1. Home
  2. |Insights
  3. |IR&D Reporting Requirements Reinstated

IR&D Reporting Requirements Reinstated

Client Alert | 1 min read | 01.30.12

In a final rule published today, the DFARS were amended to reinstate a requirement that was eliminated from the regulations in the early 1990s, providing that as a condition of allowability for Independent Research and Development (IR&D) costs, major contractors must submit to DoD at least annually technical descriptions of the IR&D projects that the contractor claims as allowable. In response to criticism of a draft regulation proposing a $50,000 coverage threshold, the final rule limits mandatory reporting to “major contractors” that allocate more than $11 million annually to “covered contracts” (a term that excludes fixed-price contracts without cost incentives), leaves largely to the contractor’s discretion how much detail needs to be reported in the on-line template through which the reports must be submitted, encourages voluntary reporting by contractors not subject to the mandatory requirement, and promises that the reports will be exempt from disclosure under the Freedom of Information Act.

Contacts

Insights

Client Alert | 13 min read | 06.12.26

EU Cyber Resilience Act Countdown: 11 September 2026 Incident/Vulnerability Reporting Deadline Less Than 100 Days Away

The EU Cyber Resilience Act (CRA) is an EU product cybersecurity law for connected products (formally, “products with digital elements” under the CRA) commercialized in the EU; it entered into force on 10 December 2024, with direct application across the EU. Full application begins 11 December 2027, but one of its most operationally demanding provisions takes effect in just under 100 days, on 11 September 2026: the mandatory vulnerability and incident reporting under Article 14 CRA....