CMMC Needs to Adapt to Evolving Cyber Threats

Katie Arrington, Performing the Duties of the DOD CIO
According to officials, the Defense Department’s Cybersecurity Maturity Model Certification (CMMC) program is a national security imperative to protect intellectual property and maintain an American competitive advantage in defense technology.
At AFCEA TechNet 2025 in Baltimore, Katie Arrington, performing the duties of the DOD CIO, says CMMC needs to adapt dynamically to evolving cyber threats. With evolving tech like AI and quantum, acquisition rules need to adjust to evolving technologies while maintaining security standards. Arrington says that the Defense Department needs to continue to streamline cyber requirements through required standards, guidance and executive orders.
She also discusses the need for a cultural shift towards continuous cybersecurity, the new Software Fast Track Initiative and baking cybersecurity into all DOD functions.
-
Katie Arrington Performing the Duties of the DOD CIO
-
NIST to Release New AI Cybersecurity Guidance as Federal Use Expands
NIST plans to release AI cybersecurity guidance within the year to support safe adoption as federal agencies expand use cases.
4m read -
CIA Adds Fourth Pillar to AI Strategy, CAIO Says
Lakshmi Raman says the new pillar marks a strategic shift toward embedding AI more deeply into the CIA’s day-to-day mission execution.
3m read -
FEHRM CTO Targets Two-Year Cloud Migration for Federal EHR
Lance Scott touts new EHR tech advancements, including cloud migration, expanded data exchange and AI integration to improve care delivery.
4m read -
AI Enables Coast Guard’s Workforce to Transform Operations
The Coast Guard’s Deputy CIO Brian Campo delves into the ways AI is pushing the service to rethink its core services, workforce and operations.
14m watch