1. Home
  2. |Insights
  3. |Finally Heard – Cyber Help for Small Businesses is on Its Way

Finally Heard – Cyber Help for Small Businesses is on Its Way

Client Alert | 1 min read | 08.22.18

New cybersecurity legislation was recently passed that aims to help smaller government contractors in their efforts to safeguard sensitive customer data. The NIST Small Business Cybersecurity Act requires the National Institute of Standards and Technology (NIST) to issue guidance and resources, within the next year, to help small- and medium-sized businesses identify, assess, and reduce cybersecurity risks. Partly in response to the rising number of cyberattacks targeting small businesses, the legislation is the latest in a series of efforts more broadly focused on supply chain security throughout the procurement process. Under the Act, NIST must also:

  • Ensure future resources can vary with the nature and size of the small business, as well as the nature and sensitivity of the data handled.
  • Encourage the use of technology neutral, commercial off-the-shelf (COTS) solutions.
  • Promote awareness of basic controls, a workplace cybersecurity culture, and third-party stakeholder relationships.

Contacts

Insights

Client Alert | 2 min read | 12.19.25

GAO Cautions Agencies—Over-Redact at Your Own Peril

Bid protest practitioners in recent years have witnessed agencies’ increasing efforts to limit the production of documents and information in response to Government Accountability Office (GAO) bid protests—often will little pushback from GAO. This practice has underscored the notable difference in the scope of bid protest records before GAO versus the Court of Federal Claims. However, in Tiger Natural Gas, Inc., B-423744, Dec. 10, 2025, 2025 CPD ¶ __, GAO made clear that there are limits to the scope of redactions, and GAO will sustain a protest where there is insufficient evidence that the agency’s actions were reasonable....