Your CMMC posture
Not sure on a question? Choose "Not sure" - we will treat it as an area to assess, no problem.
Do you have a documented System Security Plan (SSP)?
Yes In progress No Not sure
Have you identified where CUI lives in your environment (CUI scoping)?
Yes In progress No Not sure
Is access to CUI restricted to authorized users, with multi-factor authentication?
Yes In progress No Not sure
Do you encrypt CUI at rest and in transit?
Yes In progress No Not sure
Do you maintain a POA&M tracking your open gaps?
Yes In progress No Not sure
Do you log and monitor security events?
Yes In progress No Not sure
Do you have an incident response plan and DFARS 72-hour reporting readiness?
Yes In progress No Not sure
Have you completed a NIST SP 800-171 self-assessment and submitted an SPRS score?
Yes In progress No Not sure
Is security-awareness training in place for your team?
Yes In progress No Not sure
Does your CUI live in a CMMC-capable environment (for example, a GCC High enclave)?
Yes In progress No Not sure
This is a quick estimate, not an official SPRS score or a guarantee of certification. We use your details to follow up about your CMMC needs.