Cyber AB CMMC-CCP - Certified CMMC Professional (CCP) Exam
Companies that knowingly defraud the government by not being in compliance with cybersecurity regulations are at risk of being held liable for:
What is the primary intent of the verify evidence and record gaps activity?
In CMMC High-Level scoping, which definition BEST describes an HQ organization?
As part of CMMC 2.0, the change to Level 1 Self-Assessments supports " reduced assessment costs " allows all companies at Level 1 (Foundational) to:
What is the BEST document to find the objectives of the assessment of each practice?
Which phase of the CMMC Assessment Process includes developing the assessment plan?
When assessing SI.L1-3.14.2: Provide protection from malicious code at appropriate locations within organizational information systems, evidence shows that all of the OSC ' s workstations and servers have antivirus software installed for malicious code protection. A centralized console for the antivirus software management is in place and records show that all devices have received the most updated antivirus patterns. What is the BEST determination that the Lead Assessor should reach regarding the evidence?
A company has a government services division and a commercial services division. The government services division interacts exclusively with federal clients and regularly receives FCI. The commercial services division interacts exclusively with non-federal clients and processes only publicly available information. For this company ' s CMMC Level 1 Self-Assessment, how should the assets supporting the commercial services division be categorized?
Per DoDI 5200.48: Controlled Unclassified Information (CUI), CUI is marked by whom?
An organization that manufactures night vision cameras is looking for help to address the gaps identified in physical access control systems. Which certified individual should they approach for implementation support?
