Before every rocket launch, there’s a Go/No-Go check.
There’s a methodical review of every system before the rocket is approved for launch. It’s not a hope or a guess. It’s a verified, station-by-station assessment of mission readiness. CMMC Liftoff is designed so that you can assess your systems and make sure your answer is ‘Go for Launch”.
CMMC Liftoff is more than just a conference – it’s a hands-on day built around the actual CMMC Level 2 Assessment Guide that shapes every question asked during your official assessment.
We’re saying goodbye to the same old overview sessions and long sales pitches. Instead, we bring in the experts who will work through the real requirements and documentation with you, so that you leave knowing exactly where your organization stands and what you need to do next to pass your assessment.
Your assessment is coming.
Make sure you’re ready for launch.
Built around the questions you’re already asking and the answers you actually need, CMMC Liftoff is designed for contractors and MSPs who are serious about getting this right.
Get the momentum your CMMC program needs to give the “Go for Launch”
Connect with industry experts, contractors, and MSPs who are navigating the exact same mission.
Leave with a clear and prioritized plan, not just notes and slides you’ll never look at again.
Know exactly what’s missing, what’s weak,
and what’s ready.
Know exactly what’s missing, what’s weak, and what’s ready.
Ask the hard questions and get straight answers from leading voices.
CEO,
Queen Consulting & Technologies
Executive VP,
Peak InfoSec LLC
President,
Peak InfoSec LLC
Chief Marketing Officer,
Aethon Security
Lead CCA
Redspin
Head of MSP Partnerships
NinjaOne
Stay tuned for our full line-up of speakers and distinguished guests attending CMMC Liftoff 2027.
22685 Holiday Park Drive, Suite 60, Dulles, VA 20166
One full day of practical, assessment-focused sessions. Morning sessions are for everyone; afternoon breakouts split into a DIB Track for GovCon contractors and an MSP Track for service providers — pick the room that fits your mission.
Speaker: Nathan Scott, Queen Consulting
Focus: Emcee welcome, framing of the GovCon + MSP audience, and how to use the sessions and breaks to move your CMMC program forward.
Speaker: Jim Goepel, Peak InfoSec
Focus: A reality check that anchors the day in the rule, legal and regulatory implications, and what’s truly at stake if organizations get it wrong. Jim introduces the big picture and sets context for assessments.
Speaker: Noel Vestal, Aethon Security
Focus: Why successful CMMC programs require balanced investment across people, processes, and tools — and how lopsided programs break down when they meet an assessor.
Speaker: Stuart Itkin, Aethon Security
Focus: How documentation, SSPs, POA&Ms, and artifacts support defensible compliance, and what “good enough” documentation looks like in practice vs. checkbox paperwork.
Speaker: Aaron Freitag, Redspin
Focus: Inside view from a CCA/C3PAO on how assessors evaluate MSP-supported environments, shared responsibility, inherited services, and common gaps with providers.
Speaker: Nathan Scott, Queen Consulting
Focus: Real-world lessons from going through a CMMC assessment: surprises, preparation that paid off, missteps, and practical advice for other GovCons.
Speaker: John Connolly, PMO Delivery
Focus: How to structure and manage CMMC projects (for your own org or clients), keep work on track, and avoid last-minute chaos before assessment.
Speaker: Jim Goepel, Peak InfoSec
Focus: Who is involved, what is evaluated, when to engage, where scope and evidence matter most, why assessments fail, and how to prepare intelligently.
Speaker: Matt Titcombe, Peak InfoSec
Focus: Preparing MSP teams to show evidence, answer questions, and support clients credibly during an assessment — including common mistakes MSPs make when they’re “in the room.”
Speaker: John Connolly, PMO Delivery
Focus: Tailored to contractors: building a Level 2 project plan, aligning stakeholders, sequencing work, and keeping the business running while you implement.
Topic coming soon. Candidate titles under consideration:
Topic coming soon. Candidate titles under consideration:
Speaker: Paul Redding, NinjaOne
Focus: Most CMMC discussions lead with cybersecurity, and for good reason. But the tools you use to manage your clients’ environments are also in scope and matter more than most realize. In this session, we’ll take a practical look at remote IT management in CMMC environments and how the right RMM can become your easiest path to demonstrating compliance.
Focus: Blunt, unscripted Q&A on assessments, documentation, project failures, MSP relationships, and “things nobody tells you in sales calls.”
Panel: Nathan Scott, Queen Consulting (moderator) • Jim Goepel, Peak InfoSec • Matt Titcombe, Peak InfoSec • Aaron Freitag, Redspin • Stuart Itkin, Aethon Security • Noel Vestal, Aethon Security
Speaker: Nathan Scott, Queen Consulting