When educating people on a complex, multi-dimensional topic, the best place to start is with its key, foundational information. That’s exactly what Celerium’s Certified CMMC Professional Course (CCP) does – it conveys the fundamental knowledge needed to train professionals supporting the implementation of CMMC.
Access Control (AC)
Audit & Accountability (AU)
Awareness & Training (AT)
Configuration Management (CM)
Identification & Authentication (IA)
Incident Response (IR)
Maintenance (MA)
Media Protection (MP)
Personnel Security (PS)
Physical Protection (PE)
Risk Assessment (RA)
Security Assessment (CA)
Systems & Communications Protection (SC)
System & Information Integrity (SI)
Sponsored by Celerium
Sponsored by Celerium
These online-only courses provide CMMC training to companies looking to comply with CMMC. The courses are created by an experienced team of cybersecurity implementers with years of experience on NIST standards.
Implementing CMMC will be different for every company. And with the U.S. government doubling down on cybersecurity, it's important to get it right. So where is the best place to start?
Our CMMC Insights courses were created to help companies looking to comply with CMMC understand how to implement the practices. Our team has years of experience implementing NIST 800-53.
One-year access to the learning portal is provided, and we will provide updates on changes to CMMC as clarity is provided on items such as reciprocity. Don't wait -- get started on your CMMC assessment preparation now.
DOMAIN: Incident Response |
Practice:IR.L2-3.6.1
|
CAPABILITY: C016 Plan incident response
|
Establish an operational incident-handling capability for organizational systems that includes preparation, detection, analysis, containment, recovery, and user response activities. |
Assessment NOTES: A CMMC assessor may want to review, observe, or test the following
· Organizational policy and Incident Response Plan on handling of incidents involving Federal Contract Information to determine if plan addresses preparation, detection and analysis, containment, eradication, and recovery.
· Processes for incident response activities.
Ensure that adequate procedures/processes guide the implementation of each area covered in the Incident Response Plan.
Click here to see details (additional assessment notes available)
Practice:IR.L2-3.6.2
|
CAPABILITY: C018 Develop and implement a response to a declared incident
|
Track, document, and report incidents to designated officials and/or authorities both internal and external to the organization. |
Assessment NOTES: A CMMC assessor may want to review, observe, or test the following
· Company policy for incident response and reporting that includes the documentation, tracking, and reporting of incidents involving CUI or non-public Federal Contract Information.
· Incident reporting records and documentation, incident response plans, and procedures addressing incident reporting to ensure that specific actions are identified for any incident involving CUI or non-public Federal Contract Information.
Click here to see details (additional assessment notes available)Copyright © 2022 Celerium. All Rights Reserved.