CMMC 2.0

The release of CMMC 2.0 from the Department of Defense hasn’t changed what Edwards has to offer participants of our CCP Exam Prep Course. Anticipated improvements will address the new model – but our CCP courses are in full swing and delivering EVERY BIT OF VALUE you would expect from Edwards Performance Solutions!

What is CMMC 2.0?

The Cybersecurity Maturity Model Certification (CMMC) is a unified standard for implementing cybersecurity across the defense industrial base. While the CMMC Standard was created for the Defense Supply Chain, there are many other government agencies and allies of the United States interested in using the CMMC Standard.

The standard is overseen by the CMMC Accreditation Body (CMMC-AB). The CMMC-AB establishes and oversees a qualified, trained, and high-fidelity community of assessors that can deliver consistent and informative assessments to participating organizations against a defined set of controls/best practices within the Cybersecurity Maturity Model Certification (CMMC) Program. The CMMC Model itself is created and managed by the DoD.

The CMMC will review and combine various cybersecurity standards and best practices and map these controls and processes across several maturity levels that range from basic cyber hygiene to advanced.

Buttons_Training Education
Button Options_Consulting Audits
Button Options_Meet The Team
Edwards & the CMMC Ecosystem

Edwards plays a role in nearly every aspect of the Cybersecurity Maturity Model Certification (CMMC) ecosystem — training and education, assessments, and certification. Currently, Edwards supports Organizations Seeking Certification (OSC) as a Registered Provider Organization (RPO) and candidate Certified Third Party Assessment Organization (C3PAO), providing CMMC-AB approved assessments, consulting, and audit preparation through our proprietary Compliance Assessments. We are also Licensed Training Provider (LTP) and Licensed Partner Publisher (LPP), developing training and providing CMMC-AB certified classes to organizations and individuals planning to take CMMC-AB certification exams or utilize other LPP curriculum. Check out our CMMC FAQ page for more in-depth answers to all your CMMC questions!

CMMC will start to appear in upcoming statements of work and it is critical to prepare for compliance now. High formal assessment demand means you must be prepared to pass the first time or risk being waitlisted – potentially foregoing large DoD contract opportunities. CMMC compliance will be a go-no-go decision gate at the time of the contract award.

Our team of cybersecurity experts brings more than a half century’s worth of deep understanding and experience in assessing and interpreting standards, guidelines, and best practices to improve cybersecurity programs.

Four Part Circle


✅ CMMC draws from NIST standards, the DoD, and the international security community

✅ One size does not fit all – different levels of security are necessary, depending on the contract and sensitivity of the data involved

✅ CMMC 2.0 won’t appear in contracts until rule making is decided

✅ CMMC includes the entire DoD industrial base – approximately 300,000 contractors and subcontractors

✅ CMMC-AB LPPs and LTPs are authorized to develop and train OSCs in various CMMC certification and informational courses


Working towards certification within the CMMC ecosystem can be a daunting task for any organization. This is where the need for various training and education can make a world of difference in understanding the CMMC Model, best practices, and the ability to apply concepts around protecting information. It is critical to have a solid comprehension of the legal and regulatory guidance as it pertains to the Department of Defense’s (DoD) Cybersecurity posture.

As a CMMC-AB Licensed Partner Publisher (LPP) and Licensed Training Provider (LTP), Edwards produces quality training materials for other LTPs or Organizations Seeking Certification (OSC).

Focused on learning solutions that enhance organizational performance, our courses are created using Edwards’ instructional systems design approach based on industry standards – and have been for 20+ years. This expertise coupled with the most respected CMMC experts as our team of instructors makes for dynamic training solutions. We are CMMC advocates and training professionals supporting the Defense Industrial Base (DIB) cybersecurity health.

Our online courses and accompanying course materials are updated continuously to provide the most accurate, recent CMMC information. We aim to provide flexible learning at the click of a button – delivering an accessible way to become CMMC compliant. We also offer customized training and discounts for multiple seat purchases; inquire to learn more!


Your CMMC certification journey begins with a solid foundation. This 5-day course provides a comprehensive look at the Cybersecurity Maturity Model Certification (CMMC 2.0) standard and prepares participants to perform as effective CMMC assessors, implementers, and consultants. With our team of world-class instructors with decades of experience, participants can expect a well-rounded view of CMMC.

To add even more value, we offer a free weekly study group for all CCP participants who complete the Edwards course, continuing until the CCP exam is available. Enroll in a session today!

Click Here to Sign Up Today CMMC-AB [Replacement Graphic]

To continue work with the government, organizations must be certified at an appropriate CMMC maturity level, but most aren’t sure where to start. The CMMC-AB created the RPO certification to provide OSCs confidence in their consultant selection for both quality and knowledge of CMMC concepts to get the job done. C3PAOs are the only organizations authorized to conduct official CMMC assessments against security practices of Maturity Level 2, from Basic to Advanced, designated by the CMMC-AB.

As an RPO and C3PAO, Edwards is equipped to provide advisory CMMC Level 1 or Level 2 consulting services and support, as well as pre-certification assessments to establish a CMMC plan of action. OSCs should work with an RPO or candidate C3PAO to prepare for either certification; however, you cannot engage with the same C3PAO for both pre-assessment consulting services and the actual CMMC assessment. All verified RPOs and candidate C3PAOs are listed on the CMMC-AB Marketplace. Our goal is to advise DoD suppliers on how to best prepare for a successful CMMC assessment and enforce the maturity levels designed by the CMMC-AB.

Our team of cybersecurity experts brings more than a half century’s worth of understanding and experience in assessing and interpreting standards, guidelines, and best practices to improve cybersecurity programs. Edwards is here to assist you on your CMMC journey!


To continue work with the government, companies must be certified at an appropriate level of maturity against the CMMC, but many companies need help determining where to start.

Our approach is designed to be affordable and provide you with exactly what you need to do in preparation for a CMMC audit. At this time, Edwards offers a NIST 800-171 Assessment, mapped to the CMMC model, with varying levels of consulting support. Edwards continues to increase our offerings as the DoD provides more CMMC compliance information. Contact us at for more information.

CMMC Quick Look Assessment Website Graphic



Our Cybersecurity Team brings more than ten decades of combined cybersecurity experience in assessing and interpreting NIST, CIS, HIPAA and ISO 27001 standards and guidelines. Our expert management and implementation of security programs throughout the government, commercial, and healthcare industries is well respected and far reaching. Meet our team to see why!

Brian Hubbard

Director, Commercial and Cybersecurity


Brian Hubbard brings 35+ years of cybersecurity program management experience to his role within Edwards Performance Solutions. Brian leads all Commercial business and cybersecurity engagements, including CMMC initiatives, supporting organizations in their CMMC knowledge and preparation. Prior to Edwards, Brian led the contractor team supporting NIST in the development of the “Framework for Improving Critical Infrastructure Cybersecurity” (i.e., the NIST Cybersecurity Framework) in response to Executive Order 13636.

Dana Pickett

Chief Information Security Officer (CISO)


Dana Pickett joined Edwards in 2017 as Principal of Cybersecurity and appointed Chief Information Security Officer (CISO) in 2018. He is responsible for maintaining Edwards’ cybersecurity programs, focused on both business and technical risk management for cyber, audit, compliance, and privacy requirements. Dana also manages cyber programs for diverse industries, leading teams and communicating with executive management. He has 32+ years’ of experience successfully implementing security solutions.

Joy Beland

CMMC Training Program Manager


Joy Beland joined Edwards in 2020. Joy founded and managed a successful security-focused MSP practice for 21 years, then pivoted to serve the MSP community as a cybersecurity instructor. After educating 3,000+ Engineers and Development Reps on cybersecurity fundamentals, Joy joined forces with Edwards and is now responsible for managing and delivering all aspects of CMMC-AB approved certification training. She is also an active participant of the Commercial Cybersecurity Assessment Team.

Sam Bell

CMMC Assessment Program Manager


Sam Bell leverages 36+ years of IT and project management experience in managing data warehouse, call center, reporting, and security infrastructure and assessments projects. His focus on process improvement ensures a consistent, repeatable, and measurable approach is taken to deliver value and a secure operating environment for clients. At Edwards, Sam oversees the Cybersecurity Assessments practice, leading NIST 800-53, HIPAA, NIST CSF, and CMMC readiness assessments for firms of all sizes, across diverse industries.

Marcellus Williams

Sr. Penetration Tester

CEH Master ⚬ Security+ ⚬ RP ⚬ CCNA ⚬ CISSP

Marcellus Williams joined Edwards Performance Solutions in 2020 and works concurrently as a Network Analyst in the United States Army Reserves. In addition to 10+ years of penetration testing experience, he holds a Bachelor’s Degree in Computer Science and a Master’s Degree in Computer Information Assurance. Prior to Edwards, he worked at the DoD where he was tasked to emulate Nation State hackers and Advanced Persistent Threats (APTs).

Matt Hoeper

Sr. Cybersecurity Consultant


Matt Hoeper is an experienced cybersecurity professional with 25+ years of IT experience. Matt holds a Master’s degree in Management Information Systems as well as PMP and CISSP certifications. Prior to joining Edwards, he worked for Fortune 500 companies and small businesses in areas of engineering, financial, marketing, supply chain, manufacturing, and health care. Over his career, Matt has conducted security assessments against multiple standards.

Joe Stoner

Cybersecurity Consultant

CEH ⚬ CySA+ ⚬ RP

Joe Stoner is an IT and cybersecurity professional at Edwards with 6+ years of experience, focusing on computer administration and network/system security. Since joining Edwards in 2014, Joe has conducted security risk assessments for clients, using multiple standards and frameworks (i.e., NIST 800-53, 800-171, CSF, and ISO 27001), provided cybersecurity services to mature client security postures, and developed/implemented procedures to meet security goals.

Tyler Gormus

Cybersecurity Consultant

CEH ⚬ RP ⚬ PA*

Tyler Gormus joined the Edwards Cybersecurity Team in 2018. He provides experience in conducting security risk assessments for clients in using multiple standards and frameworks (i.e., NIST 800-53, 800-171, CSF, and ISO 27001), interviewing appropriate stakeholders, and implements an easy to use/costeffective approach for customers working toward compliance. Tyler also holds a Bachelor’s degree in Secure Computing and Information Assurance.