Climbing Mount CMMC
Our podcast is dedicated to supporting MSPs/MSSPs and the companies that engage with them. We aim to maintain transparency throughout our journey, especially as we pursue our level two certification. While only a few MSPs are actively participating, we hope this podcast will inspire more involvement.
We are also excited to announce that we will have guests on our podcast who are professional in their fields. These guests include Brian Hubbard, Joy Beland, Amira Armond and many more.
Episodes
109 episodes
Breaking Down NIST 800-171 Rev 3 Implementation
In this episode, Kaleigh and Bobby are joined by Axiom's own, Adam Evans, to discuss the significant changes introduced in NIST 800-171 Rev 3, focusing on the transition from Rev 2 to Rev 3, the importance of Organizational Defined Parameters (...
•
Season 4
•
Episode 23
•
27:41
The Right Way to Safeguard Physical CUI
In this episode, Kaleigh and Bobby discuss the complexities of managing Controlled Unclassified Information (CUI) within the framework of CMMC compliance. They explore the challenges of physical boundaries, the role of personnel in safeguarding...
•
Season 4
•
Episode 22
•
49:19
Is Your Service Provider Prepared for CMMC?
In this episode of "Climbing Mount CMMC," hosts Kaleigh Floyd and Bobby Guerra delve into the intricacies of preparing for a CMMC Level 2 assessment, particularly focusing on the role of external service providers (ESPs) and Managed Service Pro...
•
Season 4
•
Episode 21
•
33:19
What Does Proper CMMC Self-Attestation Look Like?
In this episode of Climbing Mount CMMC, hosts Bobby and Kaleigh discuss the critical topic of self-attestation for CMMC level two requirements. They explore the evolution of self-attestation, the risks associated with misrepresentation, and the...
•
Season 4
•
Episode 20
•
32:13
How to Prepare for CMMC in 2026
In this episode, Kaleigh and Bobby discuss the significant changes and challenges that companies will face in 2026 regarding CMMC compliance. They delve into the implications of new CMMC Level 2 requirements, the importance of self-assessments ...
•
Season 4
•
Episode 19
•
37:55
Do I Need to be CMMC Level 2 Certified as an MSP?
In this episode, Kaleigh Floyd and Bobby Guerra discuss the intricacies of change management within Managed Service Providers (MSPs) and its critical role in ensuring compliance with CMMC standards. They emphasize the importance of leadership b...
•
Season 4
•
Episode 18
•
34:19
Achieving Cross-Team Alignment for CMMC Readiness
In this conversation, Dy Edington discusses the essence of CMMC, emphasizing that it is not merely about following specific procedures but about achieving results with consistency and transparency. She highlights the significance of managing ch...
•
Season 4
•
Episode 17
•
37:15
Inside the CCP Course as a CMMC Beginner
In this episode, Bobby interviews Axiom's Marketing Coordinator, Maleah Adams, about her experience taking the CCP (CMMC Certified Professional) course. In a brief conversation, they touch on what CMMC looks like from a beginner's perspective a...
•
Season 4
•
Episode 16
•
20:32
Where to Begin on Your CMMC Compliance Journey
In this episode of Climbing Mount CMMC, Kaleigh Floyd and Kelly Hood discuss the essential steps for small businesses to navigate the complexities of CMMC compliance. They emphasize the importance of understanding the foundational reasons behin...
•
Season 4
•
Episode 15
•
45:37
What to Expect from a CMMC Assessment
This webinar discussion provides an in-depth exploration of the CMMC Level 2 assessment process, including the phases of assessment, methodologies, and the importance of media sanitization and risk assessments. The speakers share their experien...
•
Season 4
•
Episode 14
•
45:37
The Best Way to Be CMMC-Rollout Ready
In this episode, Kaleigh Floyd, Bobby Guerra, and Vincent Scott discuss the upcoming rollout of the Cybersecurity Maturity Model Certification (CMMC) and the challenges facing the defense industrial base. They explore the readiness of organizat...
•
Season 4
•
Episode 13
•
57:07
An Assessor's Guide to CMMC Compliance
In this episode, Kaleigh interviews Logan Therrien from Kieri to discuss the role of C3PAOs in the CMMC ecosystem. They explore the importance of proper preparation for CMMC Level Two certification, common pitfalls organizations face during sel...
•
Season 4
•
Episode 12
•
50:08
What Does NIST 800-171 Look Like in Action?
In this episode, Kaleigh Floyd and Bobby Guerra discuss the complexities of CMMC compliance, focusing on NIST 800-171 controls, self-assessments, risk reviews, change management, and the importance of tools in the compliance process. They empha...
•
Season 4
•
Episode 11
•
44:26
How to Avoid a "Not Met" During a CMMC Assessment
In this episode, Kaleigh and Bobby discuss the intricacies of the CMMC Level 2 assessment process, focusing on what to do when faced with a 'not met' status. They explore preparation strategies, the role of assessors, the implications of minor ...
•
Season 4
•
Episode 10
•
52:01
Should I Go Through CMMC With My MSP?
In this episode, Kaleigh Floyd and Bobby Guerra discuss the complexities of navigating CMMC Level 2 certification and assessments, particularly focusing on the role of Managed Service Providers (MSPs). They explore the challenges faced by small...
•
Season 4
•
Episode 9
•
43:31
Cracking the Code of Vulnerability Management
In this episode of Climbing Mount CMMC, Kaleigh and Bobby delve into the intricacies of vulnerability scanning, particularly in the context of CMMC Level 2 compliance for Managed Service Providers (MSPs). They discuss the challenges of vulnerab...
•
Season 4
•
Episode 8
•
35:16
Understanding the Language of CMMC Assessors
In this episode, Bobby and Kaleigh discuss the complexities of navigating the Defense Industrial Base (DIB) space, particularly focusing on the Cybersecurity Maturity Model Certification (CMMC) assessments. They explore the challenges faced by ...
•
Season 4
•
Episode 7
•
37:24
A Deep Dive Into 48 CFR and How Organizations Can Prepare
48 CFR IS HERE! And we have a lot to talk about. In this episode, Bobby and Kaleigh discuss the recent release of 48 CFR and its implications for contractors and subcontractors working with the Department of Defense (War). They expl...
•
Season 4
•
Episode 6
•
39:37
What Every Organization Needs to Know About Data Flow
In this episode, Kaleigh and Bobby discuss the critical role of data flow diagrams in system security plans, particularly in the context of CMMC compliance. They explore the importance of understanding data flow, identifying sources and users, ...
•
Season 4
•
Episode 5
•
34:04
How the CRM Powers CMMC Compliance
In this episode, Kaleigh and Bobby delve into the intricacies of Customer Responsibility Matrices (CRMs) within the context of CMMC compliance. They discuss the importance of having a well-defined CRM, the relationship between CRMs and service ...
•
Season 4
•
Episode 4
•
36:56
Breaking Down the CMMC System Security Plan
This protips podcast episode is extra special! It includes clips from our webinar delving into the intricacies of system security plans (SSPs), emphasizing their critical role in organizational security and compliance with NIST 800.171 and CMMC...
•
Season 4
•
Episode 3
•
46:56
CMMC Implementation from a Contractor's Perspective
In this episode, Kaleigh interviews Dy Edington, the Director of Information Security at AV (formally BlueHalo), about her journey through the CMMC Level 2 assessment. Dy shares insights on the importance of leadership buy-in, team collaboratio...
•
Season 4
•
Episode 2
•
33:40
What Is a POA&M? (And What It Isn't)
In this first episode of Season 4 of Climbing Mount CMMC, Bobby and Kaleigh discuss the intricacies of Plans of Action and Milestones (POA&Ms) in the context of compliance with CMMC and NIST standards. They explore the historical misuse of ...
•
Season 4
•
Episode 1
•
23:44
Are You Wasting Your Time With CMMC?
*Spoiler Alert* CMMC is real and it's happening right now.In this episode, Kaleigh Floyd and Bobby Guerra discuss the critical aspects of CMMC compliance for contractors, addressing common questions and concerns. They explore...
•
Season 3
•
Episode 31
•
35:19
5 Things We Would Change About CMMC
In this episode, Bobby and Kaleigh discuss five significant changes they believe could be made to the CMMC ecosystem. They explore the thought of C3PAOs to providing recommendations after assessments, the possibility of allowing organizations t...
•
Season 3
•
Episode 30
•
31:32