CDM: More relevant than ever

By Amanda Mull, contract specialist

With the recent incidents involving ransomware and other serious data breaches, security remains a top priority in federal IT.

It’s been some time since we published our last blog on CDM, so to keep our channel partners and suppliers up to date on recent changes, in the coming weeks we will be publishing a series of CDM-related blogs.

In this, our first blog, we provide some basic information and discuss a recent leadership change. Future blogs will cover the federal CDM Dashboard, IPv6 compliance, updates to common requirements and the future of the CDM SIN.

Here are some of the basics about the program:

Continuous Diagnostics and Mitigation Program 

The CDM Program was developed in 2012 to support government-wide and agency-specific efforts to provide risk-based, consistent, and cost-effective cybersecurity solutions to protect federal civilian networks across all organizational tiers.

Read more of this post

Huge Opportunity Opens Up for Small Business on CDM

American flag on a wooden texture table

By Gina Brown, contracts specialist

The Continuous Diagnostic and Mitigation (CDM) program has gone through a lot of changes since it was first launched in 2013. And, each step of the way seems to make the program easier for companies to participate.

The program’s latest change allows companies to include Small Business to be part of CDM and play a bigger role in the program. As the program moves into its next phases, this could be a huge opportunity for companies that have not historically been able to participate.

What’s changed?

Read more of this post

What are FISMA and FedRAMP?

By Chris Wiedemann, consultant

Whether you’re a veteran of federal IT sales or a complete newcomer to the space, there’s one recurring theme you’ve probably noticed in the way our customers talk to industry: regardless of their mission or program, they all mention cybersecurity as a critical part of their job.

Given the sheer number of incidents and the size and scope of federal networks, not to mention the often sensitive information they contain, the focus on security makes business sense. However, as is often the case with government, there’s an extra factor to their behavior – they’re required by law to secure federal networks. One law in particular – the Federal Information Security Management Act (FISMA) – plays a critical role in determining how agencies need to secure their environments.

Read more of this post

Why Perfection is Now Key on CDM

Jenni Taylor_65x85cdmupdate_blog091216By Jenni Taylor, Contract Programs Manager

A significant, if not major, change is underfoot at the Department of Homeland Security’s Continuous Diagnostics and Mitigation (CDM) program.

It involves “Attachment R,” which CDM contractors submit when adding a new product or capability to the program. Items are added all the time as CDM moves from phase to phase and from requirement to requirement. If the government found errors in Attachment R, the contractor was able to make corrections, resubmit, and have their capability reconsidered.

No more. DHS sent out notice last week alerting contractors that “Revised Attachment R” is being removed from the open season process. What this means is vendors will no longer be able to correct an Attachment R once it’s been submitted to DHS for review.

Read more of this post

Top IT Opportunities at DOJ

Tom O'KeefeDOJ_071316By Tomas O’Keefe, Consultant

The Department of Justice (DOJ) is involved in numerous projects to continue to refresh and update its IT portfolio, but there are three key technologies that DOJ continues to look toward: cloud, big data, and cybersecurity.

With an annual IT budget that has remained relatively flat at roughly $2.9 billion, DOJ is developing strategies to mitigate the cost of maintaining legacy systems. At the same, DOJ is reinventing itself and becoming a more modern, lean, and agile IT organization that can continue to deliver on its critical law enforcement and national security functions.

Read more of this post

What You Need to Know About CDM’s Latest Update

Jenni Taylor_65x85CDM eventBy Jenni Taylor, Contracts Programs Manager

immixGroup’s headquarters was a flurry of activity recently when we brought in tech companies to meet with contractors on the Department of Homeland Security’s Continuous Diagnostic and Mitigation program. It was our 4th CDM Speed Networking event, in support of CDM team leads, prime contractors and CDM providers and customers—something we organize every time the program is about to cross into a new phase.

We’ve had some updates since the event, with the most recent being a Request for Information (RFI) released this month that asks for industry input on Phase III capabilities and technologies. The RFI specifically wants to hear about secure orchestration, emerging data standards, and analytics tools to support timely detection and response to cyber events.

Read more of this post

%d bloggers like this: