DoD Previews Final Cybersecurity Maturity Model Certification with Revision 0.7
Client Alert | 1 min read | 12.17.19
The Department of Defense (DoD) recently released another revision to its Cybersecurity Maturity Model Certification (CMMC) that, starting next year, independent auditors will use to certify contractor compliance with DoD cybersecurity requirements. Most notably, Revision 0.7 previews the requirements for cybersecurity maturity Levels 4 and 5. Moving beyond the cyber hygiene requirements of Levels 1 through 3, Levels 4 and 5 require even more robust cybersecurity programs capable of addressing the dynamic threats posed by advanced persistent threats (APTs). These two highest levels of certification also implement the enhanced security requirements documented in NIST SP 800-171B, which remains in draft form.
The DoD is expected to announce the final CMMC in January of next year and begin introducing “go/no-go” certification requirements in solicitations as early as June 2020.
Contacts

Partner and Crowell Global Advisors Senior Director
- Washington, D.C.
- D | +1.202.624.2698
- Washington, D.C. (CGA)
- D | +1 202.624.2500
Insights
Client Alert | 5 min read | 04.01.26
OPO Hospital Waiver Litigation: Trends and Takeaways
Despite facing existential challenges in several federal courts, the performance metrics established by the Centers for Medicare and Medicaid Services’ (CMS) 2020 Final Rule for organ procurement organizations (OPO) appear to be, at least for now, withstanding scrutiny in litigation proceedings.
Client Alert | 7 min read | 04.01.26
Client Alert | 5 min read | 03.31.26
Washington State Bans and Voids Most Noncompetes, Narrows Nonsolicits
Client Alert | 5 min read | 03.30.26
Déjà Vu? New Executive Order Outlines Restrictions on Contractor and Subcontractor DEI Activity

