Resources
CMMC Mapping Document
Accurately automate the assessment of CMMC v2.0 network practices for CMMC levels 1 and 2.
Nipper automatically identifies and analyses any CMMC non-compliances it identifies, to reveal the risk to the network if the misconfiguration is exploited, providing an easy way to categorize risks and helping to inform remediation workflows.
Compliance findings are provided with evidence of ‘passes’ and ‘fails’, and configuration changes between audits can be tracked with ease to aid further investigation into whether the drift was accidental or deliberate.
The CMMC report provides insight into:
- Specific tests run on the configuration,
- Deviation from the CMMC compliance practices, and
- Remediation required to mitigate the risk.
Nipper simultaneously analyzes the misconfiguration for the:
- Impact to the network if exploited,
- Ease of exploitation, and
- Ease of fix.
In-depth findings are then automatically prioritized by risk criticality or ease of remediation, with a summary of non-compliance findings displayed at the top of an easy-to-navigate report.