Webinar: What the Satellite Industry Needs to Know About CMMC: Preparing for a Successful CMMC Assessment, Defining Terms and What to Expect

The Satellite Industry Association (SIA) will hold a webinar on Thursday, July 14 at 11:00 am (Eastern time) on “What the Satellite Industry Needs to Know About CMMC: Preparing for a Successful CMMC Assessment, Defining Terms and What to Expect.”

Satellite companies, along with the entire Defense Information Base, will soon need to be Cybersecurity Maturity Model Certification (CMMC 2.0) accredited to be eligible for U. S. Department of Defense (DoD) awards.

Is your company prepared?  This webinar will identify the key considerations a company should be mindful of prior to beginning the CMMC process.  

For more information, see www.sia.org

Podcast: Untangling the Supply Chain, Episode 3: Satellite Solutions for Supply Chain Woes

Communication and earth observation satellites play an essential but too-little-known role in managing the world’s supply chains. The solutions call on spacecraft in every orbit, carrying every payload and operating in every commercial frequency band. They also call on the ingenuity and determination of experts in engineering, manufacturing, operations and analytics to provide the crucial data and communications that help their customers keep the world supplied.

In this podcast, based on the May 12 Webinar: Satellite Solutions for Supply Chain Woes, Space & Satellite Professionals International (SSPI) Robert Bell is joined by Matt Desch, CEO, Iridium Communications, Inc.; Nicole Robinson, President, Ursa Space Systems; and Jean-Michel Rouylou, Head of Enterprise and Broadband, ST Engineering iDirect to discuss satellite’s vital role in world trade and the global opportunities the industry’s unique technologies are able to tap.

Listen to the Podcast: Space & Satellite Professionals International | Making Leaders Podcast: Untangling the Supply Chain, Episode 3 – Satellite Solutions for Supply Chain Woes (sspi.org)

Webinar: One Year In: The Executive Order and Securing Software Supply Chains Webinar

One Year In: The Executive Order and Securing Software Supply Chains Webinar held on May 12, 2022 is now available for viewing. During the event, experts discussed the role of the software bill of materials (SBOM) in securing software supply chains as well as key insights from the latest Executive Order on Cybersecurity.

The entire event is available to view here: https://learn.atarc.org/e/315131/X0MyS0qfGBY/jq1p2/1760163334?h=6zjEdpU6R9W6cJWI_SSm4iNfw2nY26D7ngmVTkAIuLk

NASA Hosts April Supply Chain Integrity Month Conference

April 26, 2022
NASA Headquarters

On 26 April, NASA hosted the annual Supply Chain Integrity Month Conference at NASA Headquarters, bringing government and industry together on challenges and opportunities in the changing supply chain environment. NASA’s CIO presented welcoming remarks, and experts across the interagency discussed topics including public private partnerships, EO 14028 and EO 14017 requirements, securing the software supply chain, software bill of materials, the identification of forthcoming recommendations and requirements resulting from the work performed under the EOs, a Proactive Supplier Engagement Process (PSEP), and global impacts of the disruption in Ukraine.

Podcast: Untangling the Supply Chain, Episode 1: How to Create a Global Supply Chain – and Keep it From Falling Apart

Source: Space and Satellite Professionals International (SSPI)
Listen to the Podcast here

When Airbus OneWeb Satellites began mass production of the OneWeb satellite constellation, it had to develop and manage a global supply chain that could operate at unprecedented speed to make possible the manufacturing of two satellites per day. In this first episode of the Untangling the Supply Chain podcast series, Airbus OneWeb Satellites Chief Supply Chain Officer John Meikle joins SSPI’s Robert Bell to explore how that chain was linked together and kept running – and how it copes with the major disruptions of 2020.

April is Supply Chain Integrity Month – NASA is Engaging the Interagency on the Theme ‘Identifying and Protecting NASAs Crown Jewels through Resilient Partnerships’


Supply Chain Integrity Month will engage live sessions taking place at NASA HQ in Washington, DC in the James E. Webb Auditorium and virtually. The event is open to all Government and Industry personnel with an interest in Supply Chain Integrity. The audience will be a mix of NASA civil servants and contractors as well as some participants from NASA partner organizations (e.g. NOAA).  In attendance will be those involved with supply chain, as well as Information System Owners (ISOs), Information System Security Officials (ISSOs), Chief Information Security Officers (CISOs) and acquisition professionals. 

Topics that will be covered:

  • ICT SCRM Task Force (Public/Private Partnerships) 
  • EO 14028 – Requirements Panel 
  • EO 14028 – NASA Implementation Panel 
  • EO 14017 Panel – DoC, DoE, DoD, HHS
  • Securing the Software Supply Chain / SBOMs 
  • Partner Panel 
  • Supply Chain Security Working Group 
  • Responding to Supply Chain Compromises Panel

Source: Federal Business Council, Inc. (fbcinc.com)

One Year In: The Executive Order and Securing Software Supply Chains

One Year In: The Executive Order and Securing Software Supply Chains

In response to the Executive Order on Improving the Nation’s Cybersecurity published in May 2021, new mandates call for accelerating the adoption of secure open source software (OSS) and commercial off-the-shelf solutions to speed software delivery from years to minutes. Additionally, the National Institute of Standards and Technology (NIST) has provided updated guidance for strengthening the security of critical software purchased by U.S. federal government programs from industry software suppliers and partners. 

Join ATARC and government and private sector experts working across Federal defense agencies as they cover:

  • Key insights from the Executive Order on Cybersecurity
  • Latest directives from the DoD, NIST, and other Federal agencies on using and securing OSS
  • Role of the software bill of materials (SBOM) in securing your software supply chain

Register here: One Year In: the Executive Order and Securing Software Supply Chains – ATARC

National Supply Chain Integrity Month

Supply Chain Integrity Month | CISA

April is National Supply Chain Integrity Month. In partnership with the Office of the Director of National Intelligence (ODNI) and other government and industry partners, CISA is promoting a call to action to “Fortify The Chain” for a unified effort by organizations across the country to strengthen the global ICT supply chain.

Information and communications technology (ICT) products and services ensure the continued operation and functionality of U.S. critical infrastructure. However, recent software compromises and other events have shown the far-reaching consequences of these threats. When a supply chain incident occurs, everyone suffers: buyers, suppliers, and users.

As the nation’s risk reducer, CISA’s top priorities include securing the global ICT supply chain from the evolving risks of tomorrow. Every week, CISA is promoting resources, tools, and information, including those developed by the public-private ICT Supply Chain Risk Management (SCRM) Task Force. CISA themes for each week include:

  • Week 1: Power in Partnership – Fortify The Chain!
  • Week 2: No Shortages of Threats – Educate to Mitigate
  • Week 3: Question, Confirm, and Trust – Be Supplier Smart
  • Week 4: Plan for the Future – Anticipate Change

Use the hashtag #FortifyTheChain#SupplyChainIntegrityMonth, or #SCRMTaskForce in your social media posts to raise supply chain awareness.

Managing Trustworthiness & Dependability of Systems Acquired Via Supply Chain

Presented by

Dr. Bill Curtis, Executive Director, CISQ | Robert Martin, Sr. Software and Supply Chain Assurance Principal Eng., MITRE

Register: Managing Trustworthiness & Dependability of Systems Acquired Via Supply Chain (brighttalk.com)

About this talk

Join the Consortium of Information and Software Quality (CISQ) on April 6th, 2022, 3:00pm CST – 4:00pm CST to learn how to manage the trustworthiness and dependability of systems acquired through your supply chain. Learning Objectives: – Learn how to leverage CISQ measures to reduce risk in your contacts & SLAs – How to certify software and its level of risk – How to manage the quality of the software you are receiving from a supply chain – Learn about the use of Software Bill of Materials (SBOM) in a software supply chain

RSA Conference (RSAC) 2022

San Francisco, CA
June 6-9, 2022

The theme for RSAC 2022 is “Transform.” This conference offers a dialogue on the rapidly evolving information security industry by providing insight into trends and breaking news in information security. It is intended for military, government, academia, and industry information security experts.

Protecting Data & the Supply Chain
This track explores the cascading security requirements of the extended enterprise and the classification, tracking, and protection of data. It covers data protection regulations, DLP and threats to sensitive data, and emerging trends in software supply chain security as well as vendor and partner SLAs, supply chain mapping, continuous enforcement, and how to future-proof vendor contracts and risk assessments for evolving requirements.

For more information, follow these links:

2022 USA | RSA Conference
Trust, but Verify: Protecting Your Business from Supply Chain Attacks | RSA Conference