Pass the Cyber AB CMMC CMMC-CCP Questions and answers with CertsForce

Viewing page 2 out of 7 pages
Viewing questions 11-20 out of questions
Questions # 11:

Which statement BEST describes the key references a Lead Assessor should refer to and use the:

Options:

A.

DoD adequate security checklist for covered defense information.


B.

CMMC Model Overview as it provides assessment methods and objects.


C.

safeguarding requirements from FAR Clause 52.204-21 for a Level 2 Assessment.


D.

published CMMC Assessment Guide practice descriptions for the desired certification level.


Expert Solution
Questions # 12:

A CMMC Assessment is being conducted at an OSC's HQ. which is a shared workspace in a multi-tenant building. The OSC is renting four offices on the first floor that can be locked individually. The first-floor conference room is shared with other tenants but has been reserved to conduct the assessment. The conference room has a desk with a drawer that does not lock. At the end of the day, an evidence file that had been sent by email is reviewed. What is the BEST way to handle this file?

Options:

A.

Review it. print it, and put it in the desk drawer.


B.

Review it, and make notes on the computer provided by the client.


C.

Review it, print it, make notes, and then shred it in cross-cut shredder in the print room.


D.

Review it. print it, and leave it in a folder on the table together with the other documents.


Expert Solution
Questions # 13:

Which document is the BEST source for determining the sources of evidence for a given practice?

Options:

A.

NISTSP 800-53


B.

NISTSP 800-53A


C.

CMMC Assessment Scope


D.

CMMC Assessment Guide


Expert Solution
Questions # 14:

Two assessors cannot agree if a certain practice should be rated as MET or NOT MET. Who should they consult to determine the final interpretation?

Options:

A.

C3PAO


B.

CMMC-AB


C.

Lead Assessor


D.

Quality Assurance Assessor


Expert Solution
Questions # 15:

During the planning phase of a CMMC Level 2 Assessment, the Lead Assessor is considering what would constitute the right evidence for each practice. What is the Assessor attempting to verify?

Options:

A.

Adequacy


B.

Sufficiency


C.

Process mapping


D.

Assessment scope


Expert Solution
Questions # 16:

There are 15 practices that are NOT MET for an OSC's Level 2 Assessment. All practices are applicable to the OSC. Which determination should be reached?

Options:

A.

The OSC may have 90 days for remediating NOT MET practices.


B.

The OSC is not eligible for an option to remediate NOT MET practices.


C.

The OSC may be eligible for an option to remediate NOT MET practices.


D.

The OSC is not eligible for an option to remediate after the assessment is canceled.


Expert Solution
Questions # 17:

What is the MOST common purpose of assessment procedures?

Options:

A.

Obtain evidence.


B.

Define level of effort.


C.

Determine information flow.


D.

Determine value of hardware and software.


Expert Solution
Questions # 18:

Which domains are a part of a Level 1 Self-Assessment?

Options:

A.

Access Control (AC), Risk Management


B.

Risk Management (RM). Access Control (AC), and Physical Protection (PE)


C.

Access Control (AC), Physical Protection (PE), and Identification and Authentication (IA)


D.

Risk Management (RM). Media Protection (MP), and Identification and Authentication (IA)


Expert Solution
Questions # 19:

The Assessment Team has completed Phase 2 of the Assessment Process. In conducting Phase 3 of the Assessment Process, the Assessment Team is reviewing evidence to address Limited Practice Deficiency Corrections. How should the team score practices in which the evidence shows the deficiencies have been corrected?

Options:

A.

MET


B.

POA&M


C.

NOT MET


D.

NOT APPLICABLE


Expert Solution
Questions # 20:

Which words summarize categories of data disposal described in the NIST SP 800-88 Revision 1. Guidelines for Media Sanitation?

Options:

A.

Clear, purge, destroy


B.

Clear redact, destroy


C.

Clear, overwrite, purge


D.

Clear, overwrite, destroy


Expert Solution
Viewing page 2 out of 7 pages
Viewing questions 11-20 out of questions