Consulting firms pay $11.3m for noncompliance with cybersecurity requirements in US-funded contract

DOJ sends clear signal over security standards that go with federal funding.

The Department of Justice (DOJ) recently announced the latest settlement under its Civil Cyber-Fraud Initiative (CCFI) which resulted in a total of $11,300,000 in payments from two consulting companies: Guidehouse, Inc., the prime contractor, which paid $7,600,000; and Nan Kay and Associates, the subcontractor, which paid $3,700,000.

Both businesses settled allegations

Free Trial

Register for free to keep reading.

To continue reading this article and unlock full access to GRIP, register now. You’ll enjoy free access to all content until our subscription service launches in early 2026.

  • Unlimited access to industry insights
  • Stay on top of key rules and regulatory changes with our Rules Navigator
  • Ad-free experience with no distractions
  • Regular podcasts from trusted external experts
  • Fresh compliance and regulatory content every day
Register for free Already a member? Sign in