NIST SP 800-171 Revision 2 & CMMC Related Templates
The following templates are provided free, pro bono, no guarantees, and with no support to the Defense Industrial Base (DIB) to support their NIST SP 800-171 implementation, documentation, and preparation activities for a Cybersecurity Maturity Model Certification (CMMC) Conformity Assessment event.
Policies
Plans
System Security Plan (SSP)
When using the NIST SP 800-171 based free SSP templates below, we really recommend you watch the related As the CMMC Churns videos:
- As the CMMC Churns | Your SSP Sucks, Seriously.: This Churns video explains how you use our SSP templates
- As the CMMC Churns | The Three Types of Evidentiary Objects: This Churns video looks at the three main types of Examination Assess Objects enumerated in NIST SP 800-171A. This video also expounds on part of how to write an effective SSP.
- As the CMMC Churns | Assessors and Toddlers: This explains the Document Traceability Matrix
- As the CMMC Churns | Documenting Your Scope: How to create a scope diagram for your SSP
Procedures
Forms
Supporting Artifacts
Other Artifacts
Key CMMC Organizations
Key Regulations
Key References
Key Acquisition References
Other Key Sites
An Authorized CMMC 3rd Party Assessment Organization (C3PAO)
Social Contact