CMMC May Be on Pause, but Cybersecurity Requirements Are Not

News

CMMC May Be on Pause, but Cybersecurity Requirements Are Not
Added on September 1, 2026 by Charles IT to Member News

CMMC May Be on Pause, but Cybersecurity Requirements Are Not

What shipbuilders, defense manufacturers, and their supply chain partners should be doing now to strengthen cybersecurity, protect CUI, and prepare for what comes next.

CMMC Is on Pause. Your Cybersecurity Requirements Aren’t.

For organizations across the defense and maritime supply chain, CMMC may be on pause, but cybersecurity responsibilities haven’t gone anywhere.

Shipbuilders, shipyards, defense manufacturers, subcontractors, suppliers, engineering firms, and other organizations supporting the Department of Defense continue to face the responsibility of protecting sensitive information and maintaining strong cybersecurity practices. A changing CMMC timeline doesn’t change the importance of securing Controlled Unclassified Information (CUI) or addressing cybersecurity gaps.

To help organizations understand what the current CMMC landscape means for their business, Charles IT is hosting a Lunch & Learn on Thursday, September 23, from 11:30 AM–1:30 PM at Greenbrier Country Club in Chesapeake, VA.

Jessica Golle, Chief Revenue Officer at Charles IT, and Larry Robertson, General Manager at Charles IT, will lead a practical discussion on where CMMC stands today, what the current pause means, and what defense supply chain organizations should be doing now.

The session will focus on the difference between what has changed and what hasn’t, including:

  • The current state of CMMC and what organizations should be watching
  • Cybersecurity and contract requirements that remain important
  • The continued importance of protecting CUI
  • Common cybersecurity and compliance gaps across the defense supply chain
  • Practical steps organizations can take to strengthen their security posture
  • How to continue preparing for CMMC without waiting for another deadline

The goal is not to create more uncertainty or add unnecessary complexity. It’s to give organizations a clearer understanding of where they stand, where they may have gaps, and what they can do today to build a stronger cybersecurity foundation.

CMMC timelines may continue to evolve, but organizations that handle CUI or support the DoD supply chain can’t afford to put cybersecurity on hold.

Join Charles IT for lunch and an informative conversation about what’s happening with CMMC—and what your organization can do now to stay prepared.

Lunch & Learn
Thursday, September 23 | 11:30 AM–1:30 PM
Greenbrier Country Club | Chesapeake, VA

Registration: CMMC Lunch & Learn for Defense Manufacturers | Charles IT