CMMC planning
Connect requirements to your workflow.
Read how CUI, NIST, contracts, and CMMC relate, then prepare a brief using broad workflow and operating categories.
Resource library
Explore the CMMC requirements and manufacturing context, or use a short guide to prepare for an infrastructure conversation.
CMMC planning
Read how CUI, NIST, contracts, and CMMC relate, then prepare a brief using broad workflow and operating categories.
Architecture planning
Use six prompts to outline workloads, boundaries, resources, dependencies, control, and change.
Open the architecture guideThe collection
Planning guides, a SecureEnclave™ overview, project background, and official CMMC and NIST references.
Connect the history of CUI, NIST safeguards, defense contract duties, CMMC verification, and the current Revision 2 versus Revision 3 distinction.
Answer broad questions about your organization and CUI workflow, then review a planning brief you can use for a first conversation.
Use six prompts to outline your workloads, boundaries, resources, dependencies, responsibilities, and expected changes. Flag unknowns for the review.
See how the platform connects the deployed environment to ongoing change, technical evidence, and recovery.
Read about the MxD 23-11-03 development context on the SecureEnclave™ page, with links to the public project records. Those records do not establish endorsement or an assessment result.
Read the authoritative program overview, model structure, implementation phases, assessment cadence, and current rollout status.
Use the official guide to understand asset categories and the systems that may process, store, transmit, or provide security for CUI.
Review NIST's current publication for protecting the confidentiality of CUI in nonfederal systems and organizations.
Use NIST SP 1318 for small-business guidance on cybersecurity, risk, and protecting sensitive information.