Cyber AB CMMC CCP Certified CMMC Professional (CCP) Exam Online Training
Cyber AB CMMC CCP Online Training
The questions for CMMC CCP were last updated at Mar 10,2025.
- Exam Code: CMMC CCP
- Exam Name: Certified CMMC Professional (CCP) Exam
- Certification Provider: Cyber AB
- Latest update: Mar 10,2025
As part of CMMC 2.0, the change to Level 1 Self-Assessments supports "reduced assessment costs" allows all companies at Level 1 (Foundational) to:
- A . to conduct self-assessments.
- B . opt out of CMMC Assessments.
- C . have assessment costs reimbursed by the DoD.
- D . pay no more than $500.00 for their annual assessment.
An assessor is collecting affirmations. So far, the assessor has collected interviews, demonstrations, emails, messaging, and presentations.
Are these appropriate approaches to collecting affirmations?
- A . No,emails are not appropriate affirmations.
- B . No, messaging is not an appropriate affirmation.
- C . Yes,the affirmations collected by the assessor are all appropriate.
- D . Yes,the affirmations collected by the assessor are all appropriate, as are screenshots.
There are 15 practices that are NOT MET for an OSC’s Level 2 Assessment. All practices are applicable to the OSC.
Which determination should be reached?
- A . The OSC may have 90 days for remediating NOT MET practices.
- B . The OSC is not eligible for an option to remediate NOT MET practices.
- C . The OSC may be eligible for an option to remediate NOT MET practices.
- D . The OSC is not eligible for an option to remediate after the assessment is canceled.
Who will verify the adequacy and sufficiency of evidence to determine whether the practices and related components for each in-scope Host Unit. Supporting Organization/Unit, or enclave has been met?
- A . OSC
- B . Assessment Team
- C . Authorizing official
- D . Assessment official
A CMMC Assessment is being conducted at an OSC’s HQ. which is a shared workspace in a multi-tenant building. The OSC is renting four offices on the first floor that can be locked individually. The first-floor conference room is shared with other tenants but has been reserved to conduct the assessment. The conference room has a desk with a drawer that does not lock. At the end of the day, an evidence file that had been sent by email is reviewed.
What is the BEST way to handle this file?
- A . Review it. print it, and put it in the desk drawer.
- B . Review it, and make notes on the computer provided by the client.
- C . Review it, print it, make notes, and then shred it in cross-cut shredder in the print room.
- D . Review it. print it, and leave it in a folder on the table together with the other documents.
Which phase of the CMMC Assessment Process includes developing the assessment plan?
- A . Phase 1
- B . Phase 2
- C . Phase 3
- D . Phase 4
What type of information is NOT intended for public release and is provided by or generated for the government under a contract to develop or deliver a product or service to the government, but not including information provided by the government to the public (such as on public websites) or simple transactional information, such as necessary to process payments?
- A . CDI
- B . CTI
- C . CUI
- D . FCI
A C3PAO has completed a Limited Practice Deficiency Correction Evaluation following an assessment of an OSC. The Lead Assessor has recommended moving deficiencies to a POA&M. but the OSC will remain on an Interim Certification.
What is the MINIMUM number of practices that must be scored as MET to initiate this course of action?
- A . 80 practices
- B . 88 practices
- C . 100 practices
- D . 110 practices
Who is responsible for identifying and verifying Assessment Team Member qualifications?
- A . C3PAO
- B . CMMC-AB
- C . Lead Assessor
- D . CMMC Marketplace
A CCP is working as an Assessment Team Member on a CMMC Level 2 Assessment. The Lead Assessor has assigned the CCP to assess the OSC’s Configuration Management (CM) domain. The CCP’s first interview is with a subject-matter expert for user-installed software.
With respect to user-installed software, what facet should the CCP’s interview focus on?
- A . Controlled and monitored
- B . Removed from the system
- C . Scanned for malicious code
- D . Limited to mission-essential use only