20.65 Ensure 'The system uses an anti-virus program'

Information

This policy setting ensures that the system must use an anti-virus program.

Rationale:

Malicious software can establish a base on individual desktops and servers. Employing an automated mechanism to detect this type of software will aid in elimination of the software from the operating system.

Impact:

Anti-virus software must be installed on the system.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

If no anti-virus software is in use, install Windows Defender or third-party anti-virus.

Open PowerShell

Type Install-WindowsFeature -Name Windows-Defender

For third-party anti-virus, install per anti-virus instructions and disable Windows Defender.

Open PowerShell

Type Uninstall-WindowsFeature -Name Windows-Defender

Default Value:

Windows defender - Enabled

Additional Information:

Microsoft Windows Server 2019 Security Technical Implementation Guide:
Version 2, Release 1, Benchmark Date: November 13, 2020

Vul ID: V-205850
Rule ID: SV-205850r569245_rule
STIG ID: WN19-00-000110
Severity: CAT I

See Also

https://workbench.cisecurity.org/files/3345

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-3, CSCv7|8.1

Plugin: Windows

Control ID: d8a4b9c4a98cd9e4023d0a5e5360dea6ca56563ea8c7777a79b6417c97460d8b