Skip to content
Cyber Defense Technologies
The United States Capitol under a dramatic sky

Compliance & Authorization

Critical Program Information & Program Protection

Program Protection Plans that preserve the integrity of your supply chain and critical program information.

Overview

Protect the program, not just the network.

Components sourced outside the United States and embedded in mission systems pose significant security risk. The federal government treats information about their sourcing, transport, storage and use as Critical Program Information (CPI), and DoDI 5200.39 defines the protection responsibilities. CDT applies cybersecurity and logistics expertise to develop CPI protection plans, execute the strategy, and audit ongoing performance.

What's included

Capabilities

01

CPI identification

Identifying and documenting critical program information.

02

Program Protection Plans

Plans developed to DoDI 5200.39 requirements.

03

Implementation

Executing the protection strategy across the supply chain.

04

Performance audits

Ongoing audits that maintain supply chain integrity.

How we work

A proven, repeatable process.

  1. 1

    Gap analysis

    We measure where you are against the framework and document every gap, with evidence.

  2. 2

    Roadmap

    A prioritized plan: what to do first, what it takes, and what it will cost.

  3. 3

    Remediate & document

    We implement controls, harden components and write the policies, procedures and system security plans.

  4. 4

    Assessment support

    We prepare you for the assessor or inspector and stand with you through the review.

  5. 5

    Continuous compliance

    Ongoing monitoring and updates keep you compliant after the authorization.

Let's talk

Let's talk about critical program information & program protection.

Talk with a CDT engineer about your mission, your systems and your deadlines. We'll tell you honestly what it takes.