CMMC-CCP Exam Question 36

While conducting a CMMC Level 2 Assessment, the Lead Assessor determines that the OSC has badge readers, pin code pads, and keys for various access points as well as documentation to demonstrate meeting the practice. Which CMMC practice has the OSC MET?
  • CMMC-CCP Exam Question 37

    While conducting a CMMC Assessment, a Lead Assessor is given documentation attesting to Level 1 identification and authentication practices by the OSC. The Lead Assessor asks the CCP to review the documentation to determine if identification and authentication controls are met. Which documentation BEST satisfies the requirements of IA.L1-3.5.1: Identify system users. processes acting on behalf of users, and devices?
  • CMMC-CCP Exam Question 38

    Which document is used to protect sensitive and confidential information from being made available by the recipient of that information?
  • CMMC-CCP Exam Question 39

    Which entity requires that organizations handling FCI or CUI be assessed to determine a required Level of cybersecurity maturity?
  • CMMC-CCP Exam Question 40

    A member of the Assessment Team has been assigned the responsibility of maintaining and protecting information from the OSC. The Assessment Results Package, PCI, CUI, and any notes must be retained and protected from disclosure. To protect the OSC ' s information, which principle should be used, and for how long?