CMMC Resources
Cybersecurity Maturity Model Certification (CMMC) is a cybersecurity standard designed to protect Controlled Unclassified Information (CUI) across the defense industrial base. CMMC outlines a tiered approach to cybersecurity, requiring contractors to demonstrate practices and processes appropriate to the level of information they handle. This resource page is designed to help you understand the CMMC framework, answer frequently asked questions, and to give your organization access to CMMC tools and guidance.


CMMC Webinars
ATI, in partnership with Cuick Trac by Beryllium InfoSec, hosted two sets of webinar series’ to provide our audience with information regarding the implementation of the Cybersecurity Maturity Model Certification (CMMC) Program.
Recent Webinars
As the 48 CFR rule approached, the DoW prepared to formally integrate CMMC into defense contracts. This webinar explored the current state of CMMC readiness, what organizations could expect as 48 CFR moved toward enforcement, lessons learned from recent Level 2 assessments, and how OSCs could prepare for compliance regardless of their current stage.
Discover how GSA Cybersecurity requirements compart to CMMC expectations. The webinar showcases what contractors should understand about handling CUI when working through GSA contract vehicles.
View Webinar →
Previous Webinars
Protecting CUI starts with scoping. Since not all information is on the same level of sensitivity as CUI, CDI, and CTI, you’ll need to define a scoping boundary around the technology, people, and places that will process, store, or transmit sensitive data.
Paul Netopski, Director of Compliance Advisory for Cuick Trac, and Derek White, Co-founder & Chief Product Officer of Cuick Trac, examine the steps to scoping and why the order of process matters. They also discuss how to determine your infrastructure needs-on-prem, GovCloud or enclave-and how to build this into a continuous compliance program.
Since not all data is CUI-related or in scope, data segmentation is a critical step to enclaving. But not all enclaves are created equal.
Join Jeff Baldwin, D.Sc., Beryllium InfoSec’s Chief Information Security Officer (CISO), and Heather Engel, Managing Partner at Strategic Cyber Partners, to learn the steps to segmentation, plus the pros and cons of enclaving, and which type of enclave takes the burden of configuration, systems administration, data management, audit and reporting, and more out of your team’s hands.
CMMC Resources
“The CMMC Program helps ensure that DoD contractors and subcontractors comply with DoD requirements to safeguard FCI and CUI.”
– Chief Information Officer, Department of Defense





