GRC Academy Podcast March 11, 2025 S-2 / E-3 00:35:50

CMMC Level 2 Assessments – What to Expect and How to Avoid Disaster

Interview with CMMC assessor Fernando Machado about the new CMMC assessment process.

Preparing for a CMMC assessment, but don’t know what to expect?

Get ready to learn from CMMC Lead Assessor Fernando Machado as he explains EXACTLY what happens in each phase of the CMMC assessment process!

Fernando is the Managing Principal of Cybersec Investments which is an authorized C3PAO. Fernando has been involved with CMMC starting in 2020 as a member of the Cyber AB’s Standards Management Industry Working Group.

Cybersec Investments has already issued 12 CMMC certifications since CMMC assessments began in January of 2025 and previously participated in nearly 20 Joint Surveillance Voluntary Assessments (JSVAs).

👉 Here are some highlights:

  • What to expect during a CMMC assessment
  • The 4-phases of the CMMC Assessment Process (v2.0)
  • No self-assessment? No independent assessment
  • Common issues that could cause assessment failures
  • How to make the assessment easier for your assessor (and you)

It’s easy to get overwhelmed preparing for a CMMC assessment – believe me, I know. But don’t forget, you also need to understand what happens during the assessment and what the assessor expects!

What were your biggest takeaways? Let me know in the comments!

Follow Fernando on LinkedIn: https://www.linkedin.com/in/fernando-machado-cissp-cism-cca-ccp-5b5581124/

Cybersec Investments Website: https://cybersecinvestments.com/


Thanks to our sponsor Vanta!

Need continuous visibility into the state of your security controls?

Discover the new way to GRC here: https://vanta.com/grcacademy