Alignment of MITRE’s Cyber Resiliency Engineering Framework with DoD Cyber Maturity Model Certification

Published:

spot_img

MITRE Introduces Cyber Resiliency Engineering Framework Navigator with CMMC Integration for Defense Industrial Base

MITRE, a trusted organization known for its cybersecurity expertise, has announced a significant update to its Cyber Resiliency Engineering Framework (CREF) NavigatorTM. This latest version now incorporates the US Department of Defense’s Cybersecurity Maturity Model Certification (CMMC), allowing cybersecurity engineers for the Defense Industrial Base (DIB) to enhance supply chain resilience against advanced cyber threats.

The CREF Navigator, which aligns with NIST SP 800-171 and the subset of NIST SP 800-172 corresponding to the proposed CMMC Level 3 model, features 24 out of the 34 security requirements aimed at addressing sophisticated cybersecurity attacks. This integration ensures that defense systems and supply chains are equipped with the necessary cybersecurity measures to withstand potential threats.

Wen Masters, Vice President of Cyber Technologies at MITRE, emphasized the importance of building resilience within the supply chain to safeguard national security. She highlighted the need for accountability in adhering to security requirements throughout the entire supply chain, emphasizing that resilience must be engineered proactively rather than reactively.

The CREF Navigator, originally developed in collaboration with NIST through the NIST SP 800-160 framework, provides engineers with a searchable and visualized tool to make informed decisions when designing cyber solutions. In addition to its alignment with CMMC, the CREF Navigator connects with the MITRE ATT&CK® knowledge base and Cyber Model-Based Systems Engineering (MBSE) for cyber threat modeling.

MITRE continues to offer its resources, including the CREF Navigator, to the public cybersecurity community for free. To learn more about this powerful tool, visit https://CREFNavigator.mitre.org and explore its capabilities in strengthening cybersecurity defenses.

spot_img

Related articles

Recent articles

NCSC Alerts: Prompt Injection Poised to Be Major AI Security Threat

Understanding Prompt Injection: A Growing Concern in AI Security As artificial intelligence continues to integrate into various sectors, the threats associated with its misuse are...

Gartner Warns: AI Browsers Too Risky for Widespread Use

The Risks of AI Browsers: A Cautionary Insight Understanding the Caution from Gartner In a recent advisory, Gartner, a leading research and advisory company, raised significant...

Ransomware Payments Decline Post-Law Enforcement, Yet Remain Elevated: FinCEN Report

According to a recent report from the U.S. Treasury's Financial Crimes Enforcement Network (FinCEN), U.S. companies made ransomware payments totaling...

Parliament Report: Crypto Becomes Essential Tool for Tax Evasion and Money Laundering

India's Stance on Cryptocurrency Regulation: An Overview In a recent written response to the Lok Sabha, the Ministry of Finance of India confirmed that the...