TechNet Augusta 2026

AFCEA Greater Augusta Chapter Course: Zero Trust as the Operational Backbone of CMMC (Room Estes A)

17 Aug 26
4:00 PM - 5:00 PM

Tracks: Continuing Education, Greater Augusta Chapter Courses

Now that Cybersecurity Maturity Model Certification (CMMC) has transitioned from a compliance construct to an enforceable contractual requirement, defense contractors are confronting a critical reality: compliance alone does not equal resilience. The Cybersecurity Maturity Model Certification establishes what must be protected and which practices must be institutionalized, but it is Zero Trust Architecture (ZTA) that defines how those requirements are sustainably operationalized in modern, hybrid, and contested environments.

This session explores how Zero Trust is not a parallel initiative to CMMC, but the architectural and operational foundation that enables consistent, measurable, and defensible compliance across CMMC domains. By eliminating implicit trust and continuously validating users, devices, applications, and data, Zero Trust directly reinforces CMMC’s core objectives: protecting Controlled Unclassified Information (CUI), enforcing least privilege, reducing lateral movement, and strengthening auditability.

Attendees will examine how Zero Trust principles naturally map to and strengthen multiple CMMC domains, including Access Control, Identification and Authentication, System and Communications Protection, Audit and Accountability, and Incident Response. The presentation moves beyond theory to address practical realities faced by Defense Industrial Base (DIB) organizations: identity-centric security, device trust and posture, policy-based access enforcement, continuous monitoring, and the role of people and process alongside technology.

Rather than treating Zero Trust as a tooling checklist or a future-state aspiration, this session frames ZTA as a disciplined operating model that enables organizations to meet CMMC requirements more effectively, reduce assessment friction, and improve long-term cyber resilience. By intertwining Zero Trust with CMMC, organizations can move from reactive compliance to a proactive, mission-aligned security posture that scales with evolving threats, supply chain complexity, and operational demands.