A CMMC Level 2 self-assessment is not just a checklist.

Your organization must define the right scope, evaluate every applicable assessment objective, collect sufficient evidence, calculate an accurate score, and support executive affirmation. This workshop gives your team a repeatable, assessor-informed method for doing it correctly.

WHAT YOU WILL LEARN

  • Define the Level 2 assessment boundary and trace CUI across systems, users, facilities, and providers.

  • Categorize CUI assets, security protection assets, contractor risk managed assets, specialized assets, and out-of-scope assets.

  • Build an assessment plan for all 110 Level 2 requirements and their applicable assessment objectives.

  • Select and perform appropriate examine, interview, and test activities.

  • Determine whether evidence is relevant, current, complete, and sufficient.

  • Record MET and NOT MET findings, calculate the score, and evaluate POA&M eligibility.

  • Prepare results for SPRS submission, affirmation, and continuing compliance.

THE OUTCOME

Participants leave with a clear methodology, reusable templates, and a stronger ability to scope, assess, score, document, and defend a CMMC Level 2 self-assessment.