The B2B Podcast Index
Index
All categories
MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
MethodologySubmit
Best of:MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
An independent project byFame
SearchBest episodesGuestsInsightsMethodologySubmit a podcast
Index/Ops/Cyber Compliance & Beyond
Cyber Compliance & Beyond artwork

27 - CUI Discovery for CMMC Compliance

Cyber Compliance & Beyond · 2026-05-12 · 41 min

0:00--:--

Episode notes

Scoping is one of the most misunderstood yet essential parts of the CMMC ecosystem. Before organizations implement controls, buy tools, or prepare for assessments, they must first define what is in scope - their data, people, processes, and systems. When done well, scoping reduces costs, limits liability, and streamlines compliance. When done poorly, it increases the risk of assessment failures, whistleblower issues, and expensive rework. In this episode, Cole talks with cybersecurity leaders Andy Paul and RJ Williams to clarify what scoping really involves, why organizations often get it wrong, and how an enclave-based approach can simplify compliance. They explore the operational, technical, and contractual details many teams overlook, from CUI discovery and cage code challenges to the real cost drivers of CMMC. Whether you're preparing for your first assessment, refining your compliance strategy, or trying to understand how enclaves fit into your environment, this conversation offers practical guidance you can use right away. We discuss: Why scoping is the most critical step in any CMMC program. How to correctly determine where CUI resides - and why most organizations struggle.

More from Cyber Compliance & Beyond

All episodes →
  • 30 - Teaching AI to Protect CUI58 / 100
  • 29 - Modernizing the Shop Floor: Security, Efficiency and Survival
  • 28 - Keeping OT Safe, Secure and Online
  • 26 - Fixing What Breaks CMMC Assessments
  • 25 - Building a Reward-Driven Security Culture
Explore the best B2B Ops podcasts →
All Cyber Compliance & Beyond episodes →