If your business has a presence in the US, it’s likely that you were affected by the announcement of CMMC 2.0 in late 2021 by the US Department of Defense (DoD). This total restructuring of the CMMC framework, based almost entirely around NIST SP 800-171 and SP 800-172, stands to affect around 300,000 businesses and dramatically changes the cyber security requirements you have to meet
At Wizard Cyber, our cyber security experts have dissected the new requirements and built a comprehensive set of services to help you become CMMC 2.0 compliant. Whether you are required to attain level 1, 2, or 3 of the framework, Wizard Cyber can ensure your compliance by implementing, managing, and maintaining a complete suite of cyber security services

CMMC 2.0 is a complete overhaul of how the framework has worked in the past. With this update has come an array of new requirements as the US DoD seeks to improve and strengthen the defense industrial complex’s ability to defend itself from cyber-attacks
Due to this, even if your business complied fully with CMMC before 2.0 was announced, you will likely now be required to implement new systems or update your existing ones. These systems and updates will often be very complex and require considerable amounts of time and resources to implement to a sufficient level to achieve certification
The differences between the original iteration of CMMC and CMMC 2.0 are numerous. Many businesses will be required to implement 24x7x365 monitoring, endpoint protection, incident detection and response capabilities and much more. You should be prepared to increase your cyber security budget, review your policies, and seek guidance from industry experts
CMMC 2.0 is a complete overhaul of how the framework has worked in the past. With this update has come an array of new requirements as the US DoD seeks to improve and strengthen the defense industrial complex’s ability to defend itself from cyber-attacks
Due to this, even if your business complied fully with CMMC before 2.0 was announced, you will likely now be required to implement new systems or update your existing ones. These systems and updates will often be very complex and require considerable amounts of time and resources to implement to a sufficient level to achieve certification
The differences between the original iteration of CMMC and CMMC 2.0 are numerous. Many businesses will be required to implement 24x7x365 monitoring, endpoint protection, incident detection and response capabilities and much more. You should be prepared to increase your cyber security budget, review your policies, and seek guidance from industry experts
Below, you can see a detailed breakdown of how each service corresponds to the relative NIST SP 800-171 controls
Our CMMC 2.0 services have been designed to be flexible and can be tailored to your organisation’s specific needs. If you only need to meet one control to achieve compliance, we can ensure that our service achieves that goal and that you only pay for what you need. Likewise, if you require our entire suite of services, we can provide implementation, management, and maintenance in a cost-effective way that guarantees compliance now and in the future with as little business disruption as possible. We can also provide guidance and support in working with auditors to ensure compliance, increasing your chances of gaining and maintaining certification



