← Custodia
DFARS 252.204-7012

Safeguarding Covered Defense Information and Cyber Incident Reporting

Effective: December 31, 2017

In plain English

DFARS 252.204-7012 requires DoD contractors that handle Covered Defense Information (CDI) to implement the security requirements of NIST SP 800-171, report cyber incidents to DoD within 72 hours via the DIBNet portal, and use FedRAMP Moderate (or equivalent) cloud services for CDI. It has been the contractual basis for NIST 800-171 across the defense industrial base since 2017.

Who must comply

Any DoD contractor or subcontractor at any tier whose information system processes, stores, or transmits Covered Defense Information.

What it requires

  1. 01Provide "adequate security" by implementing the security requirements specified in NIST SP 800-171 on all covered contractor information systems.
  2. 02Submit any deviations or non-implementations of 800-171 controls to the DoD CIO for adjudication.
  3. 03Report cyber incidents that affect a covered contractor information system or CDI to DoD within 72 hours via the DIBNet portal.
  4. 04Use cloud service providers that meet FedRAMP Moderate baseline or equivalent for any CDI stored or processed in the cloud.
  5. 05Preserve and protect images of all known affected information systems and all relevant monitoring/packet capture data for at least 90 days.
  6. 06Flow the clause down to subcontractors at any tier when subcontractor performance will involve CDI.
Primary source
Read DFARS 252.204-7012 at its source

Related clauses

Related terms

Read more in the Library

Stop reading. Start filing.

Find your SPRS score in 4 minutes. Then file it in 7 days.

Take the free SPRS quiz to see exactly where you stand on the 15 FAR 52.204-21 safeguarding requirements — no signup, no card. If you like what you see, the 7-day Custodia trial picks up where the quiz leaves off and walks you to a signed, bid-ready package.

7-day free trial · No credit card required · $249/mo Self Service ($2,496/yr on annual — two months free)