Summer Special - Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: top65certs

Online CMMC-CCA Questions Video

Page: 5 / 11
Total 150 questions

Certified CMMC Assessor (CCA) Exam Questions and Answers

Question 17

The team is assessing an OSC that uses the cloud for hosting its online services. Which of the following is NOT important for the assessor to consider?

Options:

A.

Devices connecting to the system are authorized.

B.

Processes acting on behalf of a user are authenticated.

C.

Users are authorized as a prerequisite to system access.

D.

FIPS encryption is authenticated as a prerequisite to system access.

Question 18

Some OSCs share real estate with other companies. To protect FCI/CUI behind unmanned entrances to buildings, floors, or other areas where FCI/CUI is created, used, stored, or transmitted, which of the following is the BEST method?

Options:

A.

Turnstiles to limit access

B.

Cameras to monitor and record foot traffic

C.

Bold signage with strong language to discourage entry

D.

One-way gates which require proper credentials or intercom authorization to unlock and permit entry

Question 19

Phase 2 of the CMMC Assessment Process specifies that the Assessment Team shall generate the final recommended assessment results. The status and recommended scores of the implemented CMMC practices are collected throughout the assessment and are reviewed with the OSC during the final daily review.

What are the key sequential subphases that support the generation of final recommended assessment results?

Options:

A.

Determine final practice MET/NOT MET/NA results

Create, finalize, and record recommended final findings

Resolve assessment findings disputes

B.

Validate preliminary recommended findings and scores

Resolve assessment findings disputes

Submit, package, and archive assessment documentation

C.

Create, finalize, and record recommended final findings

Execute POA&M review

Resolve assessment findings disputes

D.

Determine final practice MET/NOT MET/NA results

Validate OSC POA&M

Create, finalize, and record recommended final findings

Question 20

An OSC is presenting the CMMC Assessment to the C3PAO along with all supporting documentation. The supporting documents include drawings from a patent application that has not been filed with the patent office and are marked as attorney-client privileged. What document is recommended that the OSC and C3PAO sign?

Options:

A.

Formal contract

B.

Statement of Work

C.

Non-disclosure agreement

D.

Formal disclosure agreement

Page: 5 / 11
Total 150 questions