Are You Cyber Secure Under the DFARS Rule?
Client Alert | 1 min read | 09.17.14
With a revised regulatory regime still rippling through the defense industry, DoD fundamentally reshaped the cybersecurity rules in the DoD Federal Acquisition Regulation Supplement in November 2013 by (1) imposing 51 mandatory security controls for DoD-controlled technical information; (2) requiring the DFARS "Safeguarding" clause in all DoD contracts and solicitations; (3) mandating that contractors flow down the requirements, even to commercial subcontractors; and (4) defining detailed reporting requirements for certain types of security "incidents" or breaches. In a "View from Crowell & Moring: Getting Ahead of the DFARS Safeguarding Rule" published in Bloomberg BNA’s Federal Contracts Report, David Bodenheimer, Evan Wolff, and Kate Growley discuss the definitional gaps, compliance pitfalls, and practical pointers for determining the reach of the DFARS Safeguarding Rule, the mandate for "adequate security," the scope of the reporting requirements, and the emerging lessons learned in navigating these game-changing cybersecurity safeguards governing DoD procurements.
Contacts

Partner, Crowell Global Advisors Senior Director
- Washington, D.C.
- D | +1.202.624.2698
- Washington, D.C. (CGA)
- D | +1 202.624.2500
Insights
Client Alert | 3 min read | 11.05.25
On October 29, 2025, the attorneys general of Florida, Texas, Iowa, Nebraska, and Montana (the “State AGs”) jointly issued letters to three sustainability groups asserting that their plastics recycling initiatives may violate state and federal antitrust and consumer protection laws.
Client Alert | 6 min read | 11.05.25
The EU’s Defense Readiness Roadmap and Omnibus: What Are the Competition Law Implications?
Client Alert | 6 min read | 11.03.25
ICE Is Suddenly At The Door: How Retailers, Hospitals, And Hotels Can Survive The Surprise Visitor
Client Alert | 6 min read | 11.03.25
