CMMC Practice Requirement:

Provide protection from malicious code at appropriate locations within organizational information systems.

CMMC Requirement Explanation:

To help protect your workstations and servers from malware you need to use anti-malware software. Anti-malware software scans your systems for malicious files. It also helps prevents malware from taking control of your systems.

Example CMMC Implementation:

Install anti-malware software onto your workstations and servers. If you have network devices such as a firewall that can detect malware then configure them to do so.


- Scenario 1:


Alice, a system administrator has installed anti-virus software onto her company's computers and servers to protect them from viruses, spyware, and other malicious code.
An example of anti-malware software installed on a computer.
An example of anti-malware software installed on a computer.

Discover Our NIST SP 800-171 Solutions:


Compliance Accelerator

For contractors seeking compliance

Quantum Assessor

For IT service providers

Supply Chain Verifier

For contractors seeking to verify partner compliance