Item Search

NameAudit NamePluginCategory
1.1.3.1 Configure AuthorizationCIS Cisco IOS XR 7.x v1.0.1 L2Cisco

ACCESS CONTROL

1.2.1 Ensure the container host has been HardenedCIS Docker v1.8.0 L1 OS LinuxUnix

CONFIGURATION MANAGEMENT

1.6.5 Apply Security Context to Your Pods and ContainersCIS Kubernetes 1.13 Benchmark v1.4.1 L2Unix
1.10 O365-CO-000007CIS Microsoft Office 365 ProPlus STIG v1.1.0 CAT IIWindows

CONFIGURATION MANAGEMENT

1.19 O365-CO-000017CIS Microsoft Office 365 ProPlus STIG v1.1.0 CAT IIWindows

SYSTEM AND COMMUNICATIONS PROTECTION

1.136 APPL-26-004050CIS Apple macOS 26 Tahoe STIG v1.0.0 CAT IIIUnix

AUDIT AND ACCOUNTABILITY

1.137 APPL-14-004050CIS Apple macOS 14 Sonoma STIG v1.0.0 CAT IIIUnix

AUDIT AND ACCOUNTABILITY

1.139 APPL-15-004050CIS Apple macOS 15 Sequoia STIG v1.0.0 CAT IIIUnix

AUDIT AND ACCOUNTABILITY

2.3.27.8 Ensure 'Control how Office handles form-based sign-in prompts' is set to 'Enabled: Block all prompts'CIS Microsoft Office Enterprise v1.2.0 L1Windows

CONFIGURATION MANAGEMENT

3.5 Ensure 'PASSWORD_REUSE_TIME' Is Greater than or Equal to '365'CIS Oracle Server 18c DB Traditional Auditing v1.1.0OracleDB

IDENTIFICATION AND AUTHENTICATION

3.5 Retain install.log for 365 or more daysCIS Apple OSX 10.11 El Capitan L1 v1.1.0Unix

AUDIT AND ACCOUNTABILITY

3.5 Retain install.log for 365 or more daysCIS Apple macOS 10.12 L1 v1.2.0Unix

AUDIT AND ACCOUNTABILITY

3.5 Retain install.log for 365 or more daysCIS Apple OSX 10.10 Yosemite L1 v1.2.0Unix

AUDIT AND ACCOUNTABILITY

4.3 Enable Auditing of File Metadata Modification Events - AUE_CHMOD : cisCIS Solaris 11.1 L1 v1.0.0Unix

AUDIT AND ACCOUNTABILITY

4.3 Enable Auditing of File Metadata Modification Events - AUE_CHMOD : cisCIS Solaris 11 L1 v1.1.0Unix

AUDIT AND ACCOUNTABILITY

4.3 Enable Auditing of File Metadata Modification Events - AUE_FCHMOD : cisCIS Solaris 11.2 L1 v1.1.0Unix

AUDIT AND ACCOUNTABILITY

4.3 Enable Auditing of File Metadata Modification Events - AUE_LCHOWN : cisCIS Solaris 11 L1 v1.1.0Unix

AUDIT AND ACCOUNTABILITY

4.4 Enable Auditing of Process and Privilege Events - AUE_FCHROOT : cisCIS Solaris 11.1 L1 v1.0.0Unix

AUDIT AND ACCOUNTABILITY

4.4 Enable Auditing of Process and Privilege Events - AUE_PRIOCNTLSYS : cisCIS Solaris 11.1 L1 v1.0.0Unix

AUDIT AND ACCOUNTABILITY

4.4 Enable Auditing of Process and Privilege Events - AUE_SETEGID : cisCIS Solaris 11.1 L1 v1.0.0Unix

AUDIT AND ACCOUNTABILITY

4.4 Enable Auditing of Process and Privilege Events - AUE_SETEGID : cisCIS Solaris 11.2 L1 v1.1.0Unix

AUDIT AND ACCOUNTABILITY

4.4 Enable Auditing of Process and Privilege Events - AUE_SETREUID : cisCIS Solaris 11.2 L1 v1.1.0Unix

AUDIT AND ACCOUNTABILITY

4.4 Enable Auditing of Process and Privilege Events - AUE_SETSID : cisCIS Solaris 11.1 L1 v1.0.0Unix

AUDIT AND ACCOUNTABILITY

4.4 Enable Auditing of Process and Privilege Events - AUE_SETUID : cisCIS Solaris 11 L1 v1.1.0Unix

AUDIT AND ACCOUNTABILITY

7.5 Set 'default_password_lifetime' to Require a Yearly Password ChangeCIS MySQL 5.7 Enterprise Database L1 v2.0.0MySQLDB

ACCESS CONTROL

7.5 Set 'default_password_lifetime' to Require a Yearly Password ChangeCIS MySQL 5.7 Community Database L1 v2.0.0MySQLDB

ACCESS CONTROL

18.9.5.5 Ensure 'Turn On Virtualization Based Security: Credential Guard Configuration' is set to 'Enabled with UEFI lock'CIS Microsoft Windows 11 Stand-alone v5.0.0 L1 BLWindows

SYSTEM AND INFORMATION INTEGRITY

18.9.5.5 Ensure 'Turn On Virtualization Based Security: Credential Guard Configuration' is set to 'Enabled with UEFI lock'CIS Microsoft Windows 11 Enterprise v5.1.0 L1 BLWindows

SYSTEM AND INFORMATION INTEGRITY

18.9.5.7 Ensure 'Turn On Virtualization Based Security: Kernel-mode Hardware-enforced Stack Protection' is set to 'Enabled: Enabled in enforcement mode'CIS Microsoft Windows 11 Enterprise v5.1.0 L1Windows

SYSTEM AND INFORMATION INTEGRITY

18.9.5.7 Ensure 'Turn On Virtualization Based Security: Kernel-mode Hardware-enforced Stack Protection' is set to 'Enabled: Enabled in enforcement mode'CIS Microsoft Windows 11 Stand-alone v5.0.0 L1Windows

SYSTEM AND INFORMATION INTEGRITY

18.9.5.7 Ensure 'Turn On Virtualization Based Security: Kernel-mode Hardware-enforced Stack Protection' is set to 'Enabled: Enabled in enforcement mode'CIS Microsoft Windows 11 Stand-alone v5.0.0 L1 BLWindows

SYSTEM AND INFORMATION INTEGRITY

18.10.24.1 (L1) Ensure 'EMET 5.52' or higher is installedCIS Windows Server 2012 R2 MS L1 v3.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

18.10.42.5.2 (L1) Ensure 'Join Microsoft MAPS' is set to 'Disabled'CIS Microsoft Windows 10 EMS Gateway v3.0.0 L1Windows

CONFIGURATION MANAGEMENT

23.2 Ensure 'Credential Guard' is set to 'Enabled with UEFI lock'CIS Microsoft Intune for Windows 11 v5.0.0 L1Windows

SYSTEM AND INFORMATION INTEGRITY

Always open untrusted database files in Protected ViewMSCT M365 Apps for enterprise 2312 v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Always open untrusted database files in Protected ViewMSCT M365 Apps for enterprise 2412 v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

APPL-15-004050 - The macOS system must configure install.log retention to 365.DISA Apple macOS 15 Sequoia STIG v1r7Unix

AUDIT AND ACCOUNTABILITY

APPL-26-004050 - The macOS system must configure install.log retention to 365.DISA Apple macOS 26 Tahoe STIG v1r3Unix

AUDIT AND ACCOUNTABILITY

Automatically activate Office with federated organization credentialsMSCT M365 Apps for enterprise 2412 v1.0.0Windows

CONFIGURATION MANAGEMENT

CIS_Azure_Compute_Microsoft_Windows_Server_2019_v1.0.0_NG_DC.audit from CIS Azure Compute Microsoft Windows Server 2019 Benchmark v1.0.0CIS Azure Compute Microsoft Windows Server 2019 v1.0.0 NG DCWindows
CIS_Azure_Compute_Microsoft_Windows_Server_2019_v1.0.0_NG_MS.audit from CIS Azure Compute Microsoft Windows Server 2019 Benchmark v1.0.0CIS Azure Compute Microsoft Windows Server 2019 v1.0.0 NG MSWindows
CIS_Microsoft_Windows_10_Stand-alone_v4.0.0_L2_BL_NG.audit from CIS Microsoft Windows 10 Stand-alone Benchmark v4.0.0CIS Microsoft Windows 10 Stand-alone v4.0.0 L2 BL NGWindows
CIS_Microsoft_Windows_10_Stand-alone_v4.0.0_L2_BL.audit from CIS Microsoft Windows 10 Stand-alone Benchmark v4.0.0CIS Microsoft Windows 10 Stand-alone v4.0.0 L2 BLWindows
CIS_Microsoft_Windows_10_Stand-alone_v4.0.0_L2_NG.audit from CIS Microsoft Windows 10 Stand-alone Benchmark v4.0.0CIS Microsoft Windows 10 Stand-alone v4.0.0 L2 NGWindows
CIS_Microsoft_Windows_Server_2019_Stand-alone_v3.0.0_L1_MS.audit from CIS Microsoft Windows Server 2019 Stand-alone v3.0.0CIS Microsoft Windows Server 2019 Stand-alone v3.0.0 L1 MSWindows
CIS_Microsoft_Windows_Server_2019_Stand-alone_v3.0.0_NG_MS.audit from CIS Microsoft Windows Server 2019 Stand-alone v3.0.0CIS Microsoft Windows Server 2019 Stand-alone v3.0.0 NG MSWindows
CIS_Microsoft_Windows_Server_2025_Stand-alone_v2.0.0_NG_MS.audit from CIS Microsoft Windows Server 2025 Stand-alone v2.0.0CIS Microsoft Windows Server 2025 Stand-alone v2.0.0 NG MSWindows
MS.EXO.15.1v1 - URL comparison with a block-list SHOULD be enabled.CISA SCuBA Microsoft 365 Exchange Online v1.5.0microsoft_azure

ACCESS CONTROL, SECURITY ASSESSMENT AND AUTHORIZATION, CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

O365-CO-000007 - Trust Bar notifications must be configured to display information in the Message Bar about the content that has been automatically blocked.DISA Microsoft Office 365 ProPlus STIG v3r5Windows

CONFIGURATION MANAGEMENT

O365-CO-000017 - The Information Bar must be enabled in all Office programs.DISA Microsoft Office 365 ProPlus STIG v3r5Windows

SYSTEM AND COMMUNICATIONS PROTECTION