What is AC.L1-b.1.ii - Transaction & Function Control for CMMC Level 1?
Last updated: 6/5/2025
AC.L1-b.1.ii requires limiting information system access to the types of transactions and functions that authorized users are permitted to execute. This means users should only be able to perform actions necessary for their job roles (e.g., read-only vs. edit).