@HouseSmallBiz Think not about just the manufacturer but the Managed service providers who will all be in scope. This is not new. 32 CFR 2002 incorporates FIPS 199, FIPS 200, NIST-SP-800-53, NIST-SP-800-171, NIST SP-800-88
@HouseSmallBiz You can utilize NSF and other SBIR resources to apply for cybersecurity growth programs. A lot of companies told the gov we are 171 compliant. As a taxpayer do I underwrite this fraud?
@HouseSmallBiz Serve on NSBA Leadership Council, Technology Council, and cybersecurity task force. Served as a Volunteer Working Group for the CMMCAB, it is a really long book. I learned this stuff Don't complain. Read