CMMC Training

The intent of the Defense Industrial Base (DIB) Sector Coordinating Council (SCC) Supply Chain Cyber training is to build awareness for DIB suppliers of the Cybersecurity Maturity Model Certification (CMMC) requirements and their obligation to meet FAR 52.204-21,...

CMMC Specific Practices

CMMC Specific Practices The majority of the practices (110 of 171) originate from the safeguarding requirements and security requirements specified in FAR Clause 52.204-21 and DFARS Clause 252.204-7012, respectively. Level 1 is equivalent to all of the safeguarding...

Risk Assessment (RA)

AC AT AU CM IA IR MA MP PS PE RA CA SC SI Risk Assessment (RA) All Level 1 Level 2 Level 3 RM.2.141 Periodically assess the risk to organizational operations (including mission, functions,RM.2.142 Scan for vulnerabilities in organizational systems and applications...

Configuration Management (CM)

AC AT AU CM IA IR MA MP PS PE RA CA SC SI Configuration Management (CM) All Level 1 Level 2 Level 3 CM.2.061 Establish and maintain baseline configurations and inventories of organizational systems CM.2.062 Employ the principle of least functionality by configuring...

Audit and Accountability (AU)

AC AT AU CM IA IR MA MP PS PE RA CA SC SI Audit & Accountability (AU) All Level 1 Level 2 Level 3 AU.2.041 Ensure that the actions of individual system users can be uniquely traced to those usersAU.2.042 Create and retain system audit logs and records to the...

System and Information Integrity (SI)

AC AT AU CM IA IR MA MP PS PE RA CA SC SI System & Information Integrity (SI) All Level 1 Level 2 Level 3 SI.1.210 Identify, report, and correct information and information system flaws in a timely manner.SI.1.211 Provide protection from malicious code at...