Skip to content

    01 / Compliance Digest

    Compliance News Digest

    Automatisch generierte monatliche Zusammenfassungen regulatorischer Änderungen, Framework-Aktualisierungen, Durchsetzungsmaßnahmen und Compliance-Fristen, nach Schweregrad gruppiert.

    2
    Ereignisse diesen Monat
    1
    Kritisch
    1
    Wichtig
    4
    Frameworks
    June 2026

    Top Floor

    Compliance Digest: June 2026

    2 regulatory events this month1 critical, 1 important, 0 informational

    Critical (1)

    (Projected) CMMC Phase 2: All DoD Contracts Require Certification

    Jun 1, 2026Critical

    CMMC Phase 2 is projected to expand certification requirements to all DoD contracts involving CUI, requiring third-party C3PAO assessments for Level 2 certification. This phase represents the full operationalization of CMMC, where every defense contractor handling CUI must hold a valid certification from an accredited C3PAO, not merely a self-assessment.

    CMMC

    Important (1)

    (Projected) CISA Secure by Design Principles Expected in Federal Acquisition Requirements

    Jun 1, 2026Important

    CISA is expected to formalize Secure by Design principles as requirements in federal acquisition regulations by mid-2026. Building on the voluntary pledge program that enrolled over 250 software manufacturers, the projected rule would require software vendors selling to federal agencies to attest compliance with Secure by Design principles, including elimination of default passwords, MFA by default, evidence of vulnerability management maturity, and published vulnerability disclosure policies.

    NIST CSFSOC 2HITRUST

    Generated by Top Floor Regulatory Radar. View full event details

    Diesen Digest per E-Mail erhalten

    Abonnieren Sie den Compliance News Digest und erhalten Sie ihn monatlich an Ihre geschäftliche E-Mail-Adresse. Bleiben Sie über regulatorische Änderungen informiert, ohne den Lärm.