Download the Department of Defense Cybersecurity Requirements Whitepaper

Beginning in January 2022, the Department of Defense will start phasing in CMMC compliance requirements on a percentage of contracts with all contracts requiring CMMC contractor certification by 2026.

This new requirement expands on the original DFARS, adds an additional 20 controls on top of the 100 from NIST 800-171 PLUS, and requires a third-party certification to demonstrate you are meeting the CUI security requirements.

For additional information on how to prepare your organization by 2022, download our Department of Defense Cybersecurity Requirements whitepaper.

Department of Defense Cybersecurity Requirements | Blue & Co | Blue & Co Cybersecurity and Data Management Practice
Hospital financial outlook 2026: medical supplies and diagnostic equipment illustrating rising healthcare expenses and pressure on hospital margins

Hospital Financial Outlook 2026: Revenue Growth, Margin Pressure, and Shifting Payer Mix

The headline number from mid-2026 is technically encouraging: hospital revenue is growing. But revenue figures have a way of obscuring what’s actually happening on the margin line and right now […]

Learn More

Unrelated Business Income and Alternative Investment Risks for Healthcare Organizations

Unrelated business income (UBI) remains one of the most fact-intensive areas of federal tax compliance for all exempt-organizations, particularly healthcare organizations. As health systems diversify revenue, expand ancillary services, and […]

Learn More

Public Dealership Group Performance: Mid-Year 2026 PVR Trends and Outlook

By Jonah Gjertson, Senior Consultant at Blue & Co. Starting Point The first half of 2026 has remained relatively stable among the public dealership groups, with new profit per vehicle […]

Learn More