Personnel Security

Personnel security encompasses the screening, oversight, and management of people with access to organizational systems and sensitive information. It includes background checks before granting access, ongoing assessment of personnel trustworthiness, and security procedures when employees leave or change roles.

For defense contractors, personnel security also involves managing security clearances, need-to-know determinations, and ensuring that access is promptly revoked when employees are terminated, transferred, or no longer require it. The insider threat program overlaps significantly with personnel security.

Why It Matters

Personnel security is a CMMC domain. Assessors will verify that you screen personnel before granting access to CUI, revoke access promptly upon termination or transfer, and have processes for managing the human element of your security program.

Related Resources