CMMC

abcdefghijklmnopqrstuvwxyz
c
  • CMMC (Cybersecurity Maturity Model Certification) -

    A unified cybersecurity standard developed by the U.S. Department of Defense (DoD) to ensure that defense contractors and subcontractors adequately protect sensitive unclassified information. CMMC includes multiple compliance levels, each with specific security controls.

  • CMMC Audit Preparation -

    The process of getting ready for a CMMC assessment by reviewing current cybersecurity practices, implementing required controls, conducting gap analyses, and collecting documentation. Preparation often involves working with a CMMC consultant or advisor.

  • CMMC Compliance Level 1 -

    The CMMC foundational level, focused on basic cyber hygiene. CMMC Level 1 requires organizations to implement 15 security requirements in FAR clause 52.204-21.17, such as controlling physical access and using antivirus software. It is intended for contractors that handle Federal Contract Information (FCI) but not Controlled Unclassified Information (CUI).

  • CMMC Compliance Level 2 -

    An intermediate level of CMMC designed for organizations that process, store, or transmit CUI. CMMC Level 2 includes 110 practices based on NIST SP 800-171. It requires either a self-assessment or a formal assessment by an Authorized CMMC Third-Party Assessor Organization (C3PAO) and demonstrates that an organization can safeguard CUI against advanced persistent threats (APTs).

  • CMMC Compliance Level 3 -

    An advanced CMMC level designed for organizations that handle CUI. CMMC Level 3 requires DoD contractors and subcontractors to undergo an assessment every three years by the Defense Contract Management Agency’s Defense Industrial Base Cybersecurity Assessment Center (DIBCAC) and provide an annual affirmation verifying compliance with the 24 identified requirements from NIST SP 800-172.

Get started

Get a quote today!

Fill out the form to schedule a free, 30-minute consultation with a senior-level compliance expert today!

ioc-checkAnalysis of your compliance needs
ioc-checkTimeline, cost, and pricing breakdown
ioc-checkA strategy to keep pace with evolving regulations

Great companies think alike.

Join hundreds of other companies that trust IS Partners for their compliance, attestation and security needs.

NEST_Report_Logoxeal logomcl logoaffinity logopaymedia-logo-1richmond-day-logo

Scroll to Top