ISACA CMMC Certified Assessor (CCA)
ISACA CMMC Certified Assessor (CCA)
ISACA CMMC Certified Assessor (CCA)
The CMMC Certified Assessor (CCA) certification validates advanced assessment capabilities within the CMMC ecosystem. The certification focuses on the practical knowledge required to evaluate an Organization Seeking Certification (OSC) against CMMC Level 2 requirements.
Purpose of the Exam
- This course helps candidates develop a structured understanding of the CMMC assessment process, from determining the appropriate assessment scope through evidence examination, practice assessment, and reporting.
- The certification is particularly relevant to professionals working with organizations that handle Controlled Unclassified Information (CUI) and need to demonstrate compliance with CMMC Level 2 requirements.
Who should take this Course?
The CCA certification is particularly relevant for:
- Cybersecurity Professionals
- IT Security Professionals
- IT Auditors
- Internal Auditors
- Risk and Compliance Professionals
- Cybersecurity Assessors
- Government Contractors
- Defense Industry Professionals
- CMMC Professionals
- Cybersecurity Consultants
- Professionals progressing toward Lead CCA responsibilities
Skills Required
Candidates should ideally have experience or familiarity with:
- Cybersecurity principles
- Security controls and practices
- IT auditing and assessment
- Risk management
- Compliance frameworks
- Evidence collection and validation
- Security documentation
- Assessment methodologies
- CMMC concepts
- Controlled Unclassified Information (CUI)
CCA Course Outline
The CCA examination is structured around four job-practice domains, with a total of 150 questions.
- Domain 1: Evaluating Organizations Seeking Certification Against CMMC Level 2 (15%)
- Domain 2: CMMC Level 2 Assessment Scoping (20%)
- Domain 3: CMMC Assessment Process (CAP) (25%)
- Domain 4: Assessing CMMC Level 2 Practices (40%)
CCA Certification Eligibility
The CCA certification process includes several requirements. Candidates must:
- Complete the mandatory CCA training through an approved provider
- Pass the CCA examination
- Hold an active CCP certification
- Meet the required cybersecurity and assessment/audit experience
- Meet the applicable DoD 8140.3 qualification requirement
- Submit the certification application
- Pay the applicable application fee
- Meet the other certification requirements established by ISACA and the CMMC ecosystem
Enrich and upgrade your skills to prepare and pass the ISACA CMMC Certified Assessor (CCA) Exam with the latest study resources and exam questions. Try the Free Test Now!
