Report by Redspin
Momentum, but Slow Movement: The State of DIB CMMC Readiness
Key Findings
26% of Defense Industrial Base members reported spending between $100,000 and $250,000 on Cybersecurity Maturity Model Certification preparation as of November 2025.
31% of Defense Industrial Base members reported spending more than $250,000 on Cybersecurity Maturity Model Certification preparation as of November 2025.
47% of Defense Industrial Base members have received flow-down requests from prime contractors regarding Cybersecurity Maturity Model Certification.
68% of Defense Industrial Base members reported that preparing for Cybersecurity Maturity Model Certification has taken them over a year as of November 2025.
14% of Defense Industrial Base members are considering using a cloud service provider for Cybersecurity Maturity Model Certification compliance in the future.
54% of Defense Industrial Base members reported starting their Cybersecurity Maturity Model Certification journey with a strong implementation of NIST 800-171 standards and DFARS controls.
37% of Defense Industrial Base members are not scheduled for a Cybersecurity Maturity Model Certification assessment or are unsure of their next steps.
53% of Defense Industrial Base members are currently using a cloud service provider to minimize their Cybersecurity Maturity Model Certification scope.
60% of Defense Industrial Base members reported an increase in training staff on cybersecurity since last year, up from 37% .