GRC Academy

CMMC Will BREAK Your MSP - Axiom's CMMC Level 2 Journey


Listen Later

“We built a second company from scratch…”

Is that what it takes for MSPs to get CMMC'd!?! 👀

In this episode I’m joined by Bobby Guerra and Kaleigh Floyd from Axiom, an IT Managed Service Provider (MSP). They explain exactly what it took to achieve CMMC level 2 certification - after 4 years of effort.

Most MSPs aren’t ready for CMMC. Many believe it's just another checkbox, but it’s a complete operational shift that requires rethinking your tools, processes, and client relationships!

Here are some of the highlights:

  • How much money they allocated for CMMC (it’s more than you think)
  • How to build scalable and repeatable processes to support compliance
  • The tools, contracts, and agreements you MUST have in place
  • How to prepare for the assessment (and avoid sleepless nights!)

Bobby Guerra is the CEO of Axiom and has led the MSP for over 22 years. Under his leadership, Axiom became one of the first MSPs in the U.S. to achieve CMMC Level 2 Certification. Bobby now helps guide clients through their own CMMC journeys, focusing on sustainable security and compliance.

Kaleigh Floyd is the Marketing Director at Axiom and Co-Host of the Climbing Mount CMMC podcast. Raised in the MSP world, she now educates others through Microsoft 365 training and cybersecurity content. Her passion lies in simplifying tech and making a lasting impact in the industry.

This is a true CMMC for MSPs masterclass! So much great advice packed into this episode!

What were your biggest takeaways? Let me know in the comments!

Follow Bobby on LinkedIn: https://www.linkedin.com/in/bobbyguerra/

Follow Kaleigh on LinkedIn: https://www.linkedin.com/in/kaleigh-floyd-079a52190/

Axiom's Website: https://www.axiom.tech/

Climbing Mount CMMC Podcast: https://www.axiom.tech/climbing-mount-cmmc-the-podcast/

-----------

Thanks to our sponsor Vanta!

Need continuous visibility into the state of your security controls?

Discover the new way to GRC here: https://vanta.com/grcacademy

-----------

Governance, Risk, and Compliance Academy (GRC) Academy is a training and research platform!

Online GRC Training: https://grcacademy.io/courses/?utm_source=podcast&utm_medium=s2-e4&utm_campaign=courses

#cmmc #nist #cybersecurity

...more
View all episodesView all episodes
Download on the App Store

GRC AcademyBy Jacob Hill

  • 5
  • 5
  • 5
  • 5
  • 5

5

2 ratings


More shows like GRC Academy

View all
Security Now (Audio) by TWiT

Security Now (Audio)

1,960 Listeners

Risky Business by Patrick Gray

Risky Business

362 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

634 Listeners

Hacked by Hacked

Hacked

176 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,011 Listeners

Smashing Security by Graham Cluley & Carole Theriault

Smashing Security

305 Listeners

Click Here by Recorded Future News

Click Here

386 Listeners

Malicious Life by Malicious Life

Malicious Life

919 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

7,857 Listeners

Cybersecurity Today by Jim Love

Cybersecurity Today

142 Listeners

CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

CISO Series Podcast

182 Listeners

Hacking Humans by N2K Networks

Hacking Humans

308 Listeners

Defense in Depth by David Spark, Steve Zalewski, Geoff Belknap

Defense in Depth

71 Listeners

Cyber Security Headlines by CISO Series

Cyber Security Headlines

117 Listeners

Risky Bulletin by risky.biz

Risky Bulletin

33 Listeners