Season 4

The Best Way to Be CMMC-Rollout Ready
Climbing Mount CMMCNovember 06, 2025x
13
00:57:0739.28 MB

The Best Way to Be CMMC-Rollout Ready

In this episode, Kaleigh Floyd, Bobby Guerra, and Vincent Scott discuss the upcoming rollout of the Cybersecurity Maturity Model Certification (CMMC) and the challenges facing the defense industrial base. They explore the readiness of organizations seeking certification, the role of implementers, an...

An Assessor's Guide to CMMC Compliance
Climbing Mount CMMCOctober 30, 2025x
12
00:50:0834.47 MB

An Assessor's Guide to CMMC Compliance

In this episode, Kaleigh interviews Logan Therrien from Kieri to discuss the role of C3PAOs in the CMMC ecosystem. They explore the importance of proper preparation for CMMC Level Two certification, common pitfalls organizations face during self-assessments, and the critical nature of documentation....

What Does NIST 800-171 Look Like in Action?
Climbing Mount CMMCOctober 23, 2025x
11
00:44:2630.56 MB

What Does NIST 800-171 Look Like in Action?

In this episode, Kaleigh Floyd and Bobby Guerra discuss the complexities of CMMC compliance, focusing on NIST 800-171 controls, self-assessments, risk reviews, change management, and the importance of tools in the compliance process. They emphasize the challenges faced by Managed Service Providers (...

How to Avoid a "Not Met" During a CMMC Assessment
Climbing Mount CMMCOctober 16, 2025x
10
00:52:0135.78 MB

How to Avoid a "Not Met" During a CMMC Assessment

In this episode, Kaleigh and Bobby discuss the intricacies of the CMMC Level 2 assessment process, focusing on what to do when faced with a 'not met' status. They explore preparation strategies, the role of assessors, the implications of minor and major changes during assessments, and the importance...

Should I Go Through CMMC With My MSP?
Climbing Mount CMMCOctober 09, 2025x
9
00:43:3129.94 MB

Should I Go Through CMMC With My MSP?

In this episode, Kaleigh Floyd and Bobby Guerra discuss the complexities of navigating CMMC Level 2 certification and assessments, particularly focusing on the role of Managed Service Providers (MSPs). They explore the challenges faced by small MSPs, the importance of documentation, and the intricac...

Cracking the Code of Vulnerability Management
Climbing Mount CMMCOctober 02, 2025x
8
00:35:1624.26 MB

Cracking the Code of Vulnerability Management

In this episode of Climbing Mount CMMC, Kaleigh and Bobby delve into the intricacies of vulnerability scanning, particularly in the context of CMMC Level 2 compliance for Managed Service Providers (MSPs). They discuss the challenges of vulnerability management, the importance of selecting appropriat...

Understanding the Language of CMMC Assessors
Climbing Mount CMMCSeptember 25, 2025x
7
00:37:2425.73 MB

Understanding the Language of CMMC Assessors

In this episode, Bobby and Kaleigh discuss the complexities of navigating the Defense Industrial Base (DIB) space, particularly focusing on the Cybersecurity Maturity Model Certification (CMMC) assessments. They explore the challenges faced by organizations in understanding and complying with CMMC r...

A Deep Dive Into 48 CFR and How Organizations Can Prepare
Climbing Mount CMMCSeptember 18, 2025x
6
00:39:3727.25 MB

A Deep Dive Into 48 CFR and How Organizations Can Prepare

48 CFR IS HERE! And we have a lot to talk about. In this episode, Bobby and Kaleigh discuss the recent release of 48 CFR and its implications for contractors and subcontractors working with the Department of Defense (War). They explore the significance of the new regulations, the phased rollout stra...

What Every Organization Needs to Know About Data Flow
Climbing Mount CMMCSeptember 11, 2025x
5
00:34:0423.44 MB

What Every Organization Needs to Know About Data Flow

In this episode, Kaleigh and Bobby discuss the critical role of data flow diagrams in system security plans, particularly in the context of CMMC compliance. They explore the importance of understanding data flow, identifying sources and users, and ensuring proper sanitization of controlled unclassif...

How the CRM Powers CMMC Compliance
Climbing Mount CMMCSeptember 04, 2025x
4
00:36:5625.42 MB

How the CRM Powers CMMC Compliance

In this episode, Kaleigh and Bobby delve into the intricacies of Customer Responsibility Matrices (CRMs) within the context of CMMC compliance. They discuss the importance of having a well-defined CRM, the relationship between CRMs and service agreements, and how these elements play a crucial role i...

Breaking Down the CMMC System Security Plan
Climbing Mount CMMCAugust 28, 2025x
3
00:46:5632.26 MB

Breaking Down the CMMC System Security Plan

This protips podcast episode is extra special! It includes clips from our webinar delving into the intricacies of system security plans (SSPs), emphasizing their critical role in organizational security and compliance with NIST 800.171 and CMMC standards. The discussion covers the importance of scop...

CMMC Implementation from a Contractor's Perspective
Climbing Mount CMMCAugust 21, 2025x
2
00:33:4023.16 MB

CMMC Implementation from a Contractor's Perspective

In this episode, Kaleigh interviews Dy Edington, the Director of Information Security at AV (formally BlueHalo), about her journey through the CMMC Level 2 assessment. Dy shares insights on the importance of leadership buy-in, team collaboration, and the challenges faced during implementation. She e...

What Is a POA&M? (And What It Isn't)
Climbing Mount CMMCAugust 14, 2025x
1
00:23:4416.34 MB

What Is a POA&M? (And What It Isn't)

In this first episode of Season 4 of Climbing Mount CMMC, Bobby and Kaleigh discuss the intricacies of Plans of Action and Milestones (POA&Ms) in the context of compliance with CMMC and NIST standards. They explore the historical misuse of POA&Ms, the new regulations that have been implement...