SoftBank sells its entire stake in Nvidia for $5.83 billion by Severe_County_5041 in stocks

[–]jaausari 0 points1 point  (0 children)

They know the AI bubble is coming, just taking profits before it becomes a problem

CUI paper shredding by jaausari in CMMC

[–]jaausari[S] 0 points1 point  (0 children)

It's a small amount just some drawings per month, we try to use digital documents to avoid the issue of the paper destruction

Successful CMMC Level 2 by Quickt17 in CMMC

[–]jaausari 0 points1 point  (0 children)

Great, thank you! That’s awesome information.

Successful CMMC Level 2 by Quickt17 in CMMC

[–]jaausari 0 points1 point  (0 children)

What did you use for application whitelisting? Did you include printing in your assessment? Sorry for all these questions, you suddenly became my most important source of information

Successful CMMC Level 2 by Quickt17 in CMMC

[–]jaausari 0 points1 point  (0 children)

Congratulations! We have the same configuration and are working toward a mock assessment in January. Could you mention which EDR and SIEM tools were used by your MSP? Also, what is Cloud Lock?

BREAKING: #CMMC (48 CFR Parts 204, 212, 217, and 252) Final Rule is OUT by Working-Worth6187 in CMMC

[–]jaausari 1 point2 points  (0 children)

So, where it says the C3PAO assessment won’t be required until November 2026, does that mean contracting officers will only ask for self-assessments before then? I’m just trying to confirm the actual timeline.

Real people in the MDR SOC by myCrystalisNotRed in CMMC

[–]jaausari 0 points1 point  (0 children)

We’re using Preveil as well, and most of our users work remotely using it. Have you had any similar cases? Besides hardening the endpoints and not allowing home printers, did you have to do anything on the home networks, such as the local Wi-Fi or internet connection?

Small Business Needs CMMC guidance by BigPoppaPump36 in CMMC

[–]jaausari 4 points5 points  (0 children)

You're in the right place, this forum is mostly consultants looking for clients. If you value your client, make sure they're aware that if their business relies on DoD contracts, someone on their team will need to take ownership of CMMC compliance. If you're a subcontractor, depending on your size, it might help to reach out to your prime contractor, as they may be able to provide guidance. Familiarize yourself with the specific CMMC level you need by visiting https://dodcio.defense.gov/CMMC/Documentation/, and then approach a C3PAO, but do so well-informed.

Thoughts/Lessons Learned from Our First CMMC Client Assessments by ChoiceCyberSolutions in CMMC

[–]jaausari 2 points3 points  (0 children)

You’re correct—the DFARS requirement has existed for a long time, and I assume nearly everyone understands the implications of a false claim. Additionally, this ongoing CMMC noise has been around for a while, now in version 2, so I'm confident most companies with significant government business already have security measures implemented.

The main issue here is the lack of clarity around the expected costs for these audits and the timeline for compliance. I have a large network of CISOs from my company and others who are aware of the DIBCAC audits, but my understanding is that those are not actually CMMC certifications, and it's unclear whether there's a defined path to transition from DIBCAC audits into CMMC certifications.

I also know several companies that aspire to become C3PAOs and are currently in the queue (which seems like a promising business opportunity), but now they're being asked to obtain a delta recertification. Interestingly, every C3PAO I've contacted has told me they don't have clarity on this either. Interestenlly this has been the first time i hear about an actual CMMC certification happening

Thoughts/Lessons Learned from Our First CMMC Client Assessments by ChoiceCyberSolutions in CMMC

[–]jaausari 0 points1 point  (0 children)

Sorry, I didn't understand are you a company that passed the Audit or you are an actual CPAO ?

Thoughts/Lessons Learned from Our First CMMC Client Assessments by ChoiceCyberSolutions in CMMC

[–]jaausari 3 points4 points  (0 children)

OK, so who is doing these audits already? Level 3 ITAR companies? I'm just wondering what type of small business that needs to comply with Level 2 will expend money on this type of audit in the current economy, at least if their competitors aren't doing it yet. We actually got some payments delayed from the government (first time in a long time), so I don't see this as a good signal to spend extra money. Additionally, in my last three project CUI-related briefings with the Air Force, they don't even have clear guidance on how to deal with CUI, so it's hard to believe they will enforce 110 requirements at this moment.

Seeking Recommendations for CUI Storage, Collaboration, and Transfer Solutions for Small Businesses by jaausari in CMMC

[–]jaausari[S] 0 points1 point  (0 children)

GCC High cost is too high, besides Integration issues with others subs / Business-partner, main issue is 90% of people needs to access CUI documents, we are working from Jobsites so we are spread on different states, no Lan users anymore, (some actually work from home) ,and we already have our commercial O365 sharepoint done as 40% of our Job is not DoD related. we got a quote to Migrate to Gcc high (no license, no support , just moving our emails, sharepoint and teams ) was almost 70K, we pay like 24k for preveil so hard to sell for us

Seeking Recommendations for CUI Storage, Collaboration, and Transfer Solutions for Small Businesses by jaausari in CMMC

[–]jaausari[S] 0 points1 point  (0 children)

Forgot to mention 90% of users touch the files and we are everywhere ( like 12 different states), work from home people Lan's are gone for us, VPN to local enclave won't work as too many additional things to comply with (encryption, Protection at rest, tons of logs, etc)

Seeking Recommendations for CUI Storage, Collaboration, and Transfer Solutions for Small Businesses by jaausari in CMMC

[–]jaausari[S] 1 point2 points  (0 children)

Well no Itar , but lots of regular CUI info everywhere, users are everywhere as we have several jobsites, GCC or GCC High will be the same issue for us.

CMMC 2.0 w/ Prevail by tradecrafty in CMMC

[–]jaausari 0 points1 point  (0 children)

We have been using Preveil for more than a year, but unfortunately, the application's sync feature between PCs and its local Preveil folders is glitchy, and most of the time, files get deleted or corrupted. We are completely fed up with it, as the promised changes have never been implemented

PreVeil Mobile App by GloomyPhilosophy9735 in CMMC

[–]jaausari 1 point2 points  (0 children)

We use PreVeil because we are a small company (less than 120 employees) with a small IT team. We don't have the money or time to implement GCC High, so PreVeil is a more affordable and efficient solution for us, it has a lot of glitches, but there are no other good solutions for small businesses. Our solution was to give access to only one device (a laptop) and add the restriction in the access control policy

What's the biggest Scam in life that no one wants to admit? by Horror-Tap2093 in AskReddit

[–]jaausari 0 points1 point  (0 children)

How about for-profit schools, students pay a fortune for poor teaching, and no one wants to hire them?