!! Important - Please Read !!
- CMCP - Purchase only one Certification Course (do not change the quantity). This entitles you to one course seat (i.e. user license) at $6750.
- Deep Dive - Purchase only one copy of a particular framework (do not change the quantity). This entitles you to one framework (i.e. user license) at $750.
- To purchase additional course CMCP seats at $1200/user or receive a 100% discount for additional Deep Dive copies of a particular framework course, please select learner/admin as your role when completing the checkout process.
- You will receive an email with a coupon code and related instructions that can be applied for the discount.
- Once enrolled in the certification course, you will have access to - for purchase via the course catalog - the Deep Dive: Regulatory Frameworks and Cybersecurity Standards.
- **All purchases are final. Please note these instructions.**
Certified Managed Compliance Provider (CMCP)
CMCP gives your MSP the credential, the skills, and the platform mastery to deliver the compliance services your customers are already asking for.
CMCP is awarded to your MSP as a business. It signals to every prospect and customer that your organization has been trained, tested, and verified to deliver compliance services using a structured, auditable methodology built on the Kaseya Compliance Manager platform.
Eight progressive models build your practice from the ground up - from compliance fundamentals and platform configuration through client delivery, reporting, and advanced multiframework engagements.
Enroll your organization today, or reach out to the Digital Hands GRC team at grcteam@digitalhands.com with any questions. The CMCP program is available exclusively through Digital Hands in partnership with Kaseya.
Here is the course outline:
1. GRC FoundationsThis module takes MSPs through a deliberate progression — GRC ecosystem, control theory, framework landscape, evidence fundamentals, and compliance lifecycle — so they can walk into any compliance conversation, correctly frame GRC for the customer, identify control types, and connect evidence to audit requirements, all while staying clear of positioning themselves as an auditor. 1 section
|
|
|
2. Framework Scoping and Control MappingTo fix scoping errors — the leading cause of engagement failures, from cost overruns to audit findings and liability exposure — this module progresses from boundary design through data mapping, control ownership, and multi-framework mapping to scope defense, equipping MSPs to correctly scope engagements and build unified evidence strategies across frameworks. 1 section
|
|
|
3. Compliance Manager ConfigurationTo build hands-on mastery of Kaseya Compliance Manager, this module progresses from platform architecture through framework interaction, integration design, and role/permission alignment to baseline scan interpretation — equipping MSPs to correctly configure environments, activate frameworks, integrate tools, set role-based access, and validate scan outputs. 1 section
|
|
|
4. Evidence Collection and ValidationThis module progresses MSPs through evidence taxonomy, automated vs. manual collection, sampling, and normalization to the auditor's perspective on common rejections — building the skills to run a high-quality evidence program that automates where possible and catches rejections before submission. 1 section
|
|
|
5. POA&M GovernanceThe POA&M drives the remediation program — this module progresses from construction through risk scoring, remediation planning, governance cadence, and exception management, equipping MSPs to build and govern a POA&M that delivers on-time audit readiness via monthly cadences and documented approvals. 1 section
|
|
|
6. Executive Reporting and Audit ReadinessTo replace unread dashboards with reporting executives will use, this module progresses from posture scoring through risk heat maps and narrative to interview prep and evidence assembly, equipping MSPs to produce board-ready reports and prepare clients for audit via dry runs and a complete, auditor-ready evidence package. 1 section
|
|
|
7. Delivery Quality Assurance and Continuous GovernanceTo prevent quality degradation as GRC practices scale, this module progresses from the four-layer QA framework through evidence scoring and KPI tracking to governance calendars and drift detection, equipping MSPs to catch compliance drift before it becomes an audit finding. 1 section
|
|
|
8. Advanced Framework DeliveryAdvancing to practitioner-level work, this module applies prior scoping, evidence, governance, and QA skills to complex, high-margin multi-framework engagements, equipping MSPs to navigate CMMC Level 2 high-risk areas, apply HIPAA safeguards correctly, unify governance across simultaneous obligations, and manage advanced audit scenarios from scope disputes to late-stage findings. 1 section
|
|
|
9. Compliance Manager Program Certification ExamDemonstrate practitioner-level capability for end-to-end compliance engagements to serve as a trusted compliance-as-a-service delivery partner for MSP clients. 1 section
|
|
|
10. Ask the Expert SessionsSelect and enroll in up to one session per month! The question-and-answer session will walk through previously submitted questions. Please submit questions to cmcpquestions@digitalhands.com. All questions and discussions will be viewable by all participants. Please do not/not include any proprietary information. 1 section
|
|
|
Completion
The following certificates are awarded when the course is completed:
![]() |
CMCP Diploma Fillable v2 |
