Imprimis Inc. Redefines Compliance Automation with Launch of i2ACT Version 4.0
Next-Generation Software Simplifies the Path to CMMC Certification with Level-Specific Modules for FAR and DFARS Compliance.
===
FOR IMMEDIATE RELEASE
COLORADO SPRINGS, CO — June 15, 2026 — Imprimis Inc., a leader in cybersecurity compliance assessment technology for the Defense Industrial Base (DIB), today announced the official release of i2ACT Version 4.0. (i2ACT 4.0) This milestone update transforms one of the industry’s most trusted NIST 800-171 assessment and compliance software tools, database and document management solutions into a modular ecosystem, providing Department of Defense (DoD) contractors with a compliance level roadmap to meet the 2026 CMMC mandates.
As the CMMC rollout enters its mandatory phase, i2ACT 4.0 has shifted its original focus from assessing requirements and control mapping to a more robust architecture which includes comprehensive Evidence Management, Documentation Control and Enhanced Reporting/Exporting of source linked documents. This capability allows contractors to build an audit-defensible "Book of Evidence" in a centralized, secure environment.
With a Modular Approach to Compliance, i2ACT 4.0 introduces three distinct editions of the software, each tailored to the specific regulatory requirements of the contractor.
- i2ACT FAR | FCI CMMC Level 1: Optimized for small-to-mid-sized businesses handling Federal Contract Information. This edition streamlines the 17 basic safeguarding practices from FAR 52.204-21, enabling annual self-assessments and senior official affirmations for just $495.
- i2ACT DFARS CMMC Level 2: Built for contractors handling Controlled Unclassified Information (CUI). This version includes a robust CMMC/NIST 800-171 Assessment capability which automates the mapping of all 110 NIST SP 800-171 controls to CMMC Level 2 and allows for any remediation task to be defined once and associated with multiple controls. Built-in Auditor Guides and a comprehensive Resource Library are included, and the tool features an integrated Artifacts of Evidence Process for managing artifacts with a starting price of just $2,295.
- i2ACT DFARS CMMC Level 3: Designed for organizations supporting high-priority programs. It incorporates the enhanced requirements of NIST SP 800-172, preparing contractors for government-led DIBCAC assessments and protection against Advanced Persistent Threats (APTs). Will be priced and available when the CMMC 3.0 standards are finalized.
"With i2ACT 4.0, we have removed the 'one-size-fits-all' barrier to compliance," said Michael Semmens, Co-founder and President at Imprimis. "By offering level-specific software, we ensure that a machine shop handling Level 1 data isn't overwhelmed by Level 3 requirements, while providing the most advanced firms with a granular, high-integrity evidence engine."
Key Innovations in i2ACT 4.0
- Integrated Articles of Evidence DB Process: Allows users to attach and tag digital evidence (logs, screenshots, policies and procedures, catalogs) directly to individual controls and objectives, ensuring total audit readiness.
- Real-Time SPRS Scoring: Automatically calculates and updates the Supplier Performance Risk System (SPRS) score as remediation tasks are completed.
NIST 800-171 Rev 3 Mapping to CMMC: Future-proofs compliance efforts with instant cross-walking between NIST Revision 2 and Revision 3 for CMMC Levels 1 and Level 2.
- Extensive Reporting Features: The tool provides a number of report tailoring options for specific needs including Conformity Statements, Assessor/Auditor Notes, Remediation Actions, Objective Compliance and Evidence/Artifacts at the control level.
- Remediation Action Association Feature: In i2ACT 4.0, a given remediation task can be defined once and associated with multiple controls. The software allows the user to create a custom list of Remediation Actions and Milestones (RAMs) which will be stored in a database using a specific numbering system. These custom RAMs will be accessible by the user at any point during the assessment process.
- Imprimis Customized Suggested Remediation Action Upgrade: i2 also offers a set of “Best Practice” RAMs (over 400) that have been developed over the course of the last 10 years of Assessment and Compliance engagements. The RAMs can be purchased with the i2ACT Tool or can be purchased as an UPGRADE at any time after the initial purchase of the tool.
Availability: i2ACT 4.0 is available starting June 15, 2026. New users can explore and purchase the software at https://www.imprimis-inc.com/tools/i2act-tool. Existing customers can upgrade by contacting an Imprimis sales representative for various update and upgrade options.
About Imprimis Inc. Imprimis Inc. provides the DIB with the tools, training, and expertise necessary to "Turn Technology into Capability." Their flagship i2ACT 4.0 Assessment Compliance Software is utilized by contractors nationwide to manage, maintain, and prove cybersecurity compliance in the most demanding regulatory environments. For More Information about Imprimis: https://www.imprimis-inc.com/home/history
#
Mike Schmidt
Business Development Director
Imprimis, Inc.
Colorado Springs, CO
Email: mike.schmidt@imprimis-inc.com
Phone: 719-463-0333 x 5