Listen "Third-Party Assessments and NIST SP 800-171"
Episode Synopsis
In this episode of Hunton's "Regulatory Phishing," Eric Crusius is joined by Tom Tollerton, a partner with FORVIS, a Certified Third-Party Assessment Organization (C3PAO). In this episode, Eric and Tom discuss the role of the C3PAO in the Cybersecurity Maturity Model Certification (CMMC) process and what to expect with the new version of Special Publication 800-171 from the National Institute of Standards and Technology (NIST). NIST 800-171 is used as the baseline for a number of existing and forthcoming regulations in addition to Level 2 of CMMC.
More episodes of the podcast Regulatory Phishing by Hunton Andrews Kurth LLP
Finding the Right MSP to Manage Your CUI
03/10/2025
A Closer Look at the CMMC Rollout
01/10/2025
The DFARS CMMC Final Rule is Here!
19/09/2025
ZARZA We are Zarza, the prestigious firm behind major projects in information technology.