Navigating Level 1 - CMMC

Getting started with Level 1 CMMC can seem confusing, especially if you’re not familiar with cybersecurity or technical terms. Simply put, it’s about taking basic steps to protect your business information and meet government requirements. Intellicomm Group makes this process easier by giving you clear, simple tools to follow—like easy checklists, ready-to-use templates, and straightforward score sheets to show where you stand. And if you need extra help, our team is here to guide you step by step, so you can move forward with confidence without feeling overwhelmed.
Helpful Documents
CMMC Assessment Walkthrough
Level 1
The Assessment Walkthrough will guide you to better understand each of the requirements for level 1. It provides an explanation, example and criteria needed for each item included in the Level 1 Self-Attestation SPRS Scoresheet. It includes a copy of the CMMC Checklist for attestation.
IRP Template
Incident Response Plan
This template provides a simple, fill-in-the-blank Incident Response Plan (IRP) to help your business prepare for and handle basic cybersecurity incidents. It outlines clear steps, roles, and actions so you can quickly respond to issues, protect your data, and recover with minimal disruption.
SSP Template
System Security Plan
This template provides a simple, fill-in-the-blank System Security Plan (SSP) to help your business document how your systems are set up and how you protect your information. It walks you through basic details about your systems, users, and security practices, making it easier to meet CMMC Level 1 requirements.
SPRS Score Sheet
Supplier Performance Risk System
An SPRS scoresheet is a tool we’re providing to help you better understand and monitor your performance against key standards. It offers a clear, structured way to review scoring criteria, see how results are determined, and identify opportunities for improvement. This sheet will also provide you your score for attestation to your SPRS account.
Guided Assistance

Pick your package or contact us for custom assistance
We have assisted many small contractors achieve their attestation - in less than 1 week.
Call us to discuss where you are at and what you need - It's free! Every business is unique, and we can work out a plan and price that fits you.
Navigating Level 2 - CMMC

CMMC Level 2 can feel overwhelming, especially if you’re not used to technical security requirements or government‑driven compliance. Level 2 goes beyond basic safeguards — it requires structured policies, documented processes, and consistent security practices across your business. Intellicomm Group makes this easier by breaking everything into clear, manageable steps, providing ready‑to‑use policy templates, guided documentation support, and practical tools to help you understand exactly what’s required. And if you need hands‑on assistance, our team walks with you through each phase so you can meet Level 2 expectations confidently without getting lost in the technical details.
Helpful Documents
CMMC Assessment Walkthrough
Level 2
The Assessment Walkthrough will guide you to better understand each of the requirements for level 2. It provides an explanation, example and criteria needed for each item included in the Level 2 Self-Attestation SPRS Scoresheet. It includes a copy of the CMMC Checklist for attestation.
IRP Template
Incident Response Plan
This template provides a simple, fill-in-the-blank Incident Response Plan (IRP) to help your business prepare for and handle basic cybersecurity incidents. It outlines clear steps, roles, and actions so you can quickly respond to issues, protect your data, and recover with minimal disruption.
SSP Template
System Security Plan
This template provides a simple, fill-in-the-blank System Security Plan (SSP) to help your business document how your systems are set up and how you protect your information. It walks you through basic details about your systems, users, and security practices, making it easier to meet CMMC Level 2 requirements.
SPRS Score Sheet
Supplier Performance Risk System
An SPRS scoresheet is a tool we’re providing to help you better understand and monitor your performance against key standards. It offers a clear, structured way to review scoring criteria, see how results are determined, and identify opportunities for improvement. This sheet will also provide you your score for attestation to your SPRS account.
Guided Assistance

Pick your package or contact us for custom assistance
We have assisted many small contractors achieve their attestation - in less than 1 week.
Call us to discuss where you are at and what you need - It's free! Every business is unique, and we can work out a plan and price that fits you.
Helpful Resources
This section provides helpful resources to better understand key terms and requirements related to CMMC, Controlled Unclassified Information (CUI), NIST standards, and FAR regulations. It includes links and references to official guidance, tools, and supporting materials so you can learn more, clarify requirements, and confidently complete your compliance process.
How to Use These Resources
Use these resources as a guide to help you understand what is required and how to complete each step of CMMC Level 1:
-
CMMC Resources: Start here to understand the overall requirements and what you need to achieve for compliance.
-
CUI (Controlled Unclassified Information): Use this to identify what type of information you need to protect in your business.
-
NIST Guidelines: Follow these for practical security steps—you can use them as a checklist for how to protect your systems.
-
FAR Regulations: Refer to these to understand the rules tied to your government contracts and what is legally required.
-
PIEE (Procurement Integrated Enterprise Environment): Use this system to register your company, set up required roles, and gain access to compliance tools.
-
SPRS (Supplier Performance Risk System): Use this system to submit your self-assessment score and officially report your compliance status to the DoD.
As you work through your checklist and templates, refer back to these resources whenever you need clarification or more detail on a specific requirement.
→ Explains what CUI and CMMC is and why it’s required for government contractors.

→ Lists the security controls used as the basis for protecting sensitive data.

→ The system used to register your company, assign roles, and access SPRS for submitting your compliance information.

→ Provides general guidance, tools, and updates to help you get started.

→ Outlines the basic cybersecurity requirements for protecting federal contract information.

→ Helps you identify the types of sensitive information (CUI) you must protect.

→ The system where you submit your CMMC/NIST self-assessment score to show compliance to the DoD.

