Revision 1.1Jul 1, 2026

Informational Update
  • 18.9.5.1 (NG) Ensure 'Turn On Virtualization Based Security' is set to 'Enabled'
  • 18.9.5.2 (NG) Ensure 'Turn On Virtualization Based Security: Select Platform Security Level' is set to 'Secure Boot' or higher
  • 18.9.5.3 (NG) Ensure 'Turn On Virtualization Based Security: Virtualization Based Protection of Code Integrity' is set to 'Enabled with UEFI lock'
  • 18.9.5.4 (NG) Ensure 'Turn On Virtualization Based Security: Require UEFI Memory Attributes Table' is set to 'True (checked)'
  • 18.9.5.5 (NG) Ensure 'Turn On Virtualization Based Security: Credential Guard Configuration' is set to 'Enabled with UEFI lock' (MS Only)
  • 18.9.5.7 (NG) Ensure 'Turn On Virtualization Based Security: Secure Launch Configuration' is set to 'Enabled'
Miscellaneous
  • Audit deprecated.
  • Metadata updated.
  • Platform check updated.
  • References updated.
Added
  • CIS_Microsoft_Windows_Server_2019_v4.0.0_NG_MS.audit from CIS Microsoft Windows Server 2019 v4.0.0
Removed
  • CIS_Microsoft_Windows_Server_2019_v4.0.0_NG_MS.audit from CIS Microsoft Windows Server 2019 Benchmark v4.0.0