|
Cybersecurity final rule at VA
The Veterans Affairs Dept. published a final rule requiring that contractors handling sensitive VA data comply with new cybersecurity procedures and processes.
The final rule, which amends the VA’s Acquisition Regulation (VAAR), became effective on Feb. 24.
Contractor representatives are calling attention to the rule’s brief window for reporting of breaches--which must be reported within as little as one hour in some cases. The VAAR additions “impose unreasonably short reporting requirements for breaches,” PilieroMazza PLLC attorneys wrote in a recent blog. There also are strong penalties for non-compliance.
More information:
Client alert: https://bit.ly/3Y6fweH
VA rule: https://bit.ly/3mcHckJ
|
Inside this edition:
OMB announces four strategies to attract & keep new vendors
$2.7B VETS 2 extended 5 yrs
DOD upcoming rules on CMMC, access, foreign-owned & more
Dashboard shows vendor numbers
Cybersecurity final rule at VA
FAPIIS in SAM now R/Qs
Column: Understanding the Value of Your Small Business
-
SEWP served up $9.2B in 2022: rpt
-
Size standards rule
-
OHA needs leader
-
CIO-SP4 protests
-
Vet commute dropped
-
A chance for Syed?
|