Cuick 10 Podcast

The Cuick 10 Podcast features fast-paced conversations with CMMC assessors, cybersecurity leaders, compliance consultants, and defense contractors navigating NIST SP 800-171, DFARS, and CMMC Level 2.

Each episode breaks down real-world challenges shaping the Defense Industrial Base, including CMMC assessments, scoping CUI environments, enclave architecture, MSP and provider selection, FedRAMP, AI security, penetration testing, supply chain risk, and what organizations are getting wrong on the path to certification. All in 10 (ish) minutes.

Listen on these platforms:

Sign up for alerts on new podcasts:

Episodes:

CMMC Architecture Mistakes

In this episode of the Cuick 10 Podcast, Derek White, Chief Operating Officer of Cuick Trac, sits down with David Bedard, Director of Compliance at KTL Solutions. 

Recorded at CUI-CON 2026, this conversation explores how architectural decisions impact CMMC compliance outcomes. 

They discuss the importance of understanding data flow, how organizations should approach environment design, and why poor planning leads to costly rework. 

This episode provides a practical look at how contractors can structure their environments correctly and avoid common pitfalls when preparing for CMMC Level 2. 

Turning Alerts Into Action

In this episode of the Cuick 10 Podcast, Derek White sits down with Chris Furner, Head of Partner Enablement at Blumira. 

Recorded at CUI-CON 2026, this conversation explores how organizations can better operationalize security by turning alerts into actionable outcomes. 

They discuss the limitations of traditional SIEM tools, the challenges of alert fatigue, and how improved guidance and workflows can help organizations respond more effectively. 

This episode provides a practical look at how contractors can strengthen their security posture while meeting compliance requirements.

Why MSPs Struggle with CMMC

In this episode of the Cuick 10 Podcast, Derek White sits down with Wesley Reinhart, CMMC Program Manager at CompassMSP. 

Recorded at CUI-CON 2026, this conversation explores how traditional MSP models are evolving to support CMMC requirements. 

They discuss the importance of proper scoping, the value of mock assessments, and how structured service models can help organizations reduce cost and complexity. 

This episode provides a practical look at how contractors can better approach compliance and work more effectively with service providers. 

Inside the C3PAO Ecosystem

In this episode of the Cuick 10 Podcast, Derek White, Chief Operating Officer of Cuick Trac, sits down with Toby Musser, Chief Executive Officer of MNS Group. 

Recorded at CUI-CON 2026, this conversation explores how the C3PAO ecosystem is evolving to meet increasing demand for CMMC assessments. 

They discuss how assessment teams are structured, how capacity is scaling, and what organizations should look for when selecting a C3PAO. 

This episode provides a practical look at how contractors can better understand the assessment process and make more informed decisions when preparing for CMMC Level 2 certification. 

Avoiding CMMC False Starts

In this episode of the Cuick 10 Podcast, Derek White, Chief Operating Officer of Cuick Trac, sits down with Fernando Machado, Managing Principal and CISO of Cybersec Investments. 

Recorded at CUI-CON 2026, this conversation explores the growing issue of false starts in CMMC assessments and what organizations are getting wrong. 

They discuss common readiness gaps, the importance of proper preparation, and how timing plays a critical role in achieving certification. 

This episode provides a practical look at how contractors can better prepare for CMMC Level 2 and avoid unnecessary delays in the assessment process. 

Controlling CUI Beyond the Perimeter

In this episode of the Cuick 10 Podcast, Derek White, Chief Operating Officer of Cuick Trac, sits down with Billy Jones, Solutions Engineer at Virtru. 

Recorded at CUI-CON 2026, this conversation explores how organizations can better protect CUI by focusing on data-centric security approaches. 

They discuss how encryption and access control policies can follow data wherever it goes, the limitations of traditional perimeter-based security, and the importance of FedRAMP-authorized solutions. 

This episode provides a practical look at how contractors can improve control over sensitive data and strengthen their overall compliance posture. 

Frequently Asked Questions

The Cuick 10 Podcast is a cybersecurity and compliance podcast hosted by Cuick Trac covering CMMC, NIST SP 800-171, DFARS, and other topics impacting the Defense Industrial Base (DIB).

Episodes cover CMMC assessments, CUI scoping, enclave architecture, MSP readiness, FedRAMP, AI security, penetration testing, provider vetting, compliance strategy, supply chain risk, and NIST SP 800-171 implementation.

Guests include C3PAOs, assessors, compliance consultants, cybersecurity architects, MSPs, vCISOs, technology providers, and defense contractors involved in CMMC and federal cybersecurity compliance.

The podcast is designed for defense contractors, subcontractors, compliance teams, IT leaders, executives, MSPs, and organizations preparing for CMMC Level 2 certification.

The Cuick 10 Podcast is available on Spotify, YouTube, Pandora, and iHeartRadio.

The Cuick 10 focuses exclusively on CMMC, DFARS, and NIST 800-171 compliance from the perspective of practitioners—assessors who’ve conducted audits, consultants who’ve built programs, and contractors who’ve passed certification. Episodes prioritize specific, implementable guidance over general cybersecurity theory.

🍪 We Use Cookies

To enhance your experience and analyze site usage, we use cookies. By continuing to use our site, you agree to our use of cookies in accordance with our Privacy Policy.