Skip to Primary Navigation

Consulting firms pay $11.3m for noncompliance with cybersecurity requirements in US-funded contract

Image of US Attorney General Merrick Garland near a large data screen.
Photo: Samuel Corum/Getty Images

DOJ sends clear signal over security standards that go with federal funding.

The Department of Justice (DOJ) recently announced the latest settlement under its Civil Cyber-Fraud Initiative (CCFI) which resulted in a total of $11,300,000 in payments from two consulting companies: Guidehouse, Inc., the prime contractor, which paid $7,600,000; and Nan Kay and Associates, the subcontractor, which paid $3,700,000.

Both businesses settled allegations

Get full access, free for a month

This is a Premium article. Start your 28-day free trial to continue reading and access all content on GRIP – no payment details required.

What’s included:

  • Every new article, plus our 5,000+ archive
  • Daily regulatory insight and guidance
  • Exclusive interviews and in-depth analysis
  • Coverage of industry-leading events and conferences
  • All podcasts and videos, featuring industry experts
  • The full set of Rules Navigator tools
  • An ad-free experience