Certified Professional CMMC Training (CCP)

Course 2072

  • Duration: 4 days
  • Language: English
  • Level: Foundation

ATP DesignationThe CMMC Certified Professional™ (CCP™) is the foundational certification for anyone seeking to work within the implementation and assessment ecosystem of the US Department of War’s (DoW) Cybersecurity Maturity Model Certification (CMMC) program. It validates that you are ready to help organizations achieve assessment-ready cybersecurity programs or participate in a CMMC Assessment Team during official CMMC assessments. Plus, CCP is the required first step toward becoming a CCA, providing a clear advancement pathway into assessment and higher-level consulting roles.

CMMC Certification Training Delivery Methods

  • In-Person

  • Online

CMMC Certification Training Course Information

Important Information

In this CMMC Certification Training Course, you will learn how to:

  • Identify the threats to the defense supply chain and the established regulations and standards for managing the risk.
  • Identify the sensitive information that needs to be protected within the defense supply chain and how to manage it.
  • Describe how the CMMC Model ensures compliance with federal acquisition regulations.
  • Identify the responsibilities of the CMMC Certified  Professional, including appropriate ethical behavior.
  • Establish the Certification and Assessment scope boundaries for evaluating the systems that protect regulated information.
  • Prepare the OSC (Organizations Seeking Certification) for an Assessment by evaluating readiness.
  • Use the CMMC Assessment Guides to determine and assess the Evidence for practices.
  • Implement and evaluate practices required to meet CMMC Level 1.
  • Identify the practices required to meet CMMC Level 2.

Who Should Attend:

  • Dow Suppliers Preparing For CMMC Compliance
  • It/Security Managers at DIB Companies
  • Grc/Compliance Leads Driving Cmmc Programs
  • Aspiring CMMC Assessors
  • Early‑Career Professionals Entering DIB Cyber Compliance

CMMC Certification Training Prerequisites

To ensure success on this course, you should have some foundational education or experience in cybersecurity. Therefore, ISACA and Cyber AB have established prerequisites for those who wish to apply for CCP certification, such as: 

  • Favorable background checks. Additional citizenship and clearance credentials are also required to perform higher-level duties, such as participating as an ML-2 (Maturity Level 2) assessment team member. 
  • Have college degree in a cyber or information technical field, or 2+ years of related education experience, or 2+ years of related experience (including military) in a cyber, information technology, or assessment field.

CMMC Certification Training Outline

Topic A:Identify Threats to the Defense Supply Chain 

Topic B:Identify Regulatory Responses against Threats 

Topic A: Identify Sensitive Information

Topic B: Manage Sensitive Information

Topic A: Describe the CMMC Model Architecture

Topic B: Define the CMMC Program and Its Ecosystem

Topic C: Define Self-Assessments

Topic A: Identify Responsibilities of the CCP

Topic B: Demonstrate Appropriate Ethics and Behavior

Topic A: Use the CMMC Assessment Scope Documentation

Topic B: Get Oriented to the OSC Environment

Topic C: Determine How Sensitive Information Moves

Topic D: Identify Systems in Scope

Topic E: Limit Scope

Topic A: Foster a Mature Cybersecurity Culture

Topic B: Evaluate Readiness

Topic A: Determine Evidence

Topic B: Assess the Practices Using the CMMC Assessment Guides

Topic A: Identify CMMC Level 1 Domains and Practices

Topic B: Perform a CMMC Level 1 Gap Analysis

Topic C: Assess CMMC Level 1 Practices

Topic A: Identify CMMC Level 2 Practices 

Topic A: Identify Assessment Roles and Responsibilities

Topic B: Plan and Prepare the Assessment

Topic C: Conduct the Assessment

Topic D: Report on the Assessment Results

Topic E: Conduct the CMMC POA&M (Plan of Action and Milestones) Close-Out Assessment

Appendix A: Evidence Collection Approach for CMMC Level 1 Practices

Appendix B: Additional Documentation for CCPs (Certified CMMC Professionals)

Appendix C: Mapping Course Content to the CCP Exam

Need Help Finding The Right Training Solution?

Our training advisors are here for you.

CMMC Certification Training FAQs

This course is a prerequisite for the Certified CMMC Professional program and prepares students for the Certified CMMC Professional (CCP) certification exam. In addition, students might take this course to learn how to perform CMMC certification readiness checks within their organization or as a consultant to other OSCs (Organizations Seeking Certification).

The CCP certification is also a required step toward becoming a Certified CMMC Assessor (CCA), so students might take this course to begin down the path toward CCA certification.

Unlike broad cybersecurity certifications, the CCP is specifically focused on the CMMC ecosystem and assessment process. It emphasizes understanding how to interpret and evaluate requirements, rather than just implementing controls, making it highly relevant for those supporting compliance within the defense supply chain.

This training equips teams with a shared understanding of CMMC terminology, scoping, and assessment expectations, which is critical for successful readiness efforts. It helps organizations better prepare for audits aligned with NIST SP 800-171 and reduces the risk of delays or failed assessments.

For more information on the CMMC certification, go here

https://www.isaca.org/credentialing/ccp

For current instructions on exam registration, please refer to https://www.isaca.org/credentialing/ccp/ccp-exam-content-outline

The CCP certification prepares you for roles such as CMMC assessor support, compliance analyst, security consultant, or internal readiness lead. It also serves as a steppingstone toward becoming a Certified CMMC Assessor (CCA) through Cyber AB.

Yes. The course includes scenario-based exercises and practical discussions that simulate real-world CMMC assessment situations. Participants will practice scoping environments, interpreting requirements, and identifying gaps, helping translate theory into actionable skills.

While not required, the following certifications are recommended, but one or more are required for the CCA Credential.

  • ISC2 certifications:
    • CISSP (Certified Information Systems Security Professional) (most common / preferred)
    • SSCP
  • ISACA certifications:
    • CISM
    • CISA
  • CompTIA certifications:
    • Security+ (often accepted for lower tiers, but less common for Lead roles)
    • CySA+ (more aligned to assessment work)

CISSP or CISM are the most typical for Lead CCA-level professionals.