Government agencies seeking lowest bidders typically overlook cybersecurity when awarding contracts, expert says. The median security rating of defense contractors is lower than that of the median score in the financial sector. The most recent example of this was the June breach at the Office of Personnel Management. Nearly a third of all breaches at retail companies began with a third-party vendor, BitSight found. The Department of Defense has strict security rules for handling classified information, but also has a new requirement to improve security on sensitive but unclassified information.”]