Canadian Defence & Cybersecurity Compliance

25 chapters

Chapters

  1. 1 The Defence Industrial Strategy (DIS)
    Canadian Defence & Cybersecurity Compliance · 3:56
    Explore Canada's Defence Industrial Strategy (DIS) and its three foundational pillars — Build, Partner, and Buy — which guide the nation's approach to security, sovereignty, and prosperity in defence procurement.
  2. 2 Defence Investment Agency (DIA)
    Canadian Defence & Cybersecurity Compliance · 3:07
    Exploring the creation and purpose of Canada's Defence Investment Agency, this chapter breaks down how consolidating defence procurement under a single authority replaces fragmented processes and what that structural shift means for efficiency and accountability.
  3. 3 Funding Mechanisms
    Canadian Defence & Cybersecurity Compliance · 3:41
    Explore the key funding mechanisms available to Canadian defence SMBs, including BDC's four-billion-dollar program, venture capital options, and advisory support through the Defence Platform.
  4. 4 Key Reading
    Canadian Defence & Cybersecurity Compliance · 3:14
    Dive into Canada's landmark defence policy, *North Strong and Free*, unpacking the $81.8 billion five-year investment plan and what it means for the country's industrial and security strategy.
  5. 1 Program Structure
    Canadian Defence & Cybersecurity Compliance · 3:33
    Launched in March 2025, Canada's cybersecurity compliance framework establishes three levels of protection for national defence, mirroring the structure of CMMC 2.0 and building organizational readiness from foundational basics to advanced measures.
  6. 2 ITSP 10.171 (The Canadian Standard)
    Canadian Defence & Cybersecurity Compliance · 3:39
    Dive into ITSP 10.171, Canada's cybersecurity standard from the Canadian Centre for Cyber Security, and discover how its security controls mirror NIST 800-171 to protect sensitive information. Learn how to download, study, and map these controls to build a compliant and robust Canadian security framework.
  7. 3 Assessment & Certification Process
    Canadian Defence & Cybersecurity Compliance · 3:24
    Covering the three-tiered assessment framework for defence compliance certification, this chapter walks you through each level of evaluation — starting with self-assessment questionnaires and evidence documentation — so you know exactly what to expect on your path to certification.
  8. 4 Dual-Compliance Architecture
    Canadian Defence & Cybersecurity Compliance · 3:56
    Navigating the intersection of CMMC and CPCSC, this chapter breaks down how organizations can strategically align both frameworks by identifying shared requirements and critical gaps. Listeners will gain a clear understanding of dual-compliance architecture and how reciprocity between the two standards can streamline the path to full certification.
  9. 5 Key Reading
    Canadian Defence & Cybersecurity Compliance · 4:49
    Breaks down the five essential documents every Canadian defence contractor must know, guiding listeners through the CCCS certification levels and how NIST 800-171 revision three forms the backbone of cybersecurity compliance.
  10. 1 CMMC Current State
    Canadian Defence & Cybersecurity Compliance · 4:04
    Marking a pivotal moment in defense contracting, the November 2025 final rule brings DFARS implementation into full effect, leaving contractors no room for delay. Listeners will gain a clear picture of where the industry stands today and what the current state assessment reveals before stricter cybersecurity requirements take hold.
  11. 2 Canadian-Specific CMMC Issues
    Canadian Defence & Cybersecurity Compliance · 4:14
    Dive into the unique challenges Canadian companies face when entering the U.S. defense supply chain, exploring how DFARS clauses and cybersecurity requirements flow down through contracts to affect businesses operating across the border.
  12. 3 Building the Dual-Market Offering
    Canadian Defence & Cybersecurity Compliance · 2:44
    Navigating the distinct compliance requirements of both Canadian and US defence markets, this chapter breaks down how small and mid-sized businesses can strategically build offerings that satisfy CPCSC and CMMC standards simultaneously. Listeners will learn how to position their organization to compete confidently across both markets without duplicating effort.
  13. 2 Zero Trust Architecture for Defence
    Canadian Defence & Cybersecurity Compliance · 4:49
    Exploring the shift from traditional perimeter-based security to Zero Trust Architecture, this chapter breaks down the NIST 800-207 framework's core principle of "never trust, always verify" and why it's essential for defending today's borderless, cloud-driven networks.
  14. 4 Key Reading
    Canadian Defence & Cybersecurity Compliance · 4:00
    Dive into the four essential frameworks shaping Canadian cybersecurity compliance, with a focus on ITSG 33 and its structured approach to risk management, baseline controls, and continuous security monitoring.
  15. 1 Kubernetes Ecosystem
    Canadian Defence & Cybersecurity Compliance · 6:10
    Dive into the Kubernetes ecosystem and explore the key container orchestration platforms used in defence environments, from cloud-based solutions like EKS and AKS to security-focused options like RKE2 and K3s designed for air-gapped infrastructure.
  16. 2 Kafka Ecosystem
    Canadian Defence & Cybersecurity Compliance · 3:41
    Dive into the powerful ecosystem surrounding Apache Kafka, exploring essential tools like Strimzi and Confluent for Kubernetes that keep defense network data streams running reliably at scale.
  17. 3 Compliance and Security
    Canadian Defence & Cybersecurity Compliance · 2:44
    Diving into the world of cybersecurity compliance, this chapter explores how tools like OSCAP and InSpec automate STIG standards and SBOM management to keep Canadian defence systems secure and audit-ready.
  18. Phase 1: Foundations (Weeks 1–3)
    Canadian Defence & Cybersecurity Compliance · 3:45
    Dive into the foundational architecture of Kubernetes as Phase 1 walks you through the core components — API server, etcd, controller manager, and scheduler — and how they work together to maintain desired state and place workloads by design.
  19. Phase 2: Hands-On (Weeks 4–6)
    Canadian Defence & Cybersecurity Compliance · 3:13
    Dive into the practical hands-on phase of building Canadian defence-grade infrastructure, where learners configure and manage multi-cluster Kubernetes environments using EKS and RKE2, mastering kubectl context switching across parallel systems.
  20. Phase 3: Integration (Weeks 7–9)
    Canadian Defence & Cybersecurity Compliance · 3:54
    Covering the third phase of a structured compliance implementation, this section walks through weeks seven to nine, focusing on how GitOps pipelines and ArgoCD bring automated synchronization and drift detection across multi-cluster environments to maintain consistent, declarative infrastructure states.
  21. Phase 4: Program Execution (Weeks 10–12)
    Canadian Defence & Cybersecurity Compliance · 3:14
    Covering the critical execution phase of a compliance program, this chapter walks listeners through presenting a Critical Design Review (CDR), building a lab environment, and developing a reference implementation to confidently demonstrate readiness to stakeholders.
  22. 2 ITSP 10.171 (La norme canadienne)
    Canadian Defence & Cybersecurity Compliance · 3:04
    Plongez dans la norme canadienne ITSP 10.171 du Centre canadien pour la cybersécurité et découvrez comment maîtriser ses contrôles essentiels pour assurer une conformité complète en matière de sécurité.
  23. 4 Lectures essentielles
    Canadian Defence & Cybersecurity Compliance · 3:26
    Plonge dans les lectures essentielles du cadre canadien de cybersécurité, notamment l'ITSG-33, en explorant ses trois étapes fondamentales : catégoriser les systèmes, sélectionner les contrôles appropriés, et les implémenter efficacement pour renforcer la protection des informations gouvernementales.
  24. 2 Enjeux CMMC propres au Canada
    Canadian Defence & Cybersecurity Compliance · 2:21
    Plongez dans les défis uniques auxquels font face les sous-traitants canadiens travaillant avec la défense américaine, notamment les obligations DFARS et la gestion des données sensibles. Vous découvrirez comment naviguer les exigences SPRS et CMMC dans un contexte transfrontalier pour assurer la conformité et protéger les informations critiques.
  25. 4 The Privacy Act Framework
    Canadian Defence & Cybersecurity Compliance · 3:11
    A deep dive into the Privacy Act of 1974 and its critical role in protecting personal information collected through government security clearance forms, revealing how federal agencies like OPM are required to disclose how your data is used and shared.