• Online, Instructor-Led
Course Description

The CMMC certification training (Cybersecurity Maturity Model Certification), managed by Cyber AB (Accreditation Body), is a program through which an organization's cybersecurity program maturity is measured by their initial and ongoing compliance with applicable cybersecurity practices, as well as their integration of corresponding policies and plans into their overall business operations. Once rulemaking has concluded, and CMMC 2.0 has been implemented, all organizations providing products or services to the United States DoD (Department of Defense) must comply with their applicable CMMC Level requirements.

This course prepares students for the Cyber AB CCP (Certified CMMC Professional) certification, which authorizes the holder to use the Cyber AB Certified CMMC Professional logo, participate as an Assessment Team Member under the supervision of a Lead Assessor, and be listed in the Cyber AB Marketplace. The CCP certification is also a prerequisite for the CCA (Certified CMMC Assessor) certification.

Learning Objectives

  • Identify the threats to the defense supply chain and the established regulations and standards for managing the risk.
  • Identify the sensitive information that needs to be protected within the defense supply chain and how to manage it.
  • Describe how the CMMC Model ensures compliance with federal acquisition regulations.
  • Identify the responsibilities of the Certified CMMC Professional, including appropriate ethical behavior.
  • Establish the Certification and Assessment scope boundaries for evaluating the systems that protect regulated information.
  • Prepare the OSC (Organizations Seeking Certification) for an Assessment by evaluating readiness.
  • Use the CMMC Assessment Guides to determine and assess the Evidence for practices.
  • Implement and evaluate practices required to meet CMMC Level 1.
  • Identify the practices required to meet CMMC Level 2.

Framework Connections

The materials within this course focus on the NICE Framework Task, Knowledge, and Skill statements identified within the indicated NICE Framework component(s):

Specialty Areas

  • Legal Advice and Advocacy
  • Risk Management

Specialty Areas have been removed from the NICE Framework. With the recent release of the new NICE Framework data, updates to courses are underway. Until this course can be updated, this historical information is provided to give better context as to how it can help you with your cybersecurity goals.

Feedback

If you would like to provide feedback on this course, please e-mail the NICCS team at NICCS@hq.dhs.gov. Please keep in mind that NICCS does not own this course or accept payment for course entry. If you have questions related to the details of this course, such as cost, prerequisites, how to register, etc., please contact the course training provider directly. You can find course training provider contact information by following the link that says “Visit course page for more information...” on this page.