CMMC Level 1 · Assessment ObjectiveSEC / OBJSC.L1-b.1.x(e)

System and Communications Protection · SC.L1-b.1.x(e)

Communications are controlled at the external system boundary

An assessment objective under requirement SC.L1-b.1.x, Boundary Protection, in the System and Communications Protection domain.

Objective Statement

communications are controlled at the external system boundary
Source · NIST SP 800-171A

Objective identity

Framework
Cybersecurity Maturity Model Certification · Level 1
Domain
System and Communications Protection (SC)
Objective ID
SC.L1-b.1.x(e)

Assessment Procedures

The official government assessment method for this objective, from NIST SP 800-171A. An assessor examines artifacts, interviews people, and tests mechanisms to determine the result.

Examine

  • System and communications protection policy
  • procedures addressing boundary protection
  • system security plan
  • system design documentation
  • network diagrams
  • boundary protection hardware and software configuration
  • other relevant documents or records

Interview

  • Personnel with boundary protection responsibilities
  • system or network administrators
  • personnel with information security responsibilities

Test

  • Mechanisms implementing boundary protection capability
  • organizational processes for monitoring and controlling communications at the system boundary

Source Authority

Primary Authority
NIST SP 800-171A
Requirement Authority
FAR 52.204-21(b)(1)
Framework Version
CMMC Assessment Guide, Level 1 v2.13 (September 2024)
Effective Date
2024-12-16
Last Verified
2026-08

Build the Record Behind This

AssessrLog logs the determination for this objective with its evidence and source record, so your Level 1 self-assessment stays traceable and ready to affirm. The MET, NOT MET, or N/A call is always yours to make.