Finally Heard – Cyber Help for Small Businesses is on Its Way
Client Alert | 1 min read | 08.22.18
New cybersecurity legislation was recently passed that aims to help smaller government contractors in their efforts to safeguard sensitive customer data. The NIST Small Business Cybersecurity Act requires the National Institute of Standards and Technology (NIST) to issue guidance and resources, within the next year, to help small- and medium-sized businesses identify, assess, and reduce cybersecurity risks. Partly in response to the rising number of cyberattacks targeting small businesses, the legislation is the latest in a series of efforts more broadly focused on supply chain security throughout the procurement process. Under the Act, NIST must also:
- Ensure future resources can vary with the nature and size of the small business, as well as the nature and sensitivity of the data handled.
- Encourage the use of technology neutral, commercial off-the-shelf (COTS) solutions.
- Promote awareness of basic controls, a workplace cybersecurity culture, and third-party stakeholder relationships.
Contacts

Partner, Crowell Global Advisors Senior Director
- Washington, D.C.
- D | +1.202.624.2698
- Washington, D.C. (CGA)
- D | +1 202.624.2500
Insights
Client Alert | 5 min read | 02.23.26
UK Government Seeks Evidence on Ownership and Control in Financial Sanctions Regulations
The UK’s Office of Financial Sanctions Implementation (OFSI) has launched a call for evidence concerning the "ownership and control" test within UK financial sanctions. The call for evidence, running until 11:59 p.m. on 13 April 2026, seeks stakeholder views on the challenges and implementation of the "control" limb, with particular focus on its hypothetical element.
Client Alert | 4 min read | 02.20.26
Client Alert | 7 min read | 02.20.26
Section 5949 Proposed Rule Puts the FAR Council's Chips on the Table
Client Alert | 5 min read | 02.20.26
Trump Administration Pursues MFN Pricing for Prescription Drugs

