Sara Friedman

Sara Friedman joined Inside Cybersecurity in February 2020. Previously, she covered government IT for GCN and education technology for THE Journal and Campus Technology. She graduated from Ithaca College with bachelor’s degrees in journalism and politics.

Connections
Archived Articles
Daily News | July 21, 2025

The Pentagon is setting up a formal structure to guide the next stage of implementing zero trust across the Defense Department, including the creation of a Chief Zero Trust Officer and a DOD ZT Executive Committee.

Daily News | July 18, 2025

The Senate Armed Services Committee has released the full text of its version of the fiscal year 2026 defense authorization bill, including provisions to require the Pentagon to produce a strategy on protecting defense critical infrastructure and the creation of a public-private partnership to address cyber threats from artificial intelligence.

Daily News | July 16, 2025

The House Armed Services Committee has approved in a 55-2 vote its version of the fiscal year 2026 defense authorization bill, with an amendment to attach vulnerability disclosure legislation from House Oversight cyber subcommittee Chair Nancy Mace (R-SC) to the major defense policy bill.

Daily News | July 15, 2025

The House Armed Services Committee has added amendments to its version of the fiscal year 2026 defense authorization bill that would require briefings on using "cyber deception technologies" in the context of zero trust and steps to integrate artificial intelligence across the Defense Department.

Daily News | July 15, 2025

The Pentagon is asking for stakeholder feedback on plans to modernize the Defense Department's acquisition processes under President Trump's mandate to expedite the adoption of commercial solutions and support small businesses, as work continues to finalize a major cyber certification initiative.

Daily News | July 14, 2025

The House version of the fiscal year 2026 defense authorization bill will come under the microscope at a July 15 mark-up session, where lawmakers will consider cyber provisions including a requirement for a Software Bill of Materials for artificial intelligence and an assessment of operational support provided by U.S. Cyber Command.

Daily News | July 14, 2025

The Senate Armed Services Committee has approved its version of the fiscal year 2026 defense authorization bill, with provisions to create a cyber framework for procuring artificial intelligence tech at the Defense Department and a new report on small business compliance with the Pentagon's cyber certification program.

Daily News | July 3, 2025

In a recent report, the Atlantic Council reviews the current state of the U.S. supply chain compared to China and provides recommendations on shoring up capabilities to participate in effective cyber offensive operations.

Daily News | June 27, 2025

The Defense Department has released a request for information to get feedback on making reforms to the Risk Management Framework, the Pentagon's approach to address cyber risk management across its systems.

Daily News | April 24, 2025

The Trump administration’s actions to reshape government acquisition efforts in the spirit of creating efficiencies have received positive reviews from industry groups who see an opportunity to improve security through buying commercial solutions.

Daily News | April 24, 2025

The Pentagon is providing instructions to contracting officials on tailoring the latest version of the National Institute of Standards and Technology's foundational publication on controlled unclassified information, in a recent memorandum on organization-defined parameters critical to the next iteration of the Cybersecurity Maturity Model Certification program.

Daily News | March 31, 2025

Michael Duffey, nominee for under secretary of defense for acquisition and sustainment, weighed in on the future of the Pentagon's Cybersecurity Maturity Model Certification program ahead of his recent Senate Armed Services Committee confirmation hearing.

Daily News | March 26, 2025

The Defense Department's plan to finalize the second rulemaking for the Cybersecurity Maturity Model Certification program by mid-2025 is starting to slip as the Pentagon works to meet requirements from President Trump’s Jan. 31 executive order on deregulation.

Daily News | March 20, 2025

The Defense Department is providing new details on elements of its Cybersecurity Maturity Model Certification program through presentation slides on alignment with National Institute of Standards and Technology standards and a 2023 memo on equivalency with the General Services Administration’s FedRAMP program.

The Insider | March 4, 2025

The Defense Department has announced Katie Arrington will serve as the Pentagon's chief information officer in an acting capacity, elevating a key voice in the Defense Department's Cybersecurity Maturity Model Certification program who joined the Office of the DOD CIO in February.

Daily News | February 27, 2025

The National Defense Industrial Association argues implementing the Pentagon’s Cybersecurity Maturity Model Certification program will put a significant cost on companies that could be a barrier to entry for industry partners, as part of an annual report taking the pulse of defense firms.

Daily News | February 25, 2025

Katie Arrington's return to the Pentagon shows a renewed interest in getting the Cybersecurity Maturity Model Certification program off the ground, according to contracting attorneys who highlighted the pressure companies are facing with official assessments now underway while a final rule to start the clock for requirements is still pending.

Daily News | February 20, 2025

The hiring of Katie Arrington as the new DOD chief information security officer will bring a renewed focus on getting the Pentagon’s Cybersecurity Maturity Model Certification program fully realized, according to stakeholders who highlighted rulemaking efforts in the final stages and the official launch of the initiative.

The Insider | February 19, 2025

Katie Arrington is returning to the Pentagon in a new role as chief information security officer at the Defense Department Office of the Chief Information Officer, marking a full-circle moment for the former acquisition official who served as the public face of the Cybersecurity Maturity Model Certification program during President Trump's first term.

Daily News | February 18, 2025

A recent memorandum from senior Pentagon officials provides guidance on determining assessment levels and the waivers process under the Defense Department's Cybersecurity Maturity Model Certification program.

Not a subscriber? Request 30 days free access to exclusive, behind-the-scenes reporting on defense policy and procurement.