# Support Your CMMC, DFARS, and ITAR Efforts

Automated FOCI screening, sanctions monitoring, and supply chain risk management built for defense primes and subcontractors managing classified programs.

- **Automated FOCI screening and analysis**  
- **Real-time sanctions monitoring** (OFAC, UN, EU, UK)  
- **Multi-tier supply chain visibility**  
- **Supports CMMC 2.0 and NIST 800-171 documentation**

### Frameworks We Support
- **CMMC 2.0**: Cybersecurity Maturity Model Certification  
- **NIST 800-171**: Protecting Controlled Unclassified Information  
- **DFARS 252.204-7012**: Safeguarding Covered Defense Information  
- **ITAR**: International Traffic in Arms Regulations  
- **NISPOM**: National Industrial Security Program  
- **CFIUS**: Committee on Foreign Investment

## Defense Supply Chain Risks Are Intensifying

DCSA scrutiny, CMMC requirements, and geopolitical tensions demand automated supplier oversight.

### FOCI Exposure

Foreign ownership in your supply chain can cost you clearances and contracts. Are you screening all tiers?

### Sanctions Violations

A single sanctioned entity in your supply chain can trigger debarment. Manual screening isn't enough.

### CMMC Certification

CMMC Level 2 requires documented supplier risk management. Auditors want to see your process.

## Purpose-Built for Defense Contractors

Comprehensive risk intelligence that meets the unique requirements of the Defense Industrial Base.

### FOCI Screening & Analysis

Automated Foreign Ownership, Control, or Influence screening for all suppliers. Supports CFIUS and NISPOM documentation needs.

### Sanctions Screening

Real-time screening against OFAC, UN, EU, and UK sanctions lists with 98%+ detection accuracy.

### Supply Chain Mapping

Visualize your entire defense supply chain with multi-tier visibility. Identify concentration risks.

### Continuous Monitoring

24/7 automated monitoring with instant alerts when supplier risk profiles change.

### Audit-Ready Reports

Generate documentation to support DCSA, DIBCAC, and prime contractor requirements.

### Secure Infrastructure

SOC 2 Type II certified. FedRAMP-ready architecture. Your data never leaves secure US infrastructure.

> "CMMC Level 2 requires supplier risk management. MeasuredRisk's FOCI analysis and automated monitoring provide the capabilities we need. The platform supports our compliance documentation efforts."
> 
> Director of Security  
> Defense Technology Company

## Ready to Secure Your Defense Supply Chain?

See how MeasuredRisk can support your FOCI screening and supply chain risk management efforts.
