Cherry Bekaert Secures Reauthorization as CMMC Third-Party Assessment Organization

Awards & Recognition

January 16, 2025

Cherry Bekaert (the Firm) is pleased to announce its reauthorization as a Cybersecurity Maturity Model Certification (CMMC) Third-Party Assessment Organization (C3PAO) by The Cyber AB. This final reauthorization allows Cherry Bekaert to commence CMMC Level 2 certification assessments and issue Level 2 certificates of CMMC Status in accordance with Title 32, part 170 of the Code of Federal Regulations (CFR). 

Listed on the Cyber AB Marketplace with Authorization Identification Number (AIN): C0125-CBA-034, Cherry Bekaert is committed to delivering unparalleled support to U.S. Department of Defense (DoD) contractors in securing their CMMC certification.

“With our recent CMMC C3PAO reauthorization, Cherry Bekaert proudly reaffirms our unwavering commitment to supporting our clients’ efforts to build trust through compliance and security,” said Kurt Manske, Cherry Bekaert's Information Assurance and Cybersecurity Leader. “We extend our gratitude to our executive leaders and dedicated teams for their hard work delivering these essential services. This achievement highlights our dedication to upholding the highest standards in cybersecurity. Together, we continue to drive client success and commitments in protecting and securing our Nation's critical supply chains.” 

In addition to its role as a C3PAO, Cherry Bekaert is also a recognized CMMC Registered Practitioner Organization (RPO), offering readiness assessment consulting services when independent to organizations pursuing CMMC certification.

“As a Firm with over two decades of experience advising government contractors on compliance and regulatory matters, we have consistently transformed cybersecurity into a strategic asset for our clients,” said Traci Shepps, Government Contracting Industry Leader at Cherry Bekaert. “Our leadership in NIST 800-171 compliance has seamlessly evolved to include CMMC readiness services. We are now pleased to support DoD contractors in achieving CMMC certification through CMMC Level 2 certification assessments."

The Cybersecurity Maturity Model Certification (CMMC) is a unified cybersecurity standard for Department of Defense (DoD) acquisitions aimed at securing the Defense Industrial Base (DIB) supply chain by increasing the protection of controlled unclassified information (CUI) and federal contract information (FCI) and complying with the NIST SP 800-171 rev. 2 requirements. The CMMC framework comprises of three levels and may require an independent third-party certification by an accredited organization. The DoD plans to implement CMMC requirements in four phases over three years, mandating compliance from all DoD contractors bidding on contracts by the final phase.

Media Relations

Are you a journalist trying to reach a company representative about the latest news?

Contact Us