How is your security program currently structured?
No formal program in place Informal / ad hoc processes Documented program, limited execution Documented and actively managed program
Who is responsible for security oversight today?
No designated owner Part-time or collateral duty Named FSO with limited support Dedicated FSO or security leadership team
How prepared are you for a DCSA inspection or audit today?
Not prepared Some documentation exists Generally prepared but gaps remain Fully prepared and audit-ready
What is your current CMMC status?
Unsure / not started Level identified, preparation underway Documentation in progress Assessment-ready or maintaining compliance
How are cybersecurity responsibilities managed within your organization?
No defined cybersecurity program IT support only Cybersecurity program exists but is not aligned with compliance Cybersecurity and compliance are fully aligned
What prompted you to seek support now?
Upcoming audit or inspection Contract or customer requirement Organizational growth or change Program gaps or internal capacity limits