Eric Crusius
Regulatory Phishing by Hunton Andrews Kurth LLP
Regulatory Phishing is a podcast series brought to you by Hunton Andrews Kurth LLP and hosted by government contracts and cybersecurity attorney Eric Crusius. This series will analyze the latest cybersecurity news for the government contracting industry. From reviewing the Department of Defense and how national security shapes cybersecurity requirements to insights from industry leaders on the ever-changing landscape of cybersecurity, this podcast will help government contracting professionals hack into the latest cybersecurity developments around the world.
Author
Eric Crusius
Category
Podcast website
Latest episode
May 26, 2026
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
Is the Pentagon Accelerating CMMC Implementation? 26.05.2026 18:10
In this episode of Regulatory Phishing, Eric Crusius discusses some newer timing issues that have arisen that may require contractors to obtain a CMMC certification earlier than anticipated. Eric discusses new opportunities requiring CMMC, contracting officer discretion to include CMMC in existing contracts and when CMMC is required in the solicitation process.
CMMC Roundtable: Practical Solutions to Your CMMC Questions 17.02.2026 1:29:33
After much anticipation, Cybersecurity Maturity Model Certification (CMMC) is here. This webinar featuring speakers from different parts of the ecosystem examines what we see as CMMC rolls out, and how we are helping our clients and others through those issues. They include: How to identify Controlled Unclassified Information Organizational culture changes needed for CMMC Common tools to help comp...
Finding the Right MSP to Manage Your CUI 03.10.2025 16:19
In this episode of Regulatory Phishing, Eric Crusius is joined by Ed Bassett, who is the Chief Cybersecurity Evangelist at NeoSystems and a member of the board of the MSP Collective. Managed Service Providers play a vital role in the protection of CUI assets and choosing the right MSP can be a daunting task. Ed and Eric discuss what companies should look for when choosing an MSP and how an MSP can...
The Role of Cloud Service Providers in the CMMC Ecosystem 03.10.2025 19:10
Michael Greenman from Deltek joins Eric Crusius to discuss how cloud service providers (CSPs) have emerged as key players in the cybersecurity compliance landscape. From supporting DFARS 7012, CMMC and ITAR compliance, today's government contracting regulatory frameworks increasingly rely on CSPs to demonstrate FedRAMP Moderate Authorization or Equivalency to reduce risk. This episode explores how...
A Closer Look at the CMMC Rollout 01.10.2025 11:05
The regulations released by the Department of Defense/War roll out the CMMC program over a number of years. In this episode of Regulatory Phishing, we will look at the timing and what it means for the Defense Industrial Base.
The DFARS CMMC Final Rule is Here! 19.09.2025 11:53
In this episode of "Regulatory Phishing," government contracts and cybersecurity attorney Eric Crusius discusses the latest rule released by the Department of Defense implementing the Cybersecurity Maturity Model Certification (CMMC) program and the implications and timing of the rule. Eric also discusses what changed from the proposed version of the rule and what is next for the CMMC program.
Discussing a DOJ Lawsuit Under the Civil-Fraud Initiative 17.10.2024 10:34
In this episode of "Regulatory Phishing," government contracts and litigation attorney Eric Crusius is joined by Kelsey Hayes to discuss a U.S. Department of Justice (DOJ) lawsuit that was brought under the Civil Cyber-Fraud Initiative. The speakers walk through the meaning of a whistleblower lawsuit, allegations in the DOJ's complaint, the False Claims Act and more.
Cybersecurity Roundup: Analyzing New and Proposed Rules for Contractors 11.09.2024 15:26
In this episode of "Regulatory Phishing," government contracts and cybersecurity attorney Eric Crusius delves into the latest developments from the Cybersecurity Maturity Model Certification (CMMC) program, National Institute of Standards and Technology (NIST) and Cybersecurity and Infrastructure Security Agency (CISA). Mr. Crusius looks at the implementation timeline for new and proposed regulati...
The Role of Managed Service Providers with Stuart Itkin 21.11.2023 27:59
In this episode of "Regulatory Phishing," government contracts and cybersecurity attorney Eric Crusius is joined by Stuart Itkin, a senior vice president and the chief marketing officer at NeoSystems. Their conversation covers the overall cybersecurity landscape, especially the Cybersecurity Maturity Model Certification (CMMC) program, and discusses the important role manage service providers (MSP...
The When, Where, Why and How of CMMC with Fernando Machado 07.11.2023 17:18
In this episode of "Regulatory Phishing," Fernando Machado joins government contracts and cybersecurity attorney Eric Crusius for an episode focused on the Cybersecurity Maturity Model Certification (CMMC) program. Mr. Machado is the Managing Principal and Chief Information Security Officer for Cybersec Investments as well as the author of CMMC Simplified. Mr. Crusius and Mr. Machado discuss the c...
The State of Contractor Cybersecurity with Katie Arrington 24.10.2023 56:45
In this episode of "Regulatory Phishing," former U.S. Department of Defense Chief Information Security Officer (CISO) Katie Arrington joins Hunton government contracts and cybersecurity attorney Eric Crusius to discuss the state of cybersecurity within the defense industrial base, including the rollout of the Cybersecurity Maturity Model Certification (CMMC). The discussion is wide-ranging and off...
Navigating the TikTok Ban: Implications for Government Contractors 23.10.2023 29:00
In this episode of "Regulatory Phishing," Hunton government contracts and cybersecurity attorney Eric Crusius and Jeremy Burkhart discuss the interim rule issued by the Federal Acquisition Regulation (FAR) Council implementing the statutory ban on the use of ByteDance's TikTok app on federal information technology systems and contracts. They explore the ambiguities in the rule's language and diff...
The Impact of Cybersecurity Compliance on Corporate Transactions 22.10.2023 14:18
In this episode of "Regulatory Phishing," Eric Crusius and David Cole discuss the role of cybersecurity compliance in corporate transactions, how lack of compliance can impact the ability of a transaction to close and what parties look at during the due diligence process. Mr. Crusius and Mr. Cole also reminisce about Mr. Cole's time lugging dozens of boxes through an airport in Costa Rica.
What Do the Newly Released CMMC 2.1 Documents Mean? 21.10.2023 18:56
In this episode of "Regulatory Phishing," Hunton government contracts and cybersecurity attorney Eric Crusius examines the newly released Cybersecurity Maturity Model Certification (CMMC) program documents. Mr. Crusius breaks down assessment guides and the scoping guidance for CMMC Levels 1, 2 and 3. He also explains the significant impacts these documents can have on the CMMC ecosystem.
Third-Party Assessments and NIST SP 800-171 20.10.2023 13:45
In this episode of Hunton's "Regulatory Phishing," Eric Crusius is joined by Tom Tollerton, a partner with FORVIS, a Certified Third-Party Assessment Organization (C3PAO). In this episode, Eric and Tom discuss the role of the C3PAO in the Cybersecurity Maturity Model Certification (CMMC) process and what to expect with the new version of Special Publication 800-171 from the National Institute of S...
Overview of Cybersecurity in Government Contracts 19.10.2023 20:12
The first episode of Hunton government contracts attorney Eric Crusius's podcast, "Regulatory Phishing," provides an overview of the latest cybersecurity issues facing government contractors and how significant cybersecurity attacks that have leaked government information to countries such as China, Russia and North Korea threaten national security. He details U.S. government regulations with whic...
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.