Summer Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70track

Free Cyber AB CMMC-CCP Practice Exam with Questions & Answers

Questions 1

A Lead Assessor has been assigned to a CMMC Assessment During the assessment, one of the assessors approaches with a signed policy. There is one signatory, and that person has since left the company. Subsequently, another person was hired into that position but has not signed the document. Is this document valid?

Options:
A.

The signatory is the authority to implement and enforce the policy, and since that person is no longer with the company, the policy is not valid.

B.

More research on the company policy of creating, implementing, and enforcing policies is needed. If the company has a policy identifying the authority as with the position or person, then the policy is valid.

C.

The signatory does not validate or invalidate the policy. For the purpose of this assessment, ensuring that the policy is current and is being implemented by the individuals who are performing the work is sufficient.

D.

The authority to implement and enforce lies with the position, not the person. As long as that position ' s authority and responsibilities have not been removed from implementing that domain, it is still a valid policy.

Cyber AB CMMC-CCP Premium Access
Questions 2

As defined in the CMMC-AB Code of Professional Conduct, what term describes any contract between two legal entities?

Options:
A.

Union

B.

Accord

C.

Alliance

D.

Agreement

Questions 3

Which statement is NOT a requirement for a Licensed Partner Publisher?

Options:
A.

Must have at least two years of history in publishing

B.

Must possess a Dun and Bradstreet number and background check

C.

Must receive CMMC Level 3 certification

D.

Must be approved by CMMC-AB or authorized organization

Questions 4

The evidence needed for each practice and/or process is weight for:

Options:
A.

adequacy and sufficiency.

B.

adequacy and thoroughness.

C.

sufficiency and thoroughness.

D.

sufficiency and appropriateness.

Questions 5

What is a conflict of interest?

Options:
A.

Lack of transparency.

B.

Any violation of the law.

C.

A perceived or actual conflict.

D.

Any inadvertent disclosure.

Questions 6

The Advanced Level in CMMC will contain Access Control {AC) practices from:

Options:
A.

Level 1.

B.

Level 3.

C.

Levels 1 and 2.

D.

Levels 1,2, and 3.

Questions 7

Which document is the BEST source for descriptions of each practice or process contained within the various CMMC domains?

Options:
A.

CMMC Glossary

B.

CMMC Appendices

C.

CMMC Assessment Process

D.

CMMC Assessment Guide Levels 1 and 2

Questions 8

In late September. CA.L2-3.12.1: Periodically assess the security controls in organizational systems to determine if the controls are effective in their application is assessed. Procedure specifies that a security control assessment shall be conducted quarterly. The Lead Assessor is only provided the first quarter assessment report because the person conducting the second quarter ' s assessment is currently out of the office and will return to the office in two hours. Based on this information, the Lead Assessor should determine that the evidence is;

Options:
A.

sufficient, and rate the audit finding as MET

B.

insufficient, and rate the audit finding as NOT MET.

C.

sufficient, and re-rate the audit finding after a quarter two assessment report is examined.

D.

insufficient, and re-rate the audit finding after a quarter two assessment report is examined.

Questions 9

SI.L2-3.14.7: Identify unauthorized use of organizational systems is being assessed using two assessment objectives. The assessment objectives are to determine if authorized use of the system is defined and to determine if unauthorized use of the system is identified. What is the BEST evidence for this practice?

Options:
A.

Risk response

B.

Risk assessment

C.

Incident response

D.

System monitoring

Questions 10

The practices in CMMC Level 2 consist of the security requirements specified in:

Options:
A.

NIST SP 800-53

B.

NIST SP 800-171

C.

48 CFR 52.204-21

D.

DFARS 252.204-7012

Exam Code: CMMC-CCP
Certification Provider: Cyber AB
Exam Name: Certified CMMC Professional (CCP) Exam
Last Update: Aug 1, 2026
Questions: 236

Cyber AB Related Exams

How to pass Cyber AB CMMC-CCA - Certified CMMC Assessor (CCA) Exam Exam

Cyber AB Free Exams

Cyber AB Free Exams