this guidance appears to be intended to cover discretionary decisions that the auditors believe will "result in substantial harm to the Government or taxpayers, or that frustrate public policy."

Insights

Client Alert | 13 min read | 06.12.26

EU Cyber Resilience Act Countdown: 11 September 2026 Incident/Vulnerability Reporting Deadline Less Than 100 Days Away

The EU Cyber Resilience Act (CRA) is an EU product cybersecurity law for connected products (formally, “products with digital elements” under the CRA) commercialized in the EU; it entered into force on 10 December 2024, with direct application across the EU. Full application begins 11 December 2027, but one of its most operationally demanding provisions takes effect in just under 100 days, on 11 September 2026: the mandatory vulnerability and incident reporting under Article 14 CRA....