CMMC Compliance Explained: Risk, Cost, Tech Stack & Culture Shift in the DoD | Khanh Tran | EP 107
Failed to add items
Add to basket failed.
Add to wishlist failed.
Remove from wishlist failed.
Adding to library failed
Follow podcast failed
Unfollow podcast failed
-
Narrated by:
-
By:
Send us Fan Mail
CMMC is not new. It is enforcement.
In this full episode of Musings from the Cyber Trench, we break down the real operational impact of CMMC inside the Defense Industrial Base.
Our guest brings over 25 years of experience across enterprise GRC, defense programs, and federal cybersecurity.
We discuss:
- Why CMMC was long overdue • Level 1 vs Level 2 and what “basic hygiene” really means • Reactive vs predictive risk culture • The true cost drivers behind CMMC assessments • CCA scarcity and pricing pressure • Tech stack decisions: AWS vs Microsoft vs Google • Why veterans thrive in cybersecurity missions
If you operate inside the DoD ecosystem, this conversation gives you clarity on what matters and what does not.
Responsible for ICAM, Zero Trust, or identity security in a federal agency, prime, or large regulated enterprise?
If you’re trying to move from strategy to execution, start with Zephon’s Zero Trust Readiness Assessment: zephon.tech/zt
Questions or guest ideas? Email defend@zephon.tech