Important: This content is for LTPs with an approved CCI/PI who want to teach the Certified CMMC Professional course.
No items found.

Risk Assessment (RA) Policy

Learn More
 99.00 

Supporting Documents: Risk Management Plan, Continuous Monitoring Plan, Vulnerability Scanning and Patch Management Procedures, Risk Assessment /Self-Assessment Procedures, Risk Acceptance Form

CMMC Required: Yes

CMMC Domains: RA, CA

Descriptions

The Risk Assessment (RA) Policy and supporting documents are key components of the CMMC Model. The documents in this collection focus on the identification, assessment, and management of cybersecurity risks. They assign responsibility and timelines for risk assessment activities such as requirements for threat intelligence monitoring, security and risk assessments, and ongoing monitoring of controls. They also contain requirements for performing vulnerability scans, timelines for response to vulnerable systems, legacy systems, and maintenance control. These documents aim to ensure that organizations systematically identify, evaluate, and manage cybersecurity risks to their operations, assets, individuals, and other organizations.