logo
logo
Sign in

How DFARS 252.204-7012 is used for procurement planning & contract formation

avatar
Ariento Com
How DFARS 252.204-7012 is used for procurement planning & contract formation

Due to the increasingly sophisticated data breaches and aggressive cybersecurity threats our nation facing, it has become very important recently on reinforcing the nation’s cybersecurity. These efforts have revolved around strengthening the Department of Defense (DoD) supply chain. The Defense Federal Acquisition Regulation Supplement also is known as DFARS has been working to encourage DoD contractors to proactively comply with pattern frameworks and to achieve this goal successfully. 252.204-7012 clause safeguarding cyber incident reporting and covered defense information is the new mandatory addition. Under the DFARS clause 252.204-7012, all the DoD contractors must comply with the National Institute of Standards and Technology's Special Publication 800-171 or (NIST 800-171), a framework that layout and make sure that DoD contractors must protect sensitive defense information and also report cybersecurity incidents.

As a defense contractor, NIST Framework requires you to document how you have met the following particular requirements which include,

Security requirements 3.12.4 requires the defense contractor to develop, document and update system security plans (SSPs) that describe system environments of operation, and system boundaries and also how security requirements are implemented or connected to other systems.

Security requirements 3.12.2 requires the defense contractor to develop and implement security plans of action designed to reduce or eliminate vulnerabilities and correct deficiencies in their systems.

The main aim of DFARS clause 252.204-7012 is to encourage you as a contractor and to take the necessary proactive role in the protection of CDI. If you want to strengthen the entire supply chain then as a contractor you need to take necessary steps to demonstrate compliance within your own business and ensure that your subcontractors comply too. It is your subcontractor’s responsibility to inform you if their practices deviate in any way from the guidelines of DFARS and it is your responsibility to demonstrate equally secure and alternative practice before you share CDI with the subcontractor.

With all the above mentioned extensive regulations, it is truly a daunting task to bring your business into lines especially when the stakes are so high. That’s where a managed services professional like ARIENTO comes in. ARIENTO is the most reputable company that have more than 30 plus years of National Security Cyber & IT experience and expertise that is applied to your technology needs. Our team of highly trained professional experts has done it at the highest levels of the Federal Government and US military. No matter whether you are a small or large defense contractor, we have helped everyone to achieve comprehensive DFARS compliance.

AREINTO's main aim and passion are to relieve and rid you of the burdens that come with technology so that you can focus on what's truly important. To know more information and other details about DFARS 252.204-7012, please visit our website here: https://www.ariento.com/

collect
0
avatar
Ariento Com
guide
Zupyak is the world’s largest content marketing community, with over 400 000 members and 3 million articles. Explore and get your content discovered.
Read more