CMMCDocsCMMCDocs.com

Home / Glossary / DoD Assessment Methodology

DoD Assessment Methodology

Also known as: NIST SP 800-171 DoD Assessment Methodology ยท DAM

The DoD-published scoring methodology for NIST SP 800-171 self-assessments. Starts at 110 and deducts 1, 3, or 5 points per unmet requirement.

The NIST SP 800-171 DoD Assessment Methodology is the scoring system the Department of Defense uses to convert a contractor's NIST SP 800-171 implementation status into a single numeric score posted in SPRS.

The methodology assigns a point value to each of the 110 security requirements: most are worth 1 point, but a subset are weighted at 3 or 5 points based on their importance. A contractor starts at 110 (full implementation) and deducts the corresponding point value for each requirement not fully met. A few requirements have partial-credit rules.

The resulting score ranges from a maximum of 110 down to a minimum of -203. A contractor's score is one of the inputs DoD uses to evaluate supplier risk, and it is required for contract eligibility under DFARS 252.204-7019.

Stop Googling. Start working.

CMMCDocs has all 110 NIST SP 800-171 Rev 2 requirements built in — with the language, the templates, and the evidence vault you need. Spin up a free demo workspace and click around the way an assessor would.

Get my demo account