THE BOUNDARY
Two networks, and the boundary between them.
General engineering network
Commercial CAD work, quoting, email, and everything that never touches CUI.
Compliant enclave
- Segmented VLAN
- TLS 1.3 in transit
- Managed endpoints only
- Session logging
Nothing on this diagram should be read as a certification claim. It describes the environment we built and run, not a completed C3PAO assessment.
HOW THE INFRASTRUCTURE IS BUILT
Three layers of separation between CUI and everything else.
ADAPT is not CMMC certified. We have not completed a C3PAO assessment. What we have built is the network and endpoint infrastructure the 110 NIST SP 800-171 rev 2 practices describe, and we run it that way every day.
SEPARATION
A dedicated network segment.
CUI-touching work lives on its own network segment, separated from our general-purpose engineering network by VLAN and firewall boundaries. Traffic does not cross between the two.
ENCRYPTION
Encrypted at rest and in transit.
Data at rest is encrypted in line with FIPS 140-2 and 140-3 aligned methods. Data in transit moves over TLS 1.3. Both follow NIST recommendations for protecting CUI.
ENDPOINT MANAGEMENT
Managed workstations, nothing personal.
Every endpoint in the environment is a managed workstation under MDM with whole-disk encryption. No personal devices, no unmanaged hardware, no exceptions for convenience.
HOW WE RUN THIS LAYER
Four steps, applied in order, held continuously.
This is the operating loop for the network and endpoint layer of the compliant environment.
Segment
Stand up the dedicated segment. VLAN and firewall boundaries between CUI work and general engineering.
Encrypt
Whole-disk encryption on endpoints, FIPS-aligned encryption at rest, TLS 1.3 in transit.
Monitor
Session-level logging on every workstation and every connection into the segment.
Audit
Review the logs and the configuration against the NIST SP 800-171 rev 2 practices they map to.
THE ENCLAVE, IN ONE LINE
Built to the standard. Not certified to it.
CMMC Level 2 certification is a formal C3PAO assessment. ADAPT has not completed that step, and nothing on this page should be read as a certification claim.
What we can show you is the environment itself. A separate network segment, encrypted endpoints and storage, and continuous logging, all built to the 110 NIST SP 800-171 rev 2 practices. If your program needs a certified supplier, we are not that today. If it needs a supplier whose infrastructure already works this way, ask us to walk you through it.
Brian Smith, Director of Engineering
TALK TO AN ENGINEER
Tell us what you are building.
Send the program brief. An engineer on our team will read it and respond within one business day. Not a sales coordinator. Not a routing form.