Managed IT and Managed Security · Leesburg, VA

Industries

The Businesses We Run IT and Security For.

Organizations that hold sensitive information and answer to a contract, a regulator or an insurer.

Four industries have their own pages. The rest of the defense supply chain is listed below.

Which CMMC level applies to a government contractorA decision diagram. Your contract decides what you handle. Federal Contract Information leads to CMMC Level 1, the 15 requirements of FAR 52.204-21. Controlled Unclassified Information leads to CMMC Level 2, the 110 requirements of NIST SP 800-171.Your contractHandles FCIFederal Contract InformationHandles CUIControlled Unclassified InfoCMMCLevel 115 requirementsFAR 52.204-21CMMCLevel 2110 requirementsNIST SP 800-171
What the FTC Safeguards Rule asks an accounting firm forOn the left, a locked folder of what a firm holds: tax returns, Social Security numbers and banking details. On the right, the six things the updated rule asks for: a written information security plan, a designated Qualified Individual, regular assessments, staff training, encryption and multi-factor authentication, and an incident response plan.CLIENT DATATax returnsSSNsBanking detailsSAFEGUARDS RULE ASKS FORWritten security planA Qualified IndividualRegular assessmentsStaff trainingEncryption and MFAIncident response plan
Where patient data lives in a dental practiceFour systems inside one monitored boundary: imaging, electronic health records, practice management and insurance data, watched 24/7, with HIPAA compliance management alongside.Monitored 24/7ImagingHealth recordsPractice managementInsurance dataHIPAA compliance management
How a repair shop network should be segmentedOne firewall at the top feeds four separate network segments: POS and card payments, service writer and technician computers, cameras, and customer Wi-Fi. None of the segments can reach the others, so a compromised guest phone or camera cannot reach the payment systems.ONE SHOP, FOUR NETWORKSFirewall

POS and card payments

SEGMENT 1

Service writers and techs

SEGMENT 2

Cameras

SEGMENT 3

Customer Wi‑Fi

SEGMENT 4
No segment can reach another.

Start With Yours

4 INDUSTRIES

We understand security and regulated businesses. Each page covers what that industry is asked for and how we run it.

Government Contractors

IT support, managed security and CMMC experience for defense and federal suppliers.

Accounting and CPA Firms

Managed IT and security for CPA firms, with the WISP and FTC Safeguards Rule in view.

Auto Repair Shops and Auto Groups

Managed IT, networks and security for repair shops and multi-location auto groups.

Dental Practices

Managed IT, managed security and HIPAA compliance management for dental practices and DSOs.

The Defense Supply Chain

And the Suppliers Behind the Primes.

We run IT and security for these industries. If the need is CMMC, the work is delivered by Capital Cyber Compliance, and its gap assessment is where most suppliers start.

Manufacturing: CNC, precision machining, fabricationAerospace: Tier 2 and 3 subcontractors, parts manufacturersDefense contractors: primes and subs across all tiersConstruction: federal and DoD construction projectsEngineering and architecture: defense project designElectronics and circuit board manufacturingMetal fabrication and weldingMedical device manufacturingChemical manufacturing for the DoD supply chainLogistics and supply chainResearch and developmentProfessional services supporting the DoDMaritime and shipbuildingEnvironmental and hazmat services at federal sitesPrinting and publishing of secure documentsFinancial servicesHealthcare

Talk It Through in 30 Minutes.

Pick a time. Tell us what you protect and who asks about it.

Looking for CMMC? Our Compliance Division, Capital Cyber Compliance, delivers it.

Book a 30-Minute Call