Compliance, Mapped to Your Cloud

Assess your AWS, Azure, and Google Cloud environments against the industry frameworks and regulations your auditors expect.

56
Frameworks Supported
18
Standards Families
3
Cloud Providers
5 min
To First Results
ASecureCloud compliance report preview
AWS logo

CMMC 2.0 Level 1

9 controls
66 checks mapped

The Cybersecurity Maturity Model Certification (CMMC) verifies the safeguards protecting Federal Contract Information and CUI across the defense supply chain.

Controls assessed

AC.L1-3.1.1 – Access Control – Authorized Access Control36

Limit information system access to authorized users, processes acting on behalf of authorized users, or devices (including other information systems).

AC.L1-3.1.2 – Access Control – Transaction & Function Control35

Limit information system access to the types of transactions and functions that authorized users are permitted to execute.

AC.L1-3.1.20 – Access Control – External Connections16

Verify and control/limit connections to and use of external information systems.

IA.L1-3.5.1 – Identification and Authentication – Identification10

Identify information system users, processes acting on behalf of users, or devices.

IA.L1-3.5.2 – Identification and Authentication – Authentication11

Authenticate (or verify) the identities of those users, processes, or devices, as a prerequisite to allowing access to organizational information systems.

SC.L1-3.13.1 – System and Communications Protection – Boundary Protection28

Monitor, control, and protect organizational communications (i.e., information transmitted or received by organizational information systems) at the external boundaries and key internal boundaries of the information systems.

SI.L1-3.14.1 – System and Information Integrity – Flaw Remediation4

Identify, report, and correct information and information system flaws in a timely manner.

SI.L1-3.14.2 – System and Information Integrity – Malicious Code Protection1

Provide protection from malicious code at appropriate locations within organizational information systems.

SI.L1-3.14.5 – System and Information Integrity – System & File Scanning1

Perform periodic scans of the information system and real-time scans of files from external sources as files are downloaded, opened, or executed.

See where you stand against any framework

Connect an account and get a full compliance breakdown with mapped findings and remediation guidance — free to start.