When educating people on a complex, multi-dimensional topic, the best place to start is with its key, foundational information. That’s exactly what Celerium’s Certified CMMC Professional Course (CCP) does – it conveys the fundamental knowledge needed to train professionals supporting the implementation of CMMC.
Access Control (AC)
Audit & Accountability (AU)
Awareness & Training (AT)
Configuration Management (CM)
Identification & Authentication (IA)
Incident Response (IR)
Maintenance (MA)
Media Protection (MP)
Personnel Security (PS)
Physical Protection (PE)
Risk Assessment (RA)
Security Assessment (CA)
Systems & Communications Protection (SC)
System & Information Integrity (SI)
Sponsored by Celerium
Sponsored by Celerium
These online-only courses provide CMMC training to companies looking to comply with CMMC. The courses are created by an experienced team of cybersecurity implementers with years of experience on NIST standards.
Implementing CMMC will be different for every company. And with the U.S. government doubling down on cybersecurity, it's important to get it right. So where is the best place to start?
Our CMMC Insights courses were created to help companies looking to comply with CMMC understand how to implement the practices. Our team has years of experience implementing NIST 800-53.
One-year access to the learning portal is provided, and we will provide updates on changes to CMMC as clarity is provided on items such as reciprocity. Don't wait -- get started on your CMMC assessment preparation now.
DOMAIN: Media Protection |
Practice:MP.L1-3.8.3
|
CAPABILITY: C024 Sanitize Media
|
Sanitize or destroy information system media containing Federal Contract Information before disposal or release for reuse. |
Threat Actors:
i) Hard drives/memory in computers, scanners, copiers
ii) CD/DVD, thumb drives
iii) Paper files/reports
Assessment NOTES: A CMMC assessor may want to review, observe, or test the following· Processes or procedures to identify Federal Contract Information or Controlled Unclassified Information (CUI).
· An inventory of process/or tools used to sanitize media before it is released for reuse or destroyed for disposal.
· Documentation that shows who approved and who sanitized the media or a signed form that verifies the media was destroyed securely.
Click here to see details (additional assessment notes available)
Practice:MP.L2-3.8.1
|
CAPABILITY: C023 Protect and control media
|
Protect (i.e., physically control and securely store) system media containing CUI, both paper and digital. |
Assessment NOTES: A CMMC assessor may want to review, observe, or test the following
· Procedures that identify how information system media is protected i.e. physically controlled or securely controlled.
· Organizational policy and processes that address access controls and media access restrictions.
· Inventories, media check-in check-out log.
Click here to see detailsCopyright © 2022 Celerium. All Rights Reserved.