Remove blog what-is-cmmc-2
article thumbnail

Implementing 3.1.1 from NIST SP 800-171 Rev 2: Everything You Need to Know

Etactics

The following blog explores in detail the first security requirement 3.1.1 The proposed cybersecurity maturity model certification (CMMC) rule verifies SP 800-171. under CMMC 2.0. This practice applies to organizations seeking compliance within any level of CMMC. As of 12/22/23, CMMC 2.1 numbered this practice AC.1.001

article thumbnail

CMMC Data Flow Diagrams: An Ultimate Guide

Etactics

The Cybersecurity Maturity Model Certification (CMMC) program protects federal information from unauthorized disclosure. Level 2 adds additional safeguarding requirements for protecting Controlled Unclassified Information (CUI). This blog focuses on how organizations define those boundaries. What is an authorization boundary?

59
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

[ANSWERED] Who is Responsible for Protecting CUI?

Etactics

Table of Contents What is CUI? The Policies Importance of Compliance Training How does CUI relate to CMMC? Conclusion What is CUI? First, let’s go over what exactly controlled unclassified information (CUI) is. IBM reports that in quarter 4 of 2023, we saw the exposure of nearly 8 million records worldwide.

article thumbnail

CMMC Level 1 Continuous Monitoring: Everything You Need to Know

Etactics

This blog discusses strategies for monitoring the effectiveness of security requirements. AC-2 within NIST SP 800-53 states that authorization should occur before granting access. Documenting briefings establishes evidence for the following CMMC Level 1 objectives: AC.L1-b.1.i(a) i(a) identifying authorized users AC.L1-b.1.i(b)

article thumbnail

[ANSWERED] What is CMMC 2.0?

Etactics

If you work within the Defense Industrial Base (DIB), you’ve likely heard rumblings surrounding “CMMC”. What does that even mean? Well, let’s start by defining that CMMC stands for the Cybersecurity Maturity Model Certification. At that point, CMMC will begin showing up in contracts. Yet, the current CMMC version is 2.0.

article thumbnail

CMMC-AB May Town Hall: Key Takeaways

Etactics

May’s CMMC-AB Town Hall marked the end of an era. There will be no more CMMC-AB Town Halls discussing what the accreditation body is doing to prepare the ecosystem of consultants, educators and assessors for the upcoming final CMMC rule. 5 New CMMC 3rd Party Assessor Organizations received accreditation.

article thumbnail

The Ultimate CMMC Scoping Guide: A Matrix for Every Level

Etactics

Scoping is often overlooked when preparing for a cybersecurity maturity model certification (CMMC). The purpose of this blog is to provide a resource that documents how to tailor the 320 objectives within NIST SP 800-171A to the CMMC scope. Image Source: CMMC Self-Assessment Scope Level 2. Table of Contents.