1/40
Vocabulary-style flashcards covering key terms from the Code of Professional Conduct (CoPC) V2.4 and related CMMC-AB concepts.
Name | Mastery | Learn | Test | Matching | Spaced |
---|
No study sessions yet.
Code of Professional Conduct (CoPC)
The performance standards by which CMMC-AB credentialed individuals and entities are held accountable, including procedures for addressing violations.
CMMC-AB
The Cybersecurity Maturity Model Certification Accreditation Body that creates, administers, and enforces the CMMC ecosystem, credentials, and licensing.
Certified CMMC Professional (CCP)
Credential for professionals authorized to deliver CMMC services.
Certified CMMC Assessor (CCA)
Credential for individuals authorized to conduct CMMC assessments.
Certified CMMC Instructor (CCI)
Credential for individuals authorized to teach CMMC training.
Certified CMMC Master Instructor
Senior instructional credential within the CMMC-AB ecosystem.
Certified CMMC Quality Auditor (CQA)
Credential for professionals conducting quality audits of CMMC services.
Certified Third Party Assessment Organization (C3PAO)
Licensed organization that conducts CMMC assessments.
Registered Practitioner (RP)
Individual registered with the CMMC-AB to provide unlicensed non-certified services.
Registered Provider Organization (RPO)
Organization registered with the CMMC-AB to provide services.
Licensed Partner Publisher (LPP)
Entity licensed to provide training materials under CMMC-AB license.
Licensed Training Provider (LTP)
Entity licensed to deliver CMMC training materials.
Directory of Credentialed Individuals (CMMC-AB Directory)
CMMC-AB directory listing Credentialed Individuals and entities.
Affected Persons and Entities
The individuals and groups to whom the CoPC applies within the CMMC ecosystem.
Guiding Principles
Core standards guiding behavior: professionalism, objectivity, confidentiality, proper use of methods, and information integrity.
Professionalism
Maintain a professional posture and align representation with certification, NDA, or AB authorization.
Objectivity
Avoid or disclose conflicts of interest; comply with conflict of interest policies; document any conflicts.
Confidentiality
Protect customer and government data; do not disclose confidential information learned during CMMC services.
Proper Use of Methods
Use materials and methods with integrity as described by CMMC-AB policies to preserve service delivery integrity.
Information Integrity
Report results completely and with integrity; ensure accuracy and security of information.
3.1 Professionalism (Practices)
Mandatory practices requiring honesty, fulfillment of commitments, no misrepresentation, credentialed delivery staff, and adherence to agreements.
3.2 Confidentiality (Practices)
Protect identifiable data; do not copy or share materials without permission; avoid sharing working group materials outside the group.
3.3 Adherence to Materials and Methods
Maintain current knowledge of CMMC materials and licenses; avoid derivative works without explicit permission; respect role boundaries.
3.4 Information Integrity (Practices)
Report assessment data objectively; ensure accuracy; prevent cheating or misstatements.
3.5 Respect for Intellectual Property
Do not infringe IP rights; credit sources; do not misuse logos; obtain written permission to distribute or modify materials; sign IP assignments.
3.6 Lawful and Ethical Practices
Behave lawfully and ethically; avoid harassment or discrimination; report crimes and convictions as required.
4.1 Response for Potential Violations
Process for privately addressing violations, reporting to the CMMC-AB, investigations, and corrective actions.
4.2 Responsibilities for Code of Conduct signatures
CMMC-AB C3PAOs must obtain Code agreement for their relationships in addition to AB signatures.
Agreement
Contract between two legal entities.
Credentialed
Individual who holds a Provisional Assessor, Certified Assessor, Certified Instructor, Master Instructor, or Quality Auditor credential.
Registered
Person or organization listed in the CMMC-AB Registration Directory.
Entity
Organization that is a CMMC-AB C3PAO, Licensed Partner Publisher, or Licensed Training Provider.
Solicit Business
Actively seek business from a customer by initiating services or advertising.
Termination
Termination of a credential or license agreement, typically with 30 days’ notice.
Assignment of Intellectual Property
Agreement addressing ownership and rights to IP for materials produced in CMMC activities.
Conflict of Interest Declaration
Documented declaration of potential conflicts of interest.
CMMC Model
DoD framework organizing domains and practices to protect controlled unclassified information.
CMMC Assessment Guide
Guide outlining how CMMC assessments are performed.
CAP (CMMC Assessment Process)
Process used to perform CMMC assessments.
Non-Disclosure Agreement (NDA)
Agreement requiring parties to keep specified information confidential.
Working Group Deliverables
Materials produced by a working group for collaboration and use within the ecosystem.