Cyber AB CMMC-CCP - Certified CMMC Professional (CCP) Exam
Which statement BEST describes an assessor's evidence gathering activities?
An employee is the primary system administrator for an OSC. The employee will be a core part of the assessment, as they perform most of the duties in managing and maintaining the systems. What would the employee be BEST categorized as?
A cyber incident is discovered that affects a covered contractor IS and the CDI residing therein. How long does the contractor have to inform the DoD?
During the assessment process, who is the final interpretation authority for recommended findings?
When a conflict of interest is unavoidable, a CCP should NOT:
When planning an assessment, the Lead Assessor should work with the OSC to select personnel to be interviewed who could:
A CCP is working as an Assessment Team Member on a CMMC Level 2 Assessment. The Lead Assessor has assigned the CCP to assess the OSC's Configuration Management (CM) domain. The CCP's first interview is with a subject-matter expert for user-installed software. With respect to user-installed software, what facet should the CCP's interview focus on?
According to the Configuration Management (CM) domain, which principle is the basis for defining essential system capabilities?
Which government agency are DoD contractors required to report breaches of CUI to?
A program manager for a defense contractor saves all FCI data relevant to a contract on a flash drive. Why is the flash drive categorized as an FCI Asset ?
