CMMC Readiness Calculator | RADICL
Free estimate of readiness for a CMMC Level 2 assessment

CMMC Readiness Calculator

Please answer the following questions as they pertain to systems, data, and personnel within your CMMC scope to get an instant score estimate, along with a downloadable gap report.

Step 1 of 7 2 questions
Context

1. Do you currently handle Federal Contract Information (FCI), Controlled Unclassified Information (CUI), or both?

Context

2. How many employees require access to your systems or contract-related data?

Documentation

3. Do you currently have a System Security Plan (SSP)?

Access Control

4. Do you enforce Multi-Factor Authentication (MFA) for all administrative accounts, as well as all accounts accessing systems and data remotely?

Audit & Accountability

5. Do you maintain audit logs that track access, configuration changes, and security events?

Audit & Accountability

6. Are you able to search and correlate audit logs in support of an incident investigation?

Incident Response

7. Has your team conducted an incident response test or tabletop exercise in the past 12 months?

Data Protection

8. Is sensitive data encrypted both at rest and in transit?

System & Communications Protection

9. Are your network boundaries protected with technologies such as firewalls, IDS/IPS, and Conditional Access policies?

System and Comms Protection

10. Do you have mechanisms in place (such as EDR) to prevent malware and detect suspicious activity on endpoints and servers?

Personnel Security

11. Do you conduct background checks and enforce timely offboarding with prompt system access removal?

Awareness & Training

12. Do your employees receive cybersecurity awareness training at least annually?

Risk Management

13. Are vulnerabilities continuously identified, risk-ranked, remediated within defined timeframes, and evidenced through reports or tickets?

Documentation

14. Are your cybersecurity policies and procedures documented, well maintained, and consistently followed in daily operations?


Domain Breakdown