Climbing Mount CMMC

Climbing Mount CMMC

Our podcast is dedicated to supporting MSPs/MSSPs and the companies that engage with them. We aim to maintain transparency throughout our journey, especially as we pursue our level two certification. While only a few MSPs are actively participating, we hope this podcast will inspire more involvement.

We have many guests from different branches of the CMMC ecosystem who are professional in their fields. These guests include Brian Hubbard, Joy Beland, Amira Armond and many more!

Cyb-Her: Transitioning Your MSP to CMMC Compliance
Climbing Mount CMMCMay 14, 2026x
5
00:26:5318.51 MB

Cyb-Her: Transitioning Your MSP to CMMC Compliance

In this episode of Cyb-Her, Kaleigh shares with Axiom employee, Maleah Adams, her journey from call coordinator to COO, speaking on her experiences in the MSP and cybersecurity space, including her work and transition to the CMMC ecosystem and her perspective as a woman in a male-dominated industry....

Working with a C3PAO (feat. Fernando Machado)
Climbing Mount CMMCMay 07, 2026x
4
00:42:5629.52 MB

Working with a C3PAO (feat. Fernando Machado)

In this episode of Climbing Mount CMMC, Fernando Machado (CCA) from CyberSec Investments shares his extensive experience with Kaleigh and Bobby about the CMMC assessment process, the journey to becoming a C3PAO, and practical insights for contractors navigating the certification landscape. They disc...

What Questions Should Your MSP Be Asking You?
Climbing Mount CMMCApril 30, 2026x
3
00:28:4419.77 MB

What Questions Should Your MSP Be Asking You?

In this episode, Kaleigh and, new to Axiom, Ashton Guerra discuss the critical questions organizations seeking CMMC Level 2 certification (OSCs) should ask their MSPs. They share insights on scope, security measures, and the importance of transparency in the certification journey. Website: https://w...

A Deep Dive into Rev 3: Awareness & Training
Climbing Mount CMMCApril 23, 2026x
2
00:28:3619.69 MB

A Deep Dive into Rev 3: Awareness & Training

In this new series we like to call "Spelunking", Bobby and Kaleigh explore the updates in NIST 800-171 Revision 3, focusing on the differences from Rev 2, including control changes, assessment objectives, and preparation strategies for compliance. In this episode, they focus on control 03.02 Awarene...

The Ultimate Guide to a CMMC Level 2 Self-Assessment
Climbing Mount CMMCApril 16, 2026x
1
00:36:2825.09 MB

The Ultimate Guide to a CMMC Level 2 Self-Assessment

In the season 5 premiere of Climbing Mount CMMC, Kaleigh and Bobby share practical, boots-on-the-ground insights on implementing CMMC self-assessments, especially for MSPs supporting multiple clients. They break down how to approach self-assessments with the discipline of a formal audit, while still...

How to Build CMMC as an MSP
Climbing Mount CMMCMarch 26, 2026x
30
00:44:2730.58 MB

How to Build CMMC as an MSP

In the season 4 finale of Climbing Mount CMMC, Kaleigh and Bobby share their extensive experience navigating the complexities of achieving CMMC Level 2 certification as an MSP. They discuss the importance of commitment, education, strategic planning, and the realities of scaling support for governme...

The Concept of "Grace" in Building CMMC
Climbing Mount CMMCMarch 19, 2026x
29
00:36:4225.25 MB

The Concept of "Grace" in Building CMMC

In this episode of Climbing Mount CMMC, Kaleigh and Bobby discuss the concept of grace within the CMMC framework, particularly focusing on the NIST 800-171 controls, the role of C3PAOs, and the importance of mock assessments. They emphasize the need for proper training and certification, the signifi...

What Does NIST 800-171 Rev 3 Mean for MSPs?
Climbing Mount CMMCMarch 12, 2026x
28
00:20:0213.8 MB

What Does NIST 800-171 Rev 3 Mean for MSPs?

In this episode of Climbing Mount CMMC, Bobby and Adam discuss the implications of Rev3 for MSPs in the context of CMMC. They explore the challenges MSPs face in achieving compliance, the role of external service providers, and the importance of documentation and shared responsibilities. They highli...

The Importance of POA&M Remediation
Climbing Mount CMMCMarch 05, 2026x
27
00:09:336.61 MB

The Importance of POA&M Remediation

In this episode of Climbing Mount CMMC, Bobby and Adam discuss the intricacies of Plan of Action and Milestones (POAM) in the context of cybersecurity assessments. They explore the importance of having a clear understanding of what constitutes a POAM, the distinction between operational plans and as...

Exploring the 5 Stages of CMMC Grief
Climbing Mount CMMCFebruary 26, 2026x
26
00:39:1627.01 MB

Exploring the 5 Stages of CMMC Grief

In this episode of Climbing Mounts CMMC, hosts Kaleigh Floyd and Bobby Guerra discuss the five stages of grief related to the CMMC compliance journey. They share personal experiences and insights on denial, anger, bargaining, depression, and acceptance, emphasizing the importance of understanding th...

What Classifies an Organization as a Cloud Service Provider?
Climbing Mount CMMCFebruary 19, 2026x
25
00:21:4414.97 MB

What Classifies an Organization as a Cloud Service Provider?

In this episode, Kaleigh Floyd, Bobby Guerra, and Adam Evans discuss the complexities surrounding Cloud Service Providers (CSPs) and Managed Service Providers (MSPs) in the context of CMMC compliance. They clarify the definitions, roles, and responsibilities of MSPs and CSPs, particularly in relatio...

How to Use ODVs Internally
Climbing Mount CMMCFebruary 12, 2026x
24
00:22:3615.57 MB

How to Use ODVs Internally

In this episode, the hosts discuss the significant changes introduced in NIST 800-171 Rev 3, focusing on the transition from Rev 2 to Rev 3, the importance of Organizational Defined Parameters (ODPs), and the role of external service providers in compliance. They emphasize the need for System Securi...

Breaking Down NIST 800-171 Rev 3 Implementation
Climbing Mount CMMCFebruary 05, 2026x
23
00:27:4119.06 MB

Breaking Down NIST 800-171 Rev 3 Implementation

In this episode, Kaleigh and Bobby are joined by Axiom's own, Adam Evans, to discuss the significant changes introduced in NIST 800-171 Rev 3, focusing on the transition from Rev 2 to Rev 3, the importance of Organizational Defined Parameters (ODPs), and the role of external service providers in com...

The Right Way to Safeguard Physical CUI
Climbing Mount CMMCJanuary 29, 2026x
22
00:49:1933.92 MB

The Right Way to Safeguard Physical CUI

In this episode, Kaleigh and Bobby discuss the complexities of managing Controlled Unclassified Information (CUI) within the framework of CMMC compliance. They explore the challenges of physical boundaries, the role of personnel in safeguarding CUI, and the implications of printing and disposing of ...

Is Your Service Provider Prepared for CMMC?
Climbing Mount CMMCJanuary 22, 2026x
21
00:33:1922.93 MB

Is Your Service Provider Prepared for CMMC?

In this episode of "Climbing Mount CMMC," hosts Kaleigh Floyd and Bobby Guerra delve into the intricacies of preparing for a CMMC Level 2 assessment, particularly focusing on the role of external service providers (ESPs) and Managed Service Providers (MSPs). They emphasize the importance of selectin...

What Does Proper CMMC Self-Attestation Look Like?
Climbing Mount CMMCJanuary 15, 2026x
20
00:32:1322.18 MB

What Does Proper CMMC Self-Attestation Look Like?

In this episode of Climbing Mount CMMC, hosts Bobby and Kaleigh discuss the critical topic of self-attestation for CMMC level two requirements. They explore the evolution of self-attestation, the risks associated with misrepresentation, and the importance of accountability in the self-assessment pro...

How to Prepare for CMMC in 2026
Climbing Mount CMMCJanuary 08, 2026x
19
00:37:5526.09 MB

How to Prepare for CMMC in 2026

In this episode, Kaleigh and Bobby discuss the significant changes and challenges that companies will face in 2026 regarding CMMC compliance. They delve into the implications of new CMMC Level 2 requirements, the importance of self-assessments versus third-party assessments, and the potential conseq...

Do I Need to be CMMC Level 2 Certified as an MSP?
Climbing Mount CMMCJanuary 01, 2026x
18
00:34:1923.61 MB

Do I Need to be CMMC Level 2 Certified as an MSP?

In this episode, Kaleigh Floyd and Bobby Guerra discuss the intricacies of change management within Managed Service Providers (MSPs) and its critical role in ensuring compliance with CMMC standards. They emphasize the importance of leadership buy-in, effective training for both client and internal s...

Achieving Cross-Team Alignment for CMMC Readiness
Climbing Mount CMMCDecember 18, 2025x
17
00:37:1525.63 MB

Achieving Cross-Team Alignment for CMMC Readiness

In this conversation, Dy Edington discusses the essence of CMMC, emphasizing that it is not merely about following specific procedures but about achieving results with consistency and transparency. She highlights the significance of managing change effectively to prevent unexpected disruptions, link...

Inside the CCP Course as a CMMC Beginner
Climbing Mount CMMCDecember 04, 2025x
16
00:20:3214.15 MB

Inside the CCP Course as a CMMC Beginner

In this episode, Bobby interviews Axiom's Marketing Coordinator, Maleah Adams, about her experience taking the CCP (CMMC Certified Professional) course. In a brief conversation, they touch on what CMMC looks like from a beginner's perspective and how the CCP course helped shaped that knowledge. She ...