Defense
Mojave Research Inc. (MRI)
CAGE 10S34
CAGE Code
10S34 — verifiable in SAM.gov
Federal buyers and primes can verify MRI's entity registration using CAGE code 10S34 in the System for Award Management.
CMMC Status
Registered Practitioner Organization (RPO)
MRI holds CMMC Registered Practitioner status, enabling it to advise and assist DIB organizations pursuing CMMC Level 2 and Level 3 certifications. Specific assessment scopes are confirmed at the contracting stage.
NAICS Codes
541512 — Computer Systems Design Services (primary)
Additional applicable codes include 541519 (Other Computer Related Services) and 541690 (Other Scientific & Technical Consulting) depending on the program scope.
CUI & Controlled Environment Delivery
Confirmed at contracting phase
CUI handling requirements, ITAR obligations, and cleared delivery arrangements are addressed at the contracting level. Raise these in the briefing so MRI can confirm the arrangement.
Standards
AI Security Foundation (AISF)
Standards Alignment
NIST AI RMF, ISO/IEC 42001, MITRE ATLAS, OWASP LLM Top 10
AISF builds AI security standards and certification work mapped to the major AI risk and security frameworks. Its work informs the assurance framing applied across the ASG operating entities.
ISO/IEC 42001 Alignment
Framework-aligned — certification scope confirmed per engagement
AISF's standards work aligns with ISO/IEC 42001 AI management system requirements. Specific certification scope and applicability are confirmed per engagement.
Legal
IPSA Intelligent Systems Inc.
Data Handling
Private-cloud and on-premises deployments
IPSA delivers legal AI in private-cloud or on-prem configurations. Attorney-client privilege, work product doctrine, and firm-level data controls are preserved by design. No client data transits shared infrastructure.
Bar & Regulatory Considerations
Addressed per jurisdiction and matter
State bar ethics rules, supervisory obligations, and model rule compliance are addressed per jurisdiction and matter type. IPSA does not provide legal advice; it delivers AI systems under attorney direction.
Standards & Frameworks
Referenced Standards
The following standards inform the assurance posture, control language, and review criteria applied across ASG operating entity engagements.
- NIST AI Risk Management Framework
Voluntary guidance for managing risks associated with AI systems throughout their lifecycle.
- ISO/IEC 42001
International standard specifying requirements for establishing and maintaining AI management systems.
- MITRE ATLAS
Adversarial Threat Landscape for AI Systems — a knowledge base of adversarial machine learning tactics.
- OWASP LLM Top 10
The ten most critical security risks for applications built on large language models.
- ITAR / EAR Export Controls
U.S. export control regimes governing defense articles (ITAR/DDTC) and dual-use technology (EAR/BIS) relevant to AI systems and data in defense and intelligence programs.
Next step
Compliance scope is confirmed in the briefing.
The right compliance arrangement depends on the program type, data classification, and delivery model. Start with the defense path or use the general path to route your inquiry to the entity that can confirm the scope.