Is your organization stuck in the CMMC Seven Stages of Grief?
Sadly, the malady is not sarcasm to get you to watch this video. Just as individuals grieve during a personal loss, organizations and their staff grieve also during culture changes.
CMMC is an incredible and frightening culture changer for many organizations. Because we specialize in Information Security Turnarounds at Peak InfoSec, helping organizations and individuals work through the CMMC Seven Stages of Grief is a part of our expertise.
This video will explain how these CMMC Stages affect your ability to come into compliance and where you can expect to experience them.
For the “CMMC Deniers” out there, please watch this video and we hope you realize you are in the Denial phase.
Key CMMC Organizations
- National Archives & Records Administration Controlled Unclassified Information (CUI) Homepage
- DoD CIO’s Cybersecurity Maturity Model Certification (CMMC) Home Page
- Cyber Accreditation Body (Cyber-AB)
- Defense Industrial Base Cybersecurity Assessment Center (DIBCAC) Contractor Resource Page
- Defense Industrial Base (DIB) Cybersecurity Portal
Key Regulations
Key Acquisition References
- 48 CFR § 52.204-21 – Basic Safeguarding of Covered Contractor Information Systems
- DFARS Clause 252.204-7008 Compliance with Safeguarding Covered Defense Information Controls.
- DFARS Clause 252.204-7012 Safeguarding Covered Defense Information and Cyber Incident Reporting.
- DFARS Clause 252.204-7019 Notice of NIST SP 800-171 DoD Assessment Requirements
- DFARS Clause 252.204-7020 NIST SP 800-171 DoD Assessment Requirements.
- DFARS Clause 252.204-7021 Compliance with the Cybersecurity Maturity Model Certification Level Requirements.