An official website of the United States government
Here's how you know
Official websites use .mil
A
.mil
website belongs to an official U.S. Department of Defense organization in the United States.
Secure .mil websites use HTTPS
A
lock (
lock
)
or
https://
means you’ve safely connected to the .mil website. Share sensitive information only on official, secure websites.
Skip to main content (Press Enter).
Defense Contract Management Agency
DCMA
Toggle navigation
Home
About
About the Agency
Strategic Plan (PDF)
Agency Mission Video
DCMA as a Mission Partner
Policies
Contact Us
News
All Agency News
East News
Central News
West News
International News
Video Archive
Photos
Media Information
INSIGHT Magazine
Customers
Customer Liaisons
Early Acquisition Engagement
Pricing and Technical Pricing Support
Aircraft Operations Resource Page
Contract Lifecycle Management Center (CLMC)
eTools
Small Business
Equal Employment Opportunity
Industry Concerns
Customer Satisfaction Survey
Request Customer Site Access
Restricted Sites (CAC Required)
Reports: NSN Look-up | Part Number
Employees
DCMA 365 Homepage (Intranet)
Get Help (Employee Resources)
Agency Senior Rater Potential Evaluation (SRPE) Application
Agency Situation Report (SITREP)
Correspondence Control
Internal Customer Satisfaction Survey
DAI
DCMA Information Dictionary
DCMA OIG Hotline
e-BUSINESS
PIEE
EEO
Emergency Management
eTools Login
MyPay
Onboarding/Inprocessing
Out Processing and Transfers
Permanent Duty Travel
Safety & Occupational Health
SAPR
Security
Telework Information
Remote Work
Total Force
Training
Travel
Whistleblower Protection
Careers
Careers-Acquisition
Military-Veterans
Life-DCMA
Internships
Persons-with-Disabilities
Deployment Opportunities
US Office Locations
USA Jobs
Search
Search DCMA:
Search
Home
News
Video Archive
DCMA Video Archive
Playlist:
Latest Videos
News
Video by Michael Dunbar, Chad Hilton, Douglas Key
Player Embed Code:
Download
Embed
Share
Cybersecurity Compliance: An Introduction to DFARS 252.204-7012 and NIST SP 800-171 Requirements
Defense Contract Management Agency
July 20, 2021 | 6:29
A presentation of the concepts related to the regulatory requirements governing contractor cybersecurity and the handling of Controlled Unclassified Information, as well as the process of attaining and demonstrating compliance through assessment.
Glossary of Terms:
DCMA
Defense Contract Management Agency; administrating agency of the Defense Industrial Base Cybersecurity Assessment Center
Prime
Prime contractor; works directly with the government, manages any subcontractors, and are responsible for ensuring that the work is completed as defined in the contract
Sub
Subcontractor; supplier, distributor, vendor, or firm that furnishes supplies or services to or for a prime contractor or another subcontractor
Enclave
Section of an internal network that is subdivided from the rest of the network which operates in the same security domain and shares the protection of a single, common, continuous security perimeter
Basic (Contractor Self-Assessment) NIST SP 800-171 DoD Assessment (also referred to as ‘Basic’ or ‘Basic Assessment’)
The Basic Assessment is the Contractor’s self-assessment of NIST SP 800-171 implementation status, based on a review of the system security plan(s) associated with covered contractor information system(s), and conducted in accordance with NIST SP 800-171A….and Section 5 and Annex A of [the NIST SP 800-171 DoD Assessment Methodology].
Medium NIST SP 800-171 Assessment (also referred to as ‘Medium’ or ‘Medium Assessment’)
The Medium Assessment is conducted by DoD personnel who have been trained in accordance with DoD policy and procedures to conduct the assessment...will consist of a review of the system security plan description of how each requirement is met to identify any descriptions which may not properly address the security requirement. (see NIST SP 800-171 DoD Assessment Methodology)
High (On-Site or Virtual) NIST SP 800-171 DoD Assessment (also referred to as ‘High’ or ‘High Assessment’)
The High Assessment, conducted by DoD personnel who have been trained in accordance with DoD policy and procedures to conduct the assessment, requires a thorough on-site or virtual verification/examination/demonstration of the Contractor’s system security plan and implementation of the NIST SP 800-171 security requirements. (see NIST SP 800-171 DoD Assessment Methodology)
Resources:
Supplier Performance Risk System (SPRS)
https://www.sprs.csd.disa.mil/
OUSD(A&S) Strategically Assessing Contractor Implementation of NIST SP 800-171 site
https://www.acq.osd.mil/dpap/pdi/cyber/strategically_assessing_contractor_implementation_of_NIST_SP_800-171.html
NIST SP 800-171 Rev. 2
https://csrc.nist.gov/publications/detail/sp/800-171/rev-2/final
NIST SP 800-171A
https://csrc.nist.gov/publications/detail/sp/800-171a/final
DoD Procurement Toolbox – Cybersecurity in DoD Acquisition Regulations
https://dodprocurementtoolbox.com/site-pages/cybersecurity-dod-acquisition-regulations
**LATEST VERSIONS AS OF THE TIME OF VIDEO PUBLICATION.**
More
Tags
Defense Contract Management Agency
dcma
DIBCAC
Defense Industrial Base Cybersecurity Assessment Center
NIST SP 800-171
More
Up Next
1:14
DCMA 25th Anniversary Video
8:46
2024 DCMA Leadership Team Holiday Message Descriptive Audio
8:45
2024 DCMA Leadership Team Holiday Message
1:26
Q&A: Senior enlisted advisor reflects on first year with agency
1:46
OI Board Forum seeks team member insight, solutions
1:00
Naval aviator leads with servant leadership principles
1:38
DCMA Audit Tracker and Action Tool Announcement
01:16:36
DCMA Change of Leadership
2:44
DCMA Director's Holiday Message (2023)
3:35
NSPW 2023: DCMA Leadership Message
8:16
NSPW 2023: Navy Capt. Gabriel Hohner Testimonial (DCMA)
0:14
New Central Region commander excited to lead, embrace change
5:44
NSPW 2023: Melissa Burgess Testimonial (DCMA)
5:03
NSPW 2023: Brett Merkley Testimonial (DCMA)
5:38
NSPW 2023: John Ellis Testimonial (DCMA)
0:31
AIMO soars into 20 years of successful flight operations
01:12:22
DCMA Eastern Region Change of Command
1:33
DCMA Memorial Day Message
28:58
Schultheis SES Ceremony
1:22
Sexual Assault Awareness and Prevention Month
1:39
DCMA celebrates 23rd birthday
2:35
DCMA promotes employment possibilities to military spouses
1:21
Happy holidays from the DCMA Command Team
1:18
DCMA citizen soldier receives Purple Heart
Now Playing
Cybersecurity Compliance: An Introduction to DFARS 252.204-7012 and NIST SP 800-171 Requirements
0:20
DCMA Leadership Get Vaccinated
01:08:22
DCMA Commercial Item Group - Virtual Office Hours (Dec. 10, 2020)
4:17
DCMA Integrating Capability
4:10
DCMA Enabling Capability
3:55
DCMA Primary Capability
More Videos