
CMMC Certified Professional
Domain 3Objective 1
Demonstrate Understanding of Federal Contract Information (FCI) and Controlled Unclassified Information (CUI) in Nonfederal Unclassified Networks CCP Practice Questions (Page 2)
Part of the CMMC Governance and Source Documents domain, which accounts for 15% of the CCP exam.
21questions here
5free pages
7concepts
15%of the exam
Questions 6–10
- 6
Who is responsible for implementing the security requirements to protect FCI and CUI in a contractor's nonfederal network?
Select an answer first - 7
A government contractor has a system that processes both FCI and CUI. The contractor's employees are trained on FCI handling but not on CUI handling. Which of the following is the most appropriate action for the contractor to take?
Select an answer first - 8
A defense contractor receives a contract from the U.S. Department of Defense. The contract includes a data requirements list that specifies delivery of technical reports containing information that is not classified but is marked as 'Controlled Unclassified Information' under the CUI program. The contractor's IT team is configuring a new file server for these reports. Which of the following is the most appropriate action for the contractor to take?
Select an answer first - 9
A contractor receives an email from a federal agency with an attachment that is marked 'CUI//PRIV' at the top and bottom. The email also contains a footer that says 'CUI' in the header. Which of the following is the most appropriate action for the contractor to take?
Select an answer first - 10
Which security framework is primarily used to protect CUI in nonfederal systems?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CCP” is a trademark of its owner, used for identification only.