June 18th, 2026 @5:30 PM – Brian Schultz – CMMC – F-35s & $320B Annual DoW Contracts – O-My

Register:
This is a Hybrid meeting. A dinner meal will be served (Meal menu TBD). REGISTER HERE for IN PERSON & ONLINE Zoom, Location Marymount University Ballston Center 1000 N Glebe Rd, Arlington, VA 22201. This will be in room: BALL 3018. Metro Station Accessible. Registration closes Wednesday, 06/17/26.

Abstract:
October 1, 2025 – “shields up” to protect the IP in a four year–four phased program to fully execute the CMMC program. Prior DoD regulation enforcement efforts failed miserably with no means to regulate 78,000 entities. However, this time US DoW is driving resiliency through the “power of the purse” with over $320B in annual contracts. Contractors with NO CMMC Level 2 Certification – NO contracts – means NO revenue. DoW contractors, referred to as the Defense Industrial Base (DIB)s are rapidly moving to become CMMC Level 2 C3PAO Certified. Like a version of the “hunger games” where the contractors compete for an ever increasingly short supply of CMMC readiness consultants; and C3PAOs and Certified Assessors that can assess and certify them. C3PAOs are scrambling to recruit and retain the short supply of ISACA certified LCCAs, CCAs and CCPs needed to perform the DIB certifications. Additionally, prime contractors like Lockheed Martin, Northop Grumman, Boeing and L3 are demanding that its subcontractors become CMMC Level 2 Certified NOW to ensure that their contract teams are prepared to win new contracts and contract renewals. CMMC also solves the TPRM challenge. No longer will prime contractors need to validate the cybersecurity resiliency of its tier 1, 2, 3, 4 suppliers to ensure that they won’t be ransomware’d and then not provide a key component of a weapon system. Come hear cutting edge talk about where the CMMC program is heading!

Speaker Bios:
Brian Schultz is a Department of War (DoW) Cyber Maturity Model Certification (CMMC) expert with 20+ yrs protecting $1.4T of DoW Defense Industrial Base (DIB), Department of Defense (DoD), Department of Homeland Security (DHS), FBI, Fed CIV, and Fortune 500 assets from Advanced Persistent Threats (APTs). While serving as Sr Dir, Supply Chain Cybersecurity, at Gartner and serving over 250 large Global 1,000 clients, firsthand heard the dire need for a CMMC like ecosystem that would secure corporate IP whilst also building a robust Third Party Risk Management (TPRM) program. Currently serving as a Senior Assessor with C3PAO NSF to determine DIB contractor’s compliance with NIST 800-171 R2. Co-Host & Facilitator of The Vigilant Forum – leading and facilitating weekly gathering of senior level executives, visionaries, thought leaders, strategists, experts, speakers, authors, and influencers. Highly rated speaker RSA, Gartner, AFCEA, FISSEA, FIAC, ISC2, ISSA, and API cyber conferences. Author of Gartner, SC Magazine, FISSEA articles and INFOSEC Mgt Handbook. Board Member, Technology Advancement Center (TAC); Former ISSA International Board Member, Former ISC2 Advisory Board Member, ISSA Distinguished Fellow, and Past President of the ISSA-NOVA Chapter. Holds a MBA from George Washington University, BBA from James Madison University, and industry certifications: CISM, CISA, CISSP, ISSMP, ISSAP, and NSA IAM. Married father of 4 Eagle Scouts and avid white water kayaker.