Remove blog who-is-responsible-for-protecting-cui
article thumbnail

[ANSWERED] Who is Responsible for Protecting CUI?

Etactics

Controlled Unclassified Information (CUI) is a category of such important data. This clause specifically requires you to protect sensitive information. So that should close the book on who is responsible for protecting CUI, right? So who exactly holds the responsibility for protecting CUI?

article thumbnail

[ANSWERED] What is CMMC 2.0?

Etactics

This way, the DoD can ensure its contractors are protecting sensitive defense information. It doesn't matter if organizations handle Controlled Unclassified Information (CUI) or Federal Contract Information (FCI). What are the certifications levels and who needs to become certified? So, why have you heard of it? Anyway, CMMC 2.0

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

The Ultimate CMMC Scoping Guide: A Matrix for Every Level

Etactics

The purpose of this blog is to provide a resource that documents how to tailor the 320 objectives within NIST SP 800-171A to the CMMC scope. The Level 2 Scoping Guide applies to organizations handling controlled unclassified information (CUI). That statement is part of the reason why we made a checklist in the first place.

article thumbnail

How to Identify Authorized Recipients of Controlled Unclassified Information

Etactics

In the defense industrial base, Controlled Unclassified Information (CUI) flows up and down the supply chain. But who should or shouldn’t have access to CUI? To answer this, we must look at the laws and regulations that govern access to CUI. There are specific controls that protect unauthorized disclosure.

article thumbnail

Everything You Need to Know About CUI Designations

Etactics

As organizations prepare for CMMC, the first question they need to answer is what controlled unclassified information (CUI) they have. This will determine the scope of information systems that process, store, or transmit CUI. In an ideal world, the government marks all CUI when it flows to contractors. What isn’t CUI?

article thumbnail

What is CMMC Compliance: An Authorized C3PAO Perspective

Etactics

At the time of writing this blog, there are currently 29 CMMC 3rd Party Assessor Organizations (C3PAOs) listed in The Cyber AB Marketplace. 3.13.3 - Role Separation FedRAMP Approved Security Protection Assets RP vs CCP Training Importance of Having an External Assessment Conducting Readiness Reviews. Table of Contents. About Kompleye.

article thumbnail

CMMC-AB November 30 Town Hall: Key Takeaways and Unanswered Questions

Etactics

The CMMC-AB offered multiple options for those individuals who already put resources into Level 1, before the CMMC 2.0 The CMMC-AB offered multiple options for those individuals who already put resources into Level 1, before the CMMC 2.0 Concerns of CMMC 2.0 Benefits of CMMC 2.0 Doing so boosts the credit from $275 to $350.