About Us

Securing Businesses
of Every Size

LCCA-led CMMC compliance and cybersecurity consulting built on expertise, integrity, and a commitment to protecting organizations from DoD primes to Main Street.

Juan Velasquez — Lead CMMC Certified Assessor

Juan Velasquez

CCP · CCA · CISSP · CEH

CISSP

Security Professional

CEH

Ethical Hacker

CCA

CMMC Assessor

CCP

CMMC Professional

Cybersecurity Professional

My Story

Juan Velasquez embarked on his Information Technology journey in 1995, a time when technology was just beginning to take its first steps. His foresight was evident from the start, as he grasped the significance of robust fundamental knowledge in programming, computer networks and systems, system administration, database systems, security, and web application development.

His understanding of the role of education in safeguarding not just friends, but entire communities and national infrastructure, is a testament to the profound impact of his knowledge and expertise.

His role as a project lead in network design, implementation, redundancy, security, compliance, regulation, and all relevant aspects of end-to-end continuity, has been complemented by his dedication to supporting the rest of the engineering department. He has been a source of inspiration, mentoring team members and tackling escalated and complex issues with his leadership skills.

He deeply appreciates the pivotal role of documentation and training, which are the bedrock of our organization's commitment to delivering successful implementations and the highest level of professional services to our customers.

CCA

CMMC Certified Assessor

CCP

CMMC Certified Professional

CISSP

Certified Information Systems Security Professional

CEH

Certified Ethical Hacker

These certifications indicate a well-rounded cybersecurity professional — technically adept in ethical hacking and penetration testing (CEH), well-versed in broader strategic security practices (CISSP), and qualified to assess and guide CMMC compliance (CCA, CCP).

Our Values

What Drives Us

Integrity

Transparent, honest guidance at every step of the compliance journey.

Precision

Every control, every artifact — assessed with an assessor's eye for detail.

Partnership

We work alongside your team, not above it. Your success is our mission.

Expertise

LCCA-level knowledge that turns complexity into a clear, actionable path.

Key Dates

The Reality of 2026

CMMC is no longer a "future requirement" — it is a contractual reality with firm deadlines.

November 2025

CMMC 2.0 final rule takes effect. Compliance is now contractually required.

October 2026

Every new DoD solicitation requires verified CMMC compliance. Self-assessments no longer sufficient for Level 2.

Ongoing

False Claims Act (FCA) risk for contractors who misrepresent their compliance status.

Common Contractor Failure Points

These are the areas where most contractors fall short during their CMMC assessment

Incomplete or outdated System Security Plan (SSP)
Missing or insufficient evidence artifacts for key controls
Poorly defined CUI boundaries and data flow documentation
Lack of continuous monitoring and incident response procedures
Inadequate access control and identity management practices
No formal Plan of Action & Milestones (POA&M) tracking

Don't Wait Until It's Too Late

The October 2026 deadline is approaching. Get your organization audit-ready with LCCA-led guidance.