Regulatory Toolkit

CMMC Level 1 + Level 2 Compliance Package — FCI / CUI Controls for DoD Contractors

Cybersecurity Maturity Model Certification package covering Level 1 (FCI, 17 practices) and Level 2 (CUI, 110 practices aligned to NIST SP 800-171 R2).

Who this is for

US Department of Defense contractors and their supply chain — Level 1 (FCI only) or Level 2 (CUI).

What's included

  • Level 1 — 17 FAR 52.204-21 practices documented
  • Level 2 — all 110 NIST SP 800-171 R2 practices documented
  • System Security Plan (SSP) template
  • Plan of Action and Milestones (POA&M) template
  • FCI / CUI data inventory worksheet
  • Self-assessment scoring rubric (SPRS submission ready)
  • Third-party assessment organisation (C3PAO) handover format
  • Subcontractor flow-down procedure

Deliverable

SSP, POA&M, all 110 control descriptions, SPRS submission worksheet, C3PAO handover pack.

Estimated delivery time

7-10 business days · indicative turnaround for SME-tier orders. Enterprise / multi-site engagements scheduled separately.

Frequently asked questions

Who is the listed price for?
The price of $3,500 USD shown above is for SMEs and startups. For larger corporates, enterprise licensing or multi-site programmes, contact us for a tailored quote.
Are the documents editable and brandable?
Yes. Everything is delivered as fully editable Microsoft Word and Excel files you can customise and brand for your organisation.
Do you also offer implementation support?
Yes — pair this toolkit with our retainer services (CISO-aaS, DPO-aaS, Compliance Officer-aaS, Annual Surveillance) for ongoing support.
Is there a money-back guarantee?
Yes — 30 days, no questions asked.