DoD's New Year's Gift: More Time to Meet Cyber Safeguarding Requirements
Client Alert | 1 min read | 12.30.15
On December 30, DoD issued an interim rule amending the DFARS Safeguarding Rule in several respects, including to provide contractors up to December 31, 2017, to comply with the security control requirements identified in DFARS 252.204-7012, Safeguarding Covered Defense Information and Cyber Incident Reporting, and detailed in NIST Special Publication 800-171, Protecting Controlled Unclassified Information in Nonfederal Information Systems and Organizations. Despite the additional time to comply, within 30 days of contract award, contractors must still notify the DoD Chief Information Officer of any NIST SP 800-171 security requirements not yet implemented.
Contacts

Partner, Crowell Global Advisors Senior Director
- Washington, D.C.
- D | +1.202.624.2698
- Washington, D.C. (CGA)
- D | +1 202.624.2500
Insights
Client Alert | 6 min read | 01.06.26
California Privacy Agency Launches Data Broker Strike Force Amid Delete Act Crackdown
The California Privacy Protection Agency (“CPPA”) is intensifying its oversight of data brokers with a new dedicated Data Broker Enforcement Strike Force within its Enforcement Division. The strike force will monitor and investigate data brokers’ compliance with their legal obligations under California’s Delete Act and the California Consumer Privacy Act (“CCPA”).
Client Alert | 4 min read | 01.05.26
Another Court Rules CASA Does Not Limit Universal Relief Available Under the APA
Client Alert | 7 min read | 01.05.26
Consideration of Artificial Intelligence in Arbitration Terms of Reference
Client Alert | 4 min read | 12.31.25
Raising the Bar: New York Expands Consumer Protection Law with FAIR Business Practices Act
