Skip to main content

CMMC Level 1 Access Control Policy - Provided by Strike Graph

Written by Elliott Harnagel

The Access Control Policy (CMMC Level 1) defines who can access Federal Contract Information (FCI), what they can do with it, and how external connections and public disclosures are controlled. It requires formal account approval, role-based permissions, technical controls on external systems, and a review process to prevent unauthorized public release of FCI.

How to use the template:

  • Click on the link above to access the template

    • If you are a Google Workplace organization, make a copy by going to File > Make a copy

    • If you are not a Google Workplace organization, download a copy by going to File > Download and selecting your preferred file type (available as DOCX, PDF, and more)

  • Review and then remove instructional text

  • Save in a centralized place

  • Attach to evidence either through Integrations, Automated Collection, or direct upload

Questions?

Reach out through our chat feature for real-time Customer Success support 8 am - 5 pm PT Monday through Friday.

Did this answer your question?