cd ../projects
Management 2025

NIST 800-53 to CMMC Policy Migration

Led the migration of corporate security policies from NIST 800-53v5 to the CMMC framework to meet evolving regulatory requirements.

NIST 800-53CMMCCompliancePolicy Development

Overview

Directed the remapping and rewrite of the organization’s security policy framework from NIST 800-53 Revision 5 to the Cybersecurity Maturity Model Certification (CMMC) framework. This involved gap analysis, control mapping, stakeholder alignment, and documentation updates across the entire policy library.

Key Accomplishments

  • Conducted comprehensive gap analysis between NIST 800-53v5 and CMMC controls
  • Mapped existing controls to CMMC practices and identified remediation gaps
  • Coordinated with legal, compliance, and IT leadership for alignment
  • Updated and published revised policy documentation
  • Prepared the organization for future CMMC assessment readiness

Technologies

GRC Platform, Microsoft 365, SharePoint