UPDATE: [Close of Comments on Commerce Cyber Rule]
Client Alert | 1 min read | 01.20.22
On January 12, 2022 the U.S. Department of Commerce’s Bureau of Industry and Security (BIS) issued a federal register notice delaying the effective date of new controls on cybersecurity items and an accompanying new license exception. The rules are now set to take effect on March 7, 2022.
The new controls were published in an interim final rule on October 21, 2021, please see our earlier client alert on this. Broadly speaking, they cover (a) items, including software, for the generation, command and control, or delivery of intrusion software and (b) internet protocol (IP) network communication surveillance equipment. BIS delayed the implementation to give industry additional time to comply with the new restrictions as well as update internal compliance procedures, and to provide BIS itself time to provide additional guidance on the rule. BIS may also consider some modifications to the rule, but is not reopening the comment period and these modifications based on the latest comments will most likely be made, if at all, sometime after the new effective date for the interim final rule.
Contacts

Partner and Crowell Global Advisors Senior Director
- Washington, D.C.
- D | +1.202.624.2698
- Washington, D.C. (CGA)
- D | +1 202.624.2500
Insights
Client Alert | 2 min read | 07.24.26
GAO Finds That Challenge to Agency’s Failure to Comply With DFARS Requirement Comes Too Late
GAO’s recent dismissal of the protest in Tyonek Technical Innovations, LLC, B-424364, B-424364.2, June 30, 2026, carries an important lesson for government contractors: if you believe solicitation terms conflict with a statute or regulation, you must raise that challenge before proposals are due—not during discussions or afterwards.
Client Alert | 3 min read | 07.23.26
Client Alert | 3 min read | 07.23.26
Second Circuit Affirms Preliminary Injunction Against Nielsen in Constructive Tying Case
Client Alert | 4 min read | 07.22.26



