Blog
FIPS Encryption Requirements in CMMC and NIST SP 800-171

FIPS Encryption Requirements in CMMC and NIST SP 800-171 

When handling Controlled Unclassified Information (CUI), compliance with NIST SP 800-171 and the CMMC framework mandates strict data protection measures—including the use of FIPS-validated encryption in specific scenarios. But one requirement that consistently generates questions is exactly what “FIPS-validated” means in practice, where it applies, and how it differs from the looser “FIPS-compliant” language that […]