4.94 (17)

CMMC Awareness Training for Defense Contractors (DIB)

Categories: CMMC, NIST

Play Video

Course Information

Do you need to educate your organization on CMMC?

Achieving initial CMMC certification/compliance is just the beginning – your staff must understand CMMC to maintain compliance long-term. Equip your team with the knowledge they need to operate in compliance with CMMC (as required by control AT.L2-3.2.2).

Jacob Hill is leading the CMMC charge at a defense contractor and created this course specifically for other contractors so they can quickly get up to speed on CMMC!

Interested in more than 25 licenses? Contact us for bulk discounts.

Who Should Take This Course?

This awareness course is for defense contractor personnel who need a higher-level understanding of CMMC.

Personnel involved in managing CMMC compliance should take our more detailed CMMC Overview Training.

This course is also available for sale to government on GSA Advantage.

Why Should You Take This Course?

CMMC certification (or compliance) will be required to win DoD contracts.

Jacob Hill has been leading the CMMC charge at a small business for several years, and he also previously served in the government as a DoD Contracting Officer Representative (COR). His unique background allows him to simplify complicated topics.

The course is taught in a series of online micro-lectures that are delivered in a focused bottom-line-up-front format and provides an overview of FAR and DFARS cyber contractual requirements, NIST 800-171, and CMMC!

What is CMMC?

Cybersecurity Maturity Model Certification (CMMC) is a cybersecurity compliance and certification program which the United States Department of Defense (DoD) created that is focused on gaining assurance that its supporting contractors are implementing the 110 requirements to protect its controlled unclassified information (CUI). Nearly all DoD contractors will need to be CMMC compliant or certified to be able to do business with the DoD.

CMMC requirements will begin to appear in contracts by the 4th quarter of 2025.

What is NIST 800-171?

The majority of CMMC’s requirements are based on NIST 800-171, “Protecting CUI in Nonfederal Systems and Organizations.” Most contractors are ALREADY required to comply with NIST 800-171 per DFARS 252.204-7012, and have been required to comply since December of 2017.

Are you compliant? If not, do you know what steps you need to take?

What Companies need to be CMMC Certified?

Nearly all DoD contractors will be required to comply with CMMC in some manner. CMMC consists of 3 levels, and the requirements vary per level:

  • CMMC Level 1
    • Implement 15 CMMC controls
    • Required for contracts with federal contract information (FCI)
    • Contractor is required to perform a self-assessment – no 3rd-party assessment is required
  • CMMC Level 2
    • Implement 110 CMMC controls
    • Required for contracts with CUI
    • Nearly all contracts will require a 3rd-party assessment by a C3PAO resulting in CMMC certification
  • CMMC Level 3
    • Implement 24 additional CMMC controls
    • Required for DoD’s most critical CUI programs
    • All contracts will require a 3rd-party assessment by DIBCAC resulting in CMMC certification

CMMC is an evolving field, and this course will be updated as changes occur. This course is being completely updated and rerecorded and the new version should be available in August 2025!

Enroll Now

Arm yourself with the knowledge you need to successfully navigate the processes of NIST 800-171 and CMMC. Don’t let your business fail because you didn’t achieve compliance or certification.

*This has been created for the DIB by a member of the DIB, and is not affiliated with the DoD, the CyberAB (also known as the CMMC Accreditation Body) or the Cybersecurity Assessor and Instructor Certification Organization (CAICO).

Featured Reviews

Greg Bandish

- 02/12/2024
(5)

As a seasoned Program Manager with a solid background in compliance, I found the CMMC awareness course to be exceptional. The content was concise, engaging, and precisely what’s needed for professionals navigating CMMC compliance intricacies. Jacob’s expertise was evident, simplifying complex topics with ease. This course is a must-have for anyone looking to bolster their compliance practices within the defense sector. Highly recommended.

View Credly Badge
Show More

What Will You Learn

  • What is Federal Contract Information (FCI)
  • What is Controlled Unclassified Information (CUI)
  • What DFARS 252.204-7012, 7019, 7020, and 7021 mean to you
  • What is NIST 800-171
  • What is a System Security Plan (SSP)
  • The 3 levels of CMMC
  • When CMMC will be required
  • Roles in the CMMC ecosystem
  • CMMC and Managed Service Providers (MSPs)
  • What is a Joint Surveillance Voluntary Assessment (JSVA)
  • Action plan

Course Content

Introduction00:03:46
  • All Levels
  • 9 Total Enrolled

  • 1 Hour 15 Minutes Duration

  • 23 Lectures

  • 12-Month Access
  • September 4, 2025 Last Updated

A course by

GRC Academy

Taught by

Founder of GRC Academy | CISSP-ISSEP, CCP

Material Includes

  • Spreadsheet with NIST 800-171, NIST 800-171A, and CMMC controls

Audience

  • DoD contractors
  • Defense Industrial Base (DIB)
  • Federal contractors
  • Small Businesses
  • Medium Businesses
  • Large Businesses
  • Government Entities
  • Anyone who wants to understand NIST 800-171 and CMMC

4.94-Star Rating | 17 Course Reviews

Course Reviews

Margaret Regan

- 07/28/2025
(5)

Great course providing a high level basic understanding of CMMC

Show More

Jose Castro

- 05/16/2025
(5)

Awesome training, most definitely, I will be going over again and again to update myself and answer doubts down the road

Show More

Kiran Thomas

- 05/14/2025
(5)

Concise yet comprehensive and informative.

Show More

Dana Bean

- 04/24/2025
(5)

NA

Show More

Kailey Moore

- 04/24/2025
(4)

The instructor went very fast-had to pause frequently to take notes

Show More

Joel Lipkin

- 04/11/2025
(5)

good overview for mgt and participants

Show More

Gabrielle Reilly

- 04/07/2025
(5)

No comment

Show More

Kyle Litman

- 04/01/2025
(5)

Very informative!

View Credly Badge
Show More

Craig Laznow

- 04/01/2025
(5)

Awesome course and information

View Credly Badge
Show More

Destiny Tolbert-Clutter

- 04/01/2025
(5)

Incredibly informative and well-structured. Can’t wait for the updates!

Show More

Steven Williams

- 03/10/2025
(5)

The GRC Academy’s CMMC Awareness Course offers an excellent introduction to the Cybersecurity Maturity Model Certification framework. As someone who recently completed this training, I found it to be comprehensive, well-structured, and highly relevant for professionals in defense contracting or those handling Controlled Unclassified Information (CUI). Jacob expertly deconstructs the technical requirements, leveraging his industry expertise to present the material in a relatable and accessible manner. His approach transforms complex CMMC concepts into understandable components that resonate with learners at all levels.

Show More

Amy Moss

- 03/04/2025
(5)

Great course. I thought the segments were the correct timing for me to understand and retain for the quiz

Show More

Jose Rodriguez

- 02/18/2025
(5)

Very informative.

Show More

Saber Black

- 01/09/2025
(5)

Learned a ton!

Show More

Michael Aamold

- 01/09/2025
(5)

As a seasoned Program Manager with a solid background in compliance, I found the CMMC awareness course to be exceptional. The content was concise, engaging, and precisely what’s needed for professionals navigating CMMC compliance intricacies. Jacob’s expertise was evident, simplifying complex topics with ease. This course is a must-have for anyone looking to bolster their compliance practices within the defense sector. Highly recommended.

Show More