From the course: Cybersecurity Maturity Model Certification (CMMC 2.0)

Course overview

- Prepping for CMMC now. CMMC is the Cybersecurity Maturity Model Certification. This certification is being enacted by the DOD Department of Defense in 2020. My name is Bob Ashcraft, and I have over 30 years experience within the cyber IT and IT audit field. With cybersecurity, I have been a leader in helping companies overcome, analyze, and predict the risk associated to their business model. I have worked with NIST on CRP which is the Community Resilience Panel where we went all through the US and created the famous NIST SP 800 series 1190, which was a six-step program to make cities resilient. And also currently they have an OSCAL project, and that's machine language for cybersecurity where they are mapping together multiple cybersecurity frameworks from ISO, the NIST 853, and also the ISACA COBIT cybersecurity framework. I've done all various type of IT risk consulting for various firms going from banking, government, financial, casino, believe it or not, and automotive, and the university education arena. So why are we having the course? Because it's being enacted 2020, and it is time now for firms and also vendors who work with the contractors who deal with the Department of Defense to be able to prepare for CMMC now. It is not a project that they will go into that is a one day or even one week. It will take months even up to a year for some firms to be able to be ready for that certification process. The course objectives that we'll be going over today will be what does the DOD Department of Defense expect of not only just the contractors, but of the vendors working with the contractors? We'll help you understand about the CMMC framework, and the current version out as of today is O.7. Then we'll go over where is CMMC now today? What's the impact on the firms, and where will the futures take the contractors with this certification process? And then finally, we'll actually look at the NIST SP800-171, in which the Department of Defense used to help them map out and create all the various controls for the certification process.

Contents