Skip links

FAR 52.204-21 Compliance Statement

Broadwire Networks Cybersecurity & Compliance Readiness

At Broadwire Networks, LLC, we are committed to protecting our customers, partners, and the Department of Defense supply chain. As a technology services provider and commercial off-the-shelf (COTS) hardware reseller, we align with the requirements of FAR 52.204-21 — Basic Safeguarding of Covered Contractor Information Systems and the practices required at CMMC 2.0 Level 1 (Foundational).

Our business typically does not store or transmit Controlled Unclassified Information (CUI). However, when handling Federal Contract Information (FCI) (such as purchase orders, invoices, or shipping details), we implement the following 15 safeguarding requirements across our systems and processes.

Our 15 Basic Safeguarding Practices

RequirementWhat it meansBroadwire Implementation
Limit access to authorized usersOnly approved users have accountsEach employee has a unique login; contractor accounts removed when projects end
Restrict functions based on rolesUsers only access what they needBookkeepers access QuickBooks; technicians access network configs
Control external system connectionsOnly secure devices can connectCompany-issued laptops with endpoint protection are required
Control info on public systemsPrevent accidental exposure onlineWebsite lists services only; no contract data posted
Identify users/devicesKnow who/what is accessing systemsMicrosoft Entra ID with unique usernames
Authenticate users/devicesRequire secure loginMFA enforced on Microsoft 365, VPN, and admin tools
Sanitize/destroy mediaProperly wipe or destroy drives/paperDrives wiped or shredded; paper invoices shredded
Limit physical accessSecure offices/equipmentLocked office space; cameras in place
Escort visitorsMonitor visitor accessVisitors sign in and are escorted on-site
Audit physical accessKeep records of entriesDoor access logs via smart lock; visitor sign-in retained
Separate public systemsIsolate internet-facing servicesCompany website hosted separately from office LAN
Patch flaws quicklyUpdate systems promptlyCritical patches within 48 hours; monthly updates applied
Protect from malicious codeDeploy antivirus/EDRHuntress EDR and Microsoft Defender used on all endpoints
Keep protections currentUpdate antivirus/EDRAutomatic signature updates multiple times daily
Scan systems/filesRun malware/vulnerability scansWeekly vulnerability scans; real-time email/attachment scanning

CMMC 2.0 Alignment

These practices map directly to CMMC Level 1 (Foundational) requirements. Broadwire is prepared to demonstrate compliance with these safeguards and to work with contractors requiring higher levels of assurance.


Statement of Readiness

Broadwire Networks affirms our compliance with FAR 52.204-21’s 15 safeguarding requirements and our commitment to maintaining secure systems for all defense supply chain activities.

Authorized Representative
Marcus Aponte
Founder & Managing Member
Broadwire Networks, LLC


Compliance Inquiries

For verification, documentation, or additional details, please contact us at:
📧 compliance@broadwire.net

This website uses cookies to improve your web experience.