EDC® meets the CMMC Level 1 requirements

After completing the Cybersecurity Maturity Model Certification (CMMC) Level 1 self-assessment for EDC®, our CMMC Taskforce has affirmed MET status (the highest Level 1 affirmation) for all required security controls as outlined in FAR clause 52.204-21(b)(1) and as referenced in the 2026 Defense personal Property Program (DP3) Household Goods Tender of Service A.2(c). This assessment status is registered within SPERS/PIEE, and EDC® is already advancing on documenting our Level 2 assessment, and will continue to communicate updates.

For those of you who work in the Defense Personal Property Program (DP3) Household Goods (HHG) program and who fall under the requirement for CMMC Level 1 affirmation with deadline of 15 MARCH 2026 (further details available in the Tender of Service (ToS) - https://tinyurl.com/DP3-2026ToS, your EDC® software’s user and access control features, logs, as well as other functionality, can support related questions within your own Level 1 self-assessment in those related requirements when utilized accordingly and when working within your EDC® software.

HELPFUL LINKS:
There are many great resources for learning more about CMMC and completing the Level 1 self-assessment. Here are a few of those important links related to CMMC and the DP3 mandate:
It's important to note that EDC®'s Level 1 compliance does not, in and of itself, make every user compliant, since the scope of CMMC Level 1 requirements extends to usage, configuration, & matters beyond one's software. Every company must satisfy itself and conduct their own self-assessment in order to arrive at their own CMMC status