| 1.50 ESXI-80-000223 | CIS VMware vSphere 8.0 ESXi STIG v1.0.0 CAT II VMware | VMware | CONFIGURATION MANAGEMENT |
| 1.61 O365-EX-000029 | CIS Microsoft Office 365 ProPlus STIG v1.1.0 CAT II | Windows | SYSTEM AND COMMUNICATIONS PROTECTION |
| 4.5.1.2 Ensure password expiration is 365 days or less | CIS Ubuntu Linux 18.04 LTS v2.2.0 L1 Server | Unix | CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION |
| 4.5.1.2 Ensure password expiration is 365 days or less | CIS Ubuntu Linux 18.04 LTS v2.2.0 L1 Workstation | Unix | CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION |
| 4.6.1.1 Ensure password expiration is 365 days or less | CIS Amazon Linux 2023 v1.0.0 L1 Server | Unix | CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND SERVICES ACQUISITION |
| 5.3.1.1 Ensure password expiration is 365 days or less | CIS Google Container-Optimized OS v1.2.0 L2 Server | Unix | IDENTIFICATION AND AUTHENTICATION |
| 5.4.1.1 Ensure password expiration is 365 days or less - login.defs | CIS Fedora 19 Family Linux Server L1 v1.0.0 | Unix | IDENTIFICATION AND AUTHENTICATION |
| 5.4.1.1 Ensure password expiration is 365 days or less - login.defs | CIS Debian Family Server L1 v1.0.0 | Unix | IDENTIFICATION AND AUTHENTICATION |
| 5.4.1.1 Ensure password expiration is 365 days or less - login.defs | CIS Debian Family Workstation L1 v1.0.0 | Unix | IDENTIFICATION AND AUTHENTICATION |
| 5.4.1.1 Ensure password expiration is 365 days or less - users | CIS Debian Family Server L1 v1.0.0 | Unix | IDENTIFICATION AND AUTHENTICATION |
| 5.4.1.1 Ensure password expiration is 365 days or less - users | CIS Debian Family Workstation L1 v1.0.0 | Unix | IDENTIFICATION AND AUTHENTICATION |
| 5.4.1.1 Ensure password expiration is 365 days or less - users | CIS Fedora 19 Family Linux Workstation L1 v1.0.0 | Unix | IDENTIFICATION AND AUTHENTICATION |
| 5.4.1.2 Ensure password expiration is 365 days or less | CIS SUSE Linux Enterprise 12 v3.2.1 L1 Server | Unix | CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION |
| 5.5.1.1 Ensure password expiration is 365 days or less | CIS Amazon Linux 2 STIG v2.0.1 L1 Server | Unix | CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION |
| 5.5.1.1 Ensure password expiration is 365 days or less - login.defs | CIS Red Hat Enterprise Linux 7 STIG v2.0.0 L1 Server | Unix | CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION |
| 5.5.1.1 Ensure password expiration is 365 days or less - login.defs | CIS Red Hat Enterprise Linux 7 STIG v2.0.0 L1 Workstation | Unix | CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION |
| 5.6.1.1 Ensure password expiration is 365 days or less | CIS CentOS Linux 8 Workstation L1 v2.0.0 | Unix | CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION |
| 5.6.1.1 Ensure password expiration is 365 days or less | CIS Fedora 28 Family Linux Workstation L1 v2.0.0 | Unix | CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION |
| 6.12 Set EEPROM Security Mode and Log Failed Access - SPARC only. Should *not* be 'security-mode=none'. | CIS Solaris 10 L1 v5.2 | Unix | ACCESS CONTROL |
| 18.10.43.2 Ensure 'Allow camera and microphone access in Microsoft Defender Application Guard' is set to 'Disabled' | CIS Microsoft Windows 11 Stand-alone v5.0.0 L1 BL | Windows | CONFIGURATION MANAGEMENT |
| 18.10.43.4 Ensure 'Allow files to download and save to the host operating system from Microsoft Defender Application Guard' is set to 'Disabled' | CIS Microsoft Windows 11 Enterprise v5.1.0 L1 BL | Windows | CONFIGURATION MANAGEMENT |
| 18.10.43.5 Ensure 'Configure Microsoft Defender Application Guard clipboard settings: Clipboard behavior setting' is set to 'Enabled: Enable clipboard operation from an isolated session to the host' | CIS Microsoft Windows 11 Enterprise v5.1.0 L1 | Windows | CONFIGURATION MANAGEMENT |
| 18.10.43.5 Ensure 'Configure Microsoft Defender Application Guard clipboard settings: Clipboard behavior setting' is set to 'Enabled: Enable clipboard operation from an isolated session to the host' | CIS Microsoft Windows 11 Enterprise v5.1.0 L1 BL | Windows | CONFIGURATION MANAGEMENT |
| 20.13 (L1) Ensure 'Web browser is supported and secured' | CIS Microsoft Windows 10 EMS Gateway v3.0.0 L1 | Windows | CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION |
| Always prevent untrusted Microsoft Query files from opening | MSCT Office 365 ProPlus 1908 v1.0.0 | Windows | SYSTEM AND COMMUNICATIONS PROTECTION |
| CIS Microsoft IIS 8 Benchmark v1.5.1 Level 1 | CIS IIS 8.0 v1.5.1 Level 1 | Windows | |
| CIS Microsoft IIS 8 Benchmark v1.5.1 Level 2 | CIS IIS 8.0 v1.5.1 Level 2 | Windows | |
| CIS_Microsoft_SQL_Server_2019_v1.6.0_L1_AWS_RDS_Windows.audit from CIS Microsoft SQL Server 2019 v1.6.0 | CIS Microsoft SQL Server 2019 v1.6.0 L1 AWS RDS Windows | Windows | |
| CIS_Microsoft_SQL_Server_2019_v1.6.0_L1_Database_Engine_Windows.audit from CIS Microsoft SQL Server 2019 v1.6.0 | CIS Microsoft SQL Server 2019 v1.6.0 L1 Database Engine Windows | Windows | |
| CIS_Microsoft_SQL_Server_2022_v1.3.0_L1_AWS_RDS_Windows.audit from CIS Microsoft SQL Server 2022 v1.3.0 | CIS Microsoft SQL Server 2022 v1.3.0 L1 AWS RDS Windows | Windows | |
| CIS_Microsoft_SQL_Server_2022_v1.3.0_L1_Database_Engine_Windows.audit from CIS Microsoft SQL Server 2022 v1.3.0 | CIS Microsoft SQL Server 2022 v1.3.0 L1 Database Engine Windows | Windows | |
| CIS_Microsoft_SQL_Server_2025_v1.0.0_L1_Database_Engine_Windows.audit from CIS Microsoft SQL Server 2025 v1.0.0 | CIS Microsoft SQL Server 2025 v1.0.0 L1 Database Engine Windows | Windows | |
| CIS_Microsoft_Windows_10_STIG_v1.0.0_CAT_II.audit from CIS Microsoft Windows 10 STIG v1.0.0 | CIS Microsoft Windows 10 STIG v1.0.0 CAT II | Windows | |
| CIS_Microsoft_Windows_10_STIG_v1.0.0_CAT_III.audit from CIS Microsoft Windows 10 STIG v1.0.0 | CIS Microsoft Windows 10 STIG v1.0.0 CAT III | Windows | |
| CIS_Microsoft_Windows_11_Enterprise_v5.1.0_BL.audit from CIS Microsoft Windows 11 Enterprise v5.1.0 | CIS Microsoft Windows 11 Enterprise v5.1.0 BL | Windows | |
| CIS_Microsoft_Windows_11_STIG_v1.2.0_CAT_I.audit from CIS Microsoft Windows 11 STIG v1.2.0 | CIS Microsoft Windows 11 STIG v1.2.0 CAT I | Windows | |
| CIS_Microsoft_Windows_11_STIG_v1.2.0_CAT_II.audit from CIS Microsoft Windows 11 STIG v1.2.0 | CIS Microsoft Windows 11 STIG v1.2.0 CAT II | Windows | |
| CIS_Microsoft_Windows_Server_2022_v5.1.0_L1_DC.audit from CIS Microsoft Windows Server 2022 v5.1.0 | CIS Microsoft Windows Server 2022 v5.1.0 L1 DC | Windows | |
| CIS_Microsoft_Windows_Server_2022_v5.1.0_L1_MS.audit from CIS Microsoft Windows Server 2022 v5.1.0 | CIS Microsoft Windows Server 2022 v5.1.0 L1 MS | Windows | |
| CIS_Microsoft_Windows_Server_2022_v5.1.0_L2_DC.audit from CIS Microsoft Windows Server 2022 v5.1.0 | CIS Microsoft Windows Server 2022 v5.1.0 L2 DC | Windows | |
| CIS_Microsoft_Windows_Server_2022_v5.1.0_L2_MS.audit from CIS Microsoft Windows Server 2022 v5.1.0 | CIS Microsoft Windows Server 2022 v5.1.0 L2 MS | Windows | |
| CIS_Microsoft_Windows_Server_2022_v5.1.0_NG_DC.audit from CIS Microsoft Windows Server 2022 v5.1.0 | CIS Microsoft Windows Server 2022 v5.1.0 NG DC | Windows | |
| CIS_Microsoft_Windows_Server_2022_v5.1.0_NG_MS.audit from CIS Microsoft Windows Server 2022 v5.1.0 | CIS Microsoft Windows Server 2022 v5.1.0 NG MS | Windows | |
| CIS_Microsoft_Windows_Server_2025_v2.1.0_L1_DC.audit from CIS Microsoft Windows Server 2025 v2.1.0 | CIS Microsoft Windows Server 2025 v2.1.0 L1 DC | Windows | |
| CIS_Microsoft_Windows_Server_2025_v2.1.0_L1_MS.audit from CIS Microsoft Windows Server 2025 v2.1.0 | CIS Microsoft Windows Server 2025 v2.1.0 L1 MS | Windows | |
| CIS_Microsoft_Windows_Server_2025_v2.1.0_L2_DC.audit from CIS Microsoft Windows Server 2025 v2.1.0 | CIS Microsoft Windows Server 2025 v2.1.0 L2 DC | Windows | |
| CIS_Microsoft_Windows_Server_2025_v2.1.0_L2_MS.audit from CIS Microsoft Windows Server 2025 v2.1.0 | CIS Microsoft Windows Server 2025 v2.1.0 L2 MS | Windows | |
| CIS_Microsoft_Windows_Server_2025_v2.1.0_NG_DC.audit from CIS Microsoft Windows Server 2025 v2.1.0 | CIS Microsoft Windows Server 2025 v2.1.0 NG DC | Windows | |
| CIS_Microsoft_Windows_Server_2025_v2.1.0_NG_MS.audit from CIS Microsoft Windows Server 2025 v2.1.0 | CIS Microsoft Windows Server 2025 v2.1.0 NG MS | Windows | |
| MS.EXO.2.2v2 - An SPF policy SHALL be published for each domain that fails all non-approved senders. | CISA SCuBA Microsoft 365 Exchange Online v1.5.0 | microsoft_azure | ACCESS CONTROL, SECURITY ASSESSMENT AND AUTHORIZATION, CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY |