When educating people on a complex, multi-dimensional topic, the best place to start is with its key, foundational information. That’s exactly what Celerium’s Certified CMMC Professional Course (CCP) does – it conveys the fundamental knowledge needed to train professionals supporting the implementation of CMMC.
Access Control (AC)
Audit & Accountability (AU)
Awareness & Training (AT)
Configuration Management (CM)
Identification & Authentication (IA)
Incident Response (IR)
Maintenance (MA)
Media Protection (MP)
Personnel Security (PS)
Physical Protection (PE)
Risk Assessment (RA)
Security Assessment (CA)
Systems & Communications Protection (SC)
System & Information Integrity (SI)
Sponsored by Celerium
Sponsored by Celerium
These online-only courses provide CMMC training to companies looking to comply with CMMC. The courses are created by an experienced team of cybersecurity implementers with years of experience on NIST standards.
Implementing CMMC will be different for every company. And with the U.S. government doubling down on cybersecurity, it's important to get it right. So where is the best place to start?
Our CMMC Insights courses were created to help companies looking to comply with CMMC understand how to implement the practices. Our team has years of experience implementing NIST 800-53.
One-year access to the learning portal is provided, and we will provide updates on changes to CMMC as clarity is provided on items such as reciprocity. Don't wait -- get started on your CMMC assessment preparation now.
DOMAIN: Personnel Security |
Practice:PS.L2-3.9.1
|
CAPABILITY: C026 Screen personnel
|
Screen individuals prior to authorizing access to organizational systems containing CUI. |
Assessment NOTES: A CMMC assessor may want to review, observe, or test the following
Organizational policy or directives to determine the conditions and frequencies to screen and rescreen personnel that access company systems and information that is processed, stored or transmitted by the system.
Click here to see details (additional assessment notes available)
Practice:PS.L2-3.9.2
|
CAPABILITY: C027 Protect CUI during personnel actions
|
Ensure that organizational systems containing CUI are protected during and after personnel actions such as terminations and transfers. |
Assessment NOTES: A CMMC assessor may want to review, observe, or test the following
· Personnel policy and procedures that address employee termination and transfer to determine the timeframe requirement to terminate access once notified.
· Process to determine methods used to communicate termination and transfer date/time to system owners, account administrators or e.g., facility security officer to disable logical and physical access to systems or building/office.
· Process used to confirm accounts have been disabled and physical access removed.
· Evidence that the organization disables system access within required timeframe.
Click here to see details (additional assessment notes available)
Copyright © 2022 Celerium. All Rights Reserved.