Peak InfoSec, an Authorized Cybersecurity Maturity Model Certification (CMMC) Third-Party Assessment Organization (C3PAO), conducts Pre-Assessments and formal Certification Assessments
Identify compnents that process, store, or tranmit FCI and are subject to 48 CFR § 52.204-21 – Basic Safeguarding of Covered Contractor Information Systems.
Issue a Letter of Attestation validating your organization has implemented all 15 security controls for your FCI components.
Identify compnents that process, store, or tranmit or protect CUI and are subject NIST SP 800-171 and CMMC requirements.
Issue a Letter of Attestation validating your organization has implemented the NIST SP 800-171 security requirements to protect CUI.
Conduct a Mock (a.k.a., Pre-Assesment) that goes through all 110 security requirements to validate your organization is ready to proceed with the formal & reported CMMC Level 2 Certification Assessment.
Conduct the once every three years formal CMMC Level 2 Certification Assessment event, which is then submitted to Supplier Performance Risk System (SPRS).
Conduct and annual review of your organization's conformity, account for significant changes, and re-issue your Certificate of Status with new 3-year window.
Identify compnents that process, store, or tranmit or protect CUI and are subject NIST SP 800-171 and CMMC requirements.
Issue a Letter of Attestation validating your organization has implemented the additional 24 NIST SP 800-172 security requirements to protect CUI.
The Mock Assesment goes through all 24 Level 3 security requirements to validate your organization is ready to proceed with the formal CMMC Level 3 Certification Assessment conducted by the Defense Industrial Base Cybersecurity Assurance Center (DIBCAC).
Conduct an annual review of your organization's conformity for NIST SP 800-172 requirements, account for significant changes, and re-issue your Letter of Attestation
Thank you for your interest in Peak InfoSec’s services. We look forward to helping you with your training and staffing needs! Please use the form below to contact us.
Navigating compliance can feel complex, which is why we’ve gathered essential resources to support you at every step. Explore guides, official references, and preparation tools to make understanding CMMC requirements straightforward and manageable.