Tobias Musser’s Post

View profile for Tobias Musser, graphic

Expert in network security and performance, compliance, and IT implementation | CMMC | DevOPs | Agile | CEO of MNS Group

CMMC Level 2 Assessment Objective: Physical Access Logs (CUI Data) PRACTICE: Organizations must maintain audit logs of physical access. ASSESSMENT: Organizations have flexibility in the types of audit logs they employ. Audit logs can be procedural, such as a written log of individuals accessing the facility; automated, such as capturing identification through an electronic badge; or some combination thereof. Be prepared! Your assessor could ask to: 🔍 EXAMINE physical and environmental protection policy 🗣 INTERVIEW personnel with physical access control responsibilities 📝 TEST organizational processes for physical access control (CMMC Assessment Guide: Level 2 Version 2.11, page 182) #CMMC #DoD #cybersecurity #NIST #InformationSecurity

  • No alternative text description for this image
Israt Jahan Femi

Cybersecurity Influencer Recruiter at Kiteworks

2mo

Great overview of CMMC Level 2's Physical Access Logs requirements! It's insightful to see the different audit log options available to organizations. Thanks for sharing!

Like
Reply

To view or add a comment, sign in

Explore topics