Introduction
Guiding Principles
Practices
Implementation
Terms
100

What represents the performance standards by the which the roles of the CMMC ecosystem will be held accountable, and the procedures for addressing the violations of those performance standards?

The Code of Professional Conduct (COPC)

100

Professionalism, information integrity, confidentiality, proper use of methods, and objectivity

What are guiding principles

100

Who is expected to conform to the COPC practices in all activities that relate to carrying out their roles?

All credentialed or registered persons, entities, and industry working groups

100

What is expected when observing colleagues making choices that are in the violation of the COPC?

Help rectify or reporting of violations

100

What refers to any organization that is a CMMC-AB C3PAO, Licensed Partner Publisher, or Licenses Training Provider?

Entity

200

The CMMC ecosystem model itself is created and managed by who?

The DoD

200

What is avoiding the appearance of, or actual, conflict of interest where possible, and full compliance with the Conflict of Interest policies called?

Objectivity

200

What has 12 associated practices and focuses on refraining from dishonesty and fulfilling commitments?

Professionalism

200

Investigation and resolution of potential violations fall under this practice.

Implementation
200

What refers to an individual who is a Provisional Assessor, Certified Assessor, Certified Instructor, Certified Master Instructor, or Certified Quality Auditor?

Credentialed

300

Why did the DoD create the CMMC?

To enhance the protection of CUI

300
Treating information with the utmost care and under no circumstances revealing protected information learned during the delivery of CMMC services.

Confidentiality

300

What is exercising care of sharing information outside the workplace?

Confidentiality

300

What are considered corrective actions?

Warnings, remediation, suspension, or denial or termination of CMMC Credentials, Registration or Accreditation

300

What refers to any person or organization that has taken appropriate training and is registered on the CMCC-AB Registration Directory?

Registered

400

What is the CMMC framework?

A framework that organizes processes and cybersecurity best practices into a set of domains

400

Demonstrating integrity in the use of materials and methods as they are described by the CMMC AB in policies, methodologies, and training materials.

Proper use of methods

400

Working deliverables belong to this section of the COPC.

Adherence to materials and methods

400

How many days does someone have to appeal corrective actions?

Within 30 days of termination notice

400

What means to actively seek business or work from a customer, either by initiating the services, advertising the services, or encouraging a discussion about one's service?

Solicit Business

500

What are considered Entities under CMMC.?

Certified Third Party Assessment Organizations, CMMC-AB Registered Practitioners, and CMMC-AB Registered Provider Organizations

500

Report results from the delivery of CMMC services required by your license or certification agreement.

Information integrity

500

Ensuring accurate and authenticity of information.

Information integrity

500

Who is authorized is to take corrective actions without the involvement of accreditation body?

Working group chairs

500

What means either party may end an agreement at any time, with or without cause, with written notice to the other party 30 calendar days prior?

Termination

M
e
n
u