FAR Case 2021-019, Federal Acquisition Regulation: Standardizing Cybersecurity Requirements for Unclassified Federal Information Systems
ProposedFAR Council · Proposed rule · October 3, 2023
Summary
Would set standard cybersecurity requirements for contractors that build, run, or maintain federal information systems: FedRAMP authorization for cloud systems, and NIST-based controls, annual assessments, MFA, and continuous monitoring for other systems.
What FedXchange has recorded
No changes recorded. The watch records a new document and any change in its status.
- Issuer
- Federal Acquisition Regulatory Council (FAR Council)
- Type
- Proposed rule
- Number
- FAR Case 2021-019
- Issued
- October 3, 2023
- Status
- Proposed
A proposed rule or draft. It may change before it takes effect.
No final rule or withdrawal has been published as of October 2026.
Get new governance by email
A weekly email on Fridays, an alert on the day the watch finds something new, or both. Free.