Cloud Computing: New DoD Rules For Contractors Focus On Enhancing Security and Incident Response

September 11, 2015 Off By David

Grazed from CTOVision. Author: Bob Gourley.

On 26 August 2015 the Department of Defense (DoD) published a new rule entitled the "Defense Federal Acquisition Regulation Supplement: Network Penetration Reporting and Contracting for Cloud Services (DFARS Case 2013-D018). You can read the details of this new rule here:

This rule represents a significant expansion of the mandate on defense contractors and their subcontractors to protect information and report on breaches. The rule is in immediate effect. It was promulgated with urgency and all contractors and subcontractors are expected to take this with the required amount of seriousness…

The DoD expects these rules will apply to about 10,000 contractors. The rules are meant to ensure that all DoD contractors and subcontractors (not just IT providers, but ALL contractors) take appropriate steps to mitigate risks and enhance their security. It also makes it clear that if DoD information is involved in a breach there are reporting requirements. Here is what you need to know:..

Read more from the source @ https://ctovision.com/2015/09/new-dod-rules-for-contractors-focus-on-enhancing-security-and-incident-response/