Insights

Professional
Practice
Industry
Region
Trending Topics
Location
Type

Sort by:

Firm News 5 results

Firm News | 1 min read | 07.01.25

Crowell Represents Parsons Corporation in Strategic $89M Acquisition

Washington – July 1, 2025: A Crowell & Moring team represented Parsons Corporation in its $89 million acquisition of Chesapeake Technology International, a defense technology firm known for its advanced capabilities supporting all-domain operations and the Indo-Pacific Command.
...

Firm News | 9 min read | 01.02.25

Crowell & Moring Elects 12 New Partners, Promotes Four to Senior Counsel and 25 to Counsel

Crowell & Moring elected 12 new partners effective January 1, 2025. The firm also promoted four lawyers to the senior counsel and 25 associates to counsel.

Firm News | 9 min read | 01.09.23

Crowell & Moring Elects 16 New Partners, Promotes Five to Senior Counsel, and 25 to Counsel

Crowell & Moring elected 16 lawyers to the firm’s partnership, effective January 1, 2023. The firm also promoted five lawyers to the position of senior counsel and 25 associates to the position of counsel.

Client Alerts 99 results

Client Alert | 4 min read | 01.13.26

NIST Releases Draft Framework for AI Cybersecurity, Solicits Public Comment: What Organizations Using or Deploying AI Should Know

The National Institute of Standards and Technology (“NIST”) recently released draft guidelines for applying NIST’s Cybersecurity Framework to organizations adopting artificial intelligence. NIST requests public comments on its “Initial Preliminary Draft” Cybersecurity Framework Profile for Artificial Intelligence (the “Cyber AI Profile”) by midnight on January 30, 2026. 
...

Client Alert | 3 min read | 01.07.26

CMMC for AI? Defense Policy Law Imposes AI Security Framework and Requirements on Contractors

In an important first, the yearly defense policy law, the National Defense Authorization Act (NDAA) for Fiscal Year 2026, directs the Department of Defense (DoD)  to develop and implement a framework addressing the cybersecurity and physical security of artificial intelligence and machine learning technologies (AI/ML) acquired by the Pentagon.
...

Client Alert | 5 min read | 12.23.25

An ITAR-ly Critical Reminder of Cybersecurity Requirements: DOJ Settles with Swiss Automation, Inc.

Earlier this month, the Department of Justice (DOJ) announced that Swiss Automation Inc., an Illinois-based precision machining company, agreed to pay $421,234 to resolve allegations that it violated the False Claims Act (FCA) by inadequately protecting technical drawings for parts delivered to Department of Defense (DoD) prime contractors.  This settlement reflects DOJ's persistent emphasis on cybersecurity compliance across all levels of the defense industrial base, reaching beyond prime contractors to encompass subcontractors and smaller suppliers.  The settlement is also a reminder to all contractors not to overlook the often confusing relationship between Controlled Unclassified Information (CUI) and export-controlled information.
...

Press Coverage 20 results

Publications 17 results

Publication | 01.28.25

Changes to Critical Infrastructure Requirements

In 2025, owners and operators of critical infrastructure will have new security and information sharing obligations to consider under the National Security Memorandum 22 (“NSM-22” or the “Memorandum”). NSM- 22 replaces the Obama-era Presidential Policy Directive 21: Critical Infrastructure Security and Resilience (PPD-21).
...

Publication | 01.28.25

Preparing for CMMC in 2025

After years of anticipation and a series of delays, implementation of the U.S. Department of Defense’s Cyber Maturity Model Certification Program (CMMC) is rapidly approaching. Though CMMC is not expected to enter into effect until early-to- mid 2025, DOD contactors can start taking steps now to ensure a smooth transition into this new regulatory era.
...

Publication | 01.28.25

Will Higher Education Institutions Face Enhanced Cybersecurity Requirements?

U.S. colleges and universities watched closely this summer when the DOJ, in a novel move, scrutinized the cybersecurity compliance of a research lab at an academic institution.
...

Events 12 results

Event | 04.10.25, 8:00 AM EDT - 1:00 PM EDT

Crowell's CMMC Day

You are invited to attend Crowell's CMMC Day, an in-person event dedicated to exploring the complexities of CMMC implementation and associated legal risks. This event will feature a series of insightful conversations with industry experts on topics such as prepping for assessments, risk management, and the government and private sector’s perspectives on CMMC. 

Event | 11.19.24, 8:00 AM EST - 9:30 AM EST

CMMC Finalized: How to Prepare & Achieve Certification

Crowell is honored to host Ms. Stacy Bostjanick, the Defense Department’s CMMC Program Director, who will be joined live by Crowell attorneys Evan Wolff and Michael Gruden for an engaging fireside chat.

Event | 09.12.24, 8:00 AM EDT - 12:30 PM EDT

Cybersecurity Symposium: The Cyberside Chat

Crowell & Moring Counsel Michael Gruden, a member of the firm's Privacy & Cybersecurity Group, will be speaking at the Cybersecurity Symposium: The Cyberside Chat, taking place on Thursday, September 12 in Washington, D.C. His panel, "The Black, White, and Grey of Cybersecurity Compliance," will be taking place at 11:35 AM ET.

Webinars 20 results

Webinar | 01.22.26, 12:00 PM EST - 1:00 PM EST

FY2026 NDAA Webinar

A team of attorneys from Crowell & Moring’s Government Contracts Group will present on the most consequential changes for government contractors from the National Defense Authorization Act (NDAA) for Fiscal Year (FY) 2026, including the bill’s significant changes to defense acquisition, sourcing restrictions, and interactions between the Defense Industrial Base and the Department of War.  

Webinar | 09.15.25, 12:00 PM EDT - 1:00 PM EDT

CMMC Clause Rule: What to Know

The Department of Defense (DoD) has released the highly anticipated second final rule for the Cybersecurity Maturity Model Certification Program (CMMC), ushering in its mandatory implementation that begins on November 10. CMMC is a unified assessment model released by the DoD in response to the growing threat of cyberattacks on and data theft from the Defense Industrial Base.  This program requires every DoD contractor that handles sensitive government data to certify compliance with certain cybersecurity controls.  CMMC brings greater scrutiny to contractors’ cybersecurity compliance and greater risks associated with compliance failures. To achieve certification, contractors must prove that their organizations can meet a myriad of security control obligations, a process that can be daunting without familiarity with the policies, procedures, and practices that will be required when the program is finalized.
...

Webinar | 05.20.25, 10:00 AM EDT - 12:00 PM EDT

SPX Technologies: AI in Legal and Cybersecurity for DoD Contractors

10:00 a.m. - 11:15 a.m. ET (1 hour 15 minutes)
...

Blog Posts 21 results

Blog Post | 01.08.26

CMMC for AI? Defense Policy Law Imposes AI Security Framework and Requirements on Contractors

Crowell & Moring’s Government Contracts Legal Forum

Blog Post | 12.29.25

An ITAR-ly Critical Reminder of Cybersecurity Requirements: DOJ Settles with Swiss Automation, Inc.

Crowell & Moring’s Government Contracts Legal Forum

Blog Post | 12.29.25

The FY 2026 National Defense Authorization Act

Crowell & Moring’s Government Contracts Legal Forum

Podcasts 8 results

Podcast | 09.11.25

Fastest 5 Minutes: CMMC

This week’s episode covers DOD’s final rule applying the Cybersecurity Maturity Model Certification program (CMMC) to DoD contractors and subcontractors, and is hosted by Peter Eyre and Michael Gruden. Crowell & Moring's "Fastest 5 Minutes" is a biweekly podcast that provides a brief summary of significant government contracts legal and regulatory developments that no government contracts lawyer or executive should be without.
...

Podcast | 10.25.24

Special Edition of the Fastest 5 Minutes: CMMC

This week’s special edition focuses on DOD’s final rule formalizing the requirements, assessment processes, and related governance for its Cyber Maturity Model Certification Program (CMMC), and is hosted by Peter Eyre, Yuan Zhou, and Michael Gruden. Crowell & Moring's "Fastest 5 Minutes" is a biweekly podcast that provides a brief summary of significant government contracts legal and regulatory developments that no government contracts lawyer or executive should be without.
...

Podcast | 01.04.24

Special Edition of the Fastest 5 Minutes: CMMC

This special edition covers DoD’s proposed rule for the Cybersecurity Maturity Model Certification Program, and is hosted by Peter Eyre, Michael Gruden, and Nkechi Kanu. Crowell & Moring's "Fastest 5 Minutes" is a biweekly podcast that provides a brief summary of significant government contracts legal and regulatory developments that no government contracts lawyer or executive should be without.
...