Item Search

NameAudit NamePluginCategory
1.5 Ensure System Data Files and Security Updates Are Downloaded Automatically Is Enabled - ConfigDataInstallCIS Apple macOS 10.15 Catalina v3.0.0 L1Unix

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

2.2.2.1 Ensure 'Force fraud warning' is set to 'Enabled'MobileIron - CIS Apple iPadOS 17 v1.1.0 End User Owned L1MDM

CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

2.3.2 Ensure Screen Saver Corners Are Secure - bottom left cornerCIS Apple macOS 10.14 v2.0.0 L2Unix

ACCESS CONTROL

2.3.2 Ensure Screen Saver Corners Are Secure - bottom right cornerCIS Apple macOS 10.14 v2.0.0 L2Unix

ACCESS CONTROL

2.3.2 Secure screen saver corners - bottom left cornerCIS Apple macOS 10.13 L2 v1.1.0Unix

ACCESS CONTROL

2.3.2 Secure screen saver corners - bottom right cornerCIS Apple macOS 10.12 L2 v1.2.0Unix

ACCESS CONTROL

2.3.2 Secure screen saver corners - top left cornerCIS Apple macOS 10.13 L2 v1.1.0Unix

ACCESS CONTROL

2.3.2 Secure screen saver corners - top right cornerCIS Apple macOS 10.13 L2 v1.1.0Unix

ACCESS CONTROL

2.3.2 Secure screen saver corners - top right cornerCIS Apple macOS 10.12 L2 v1.2.0Unix

ACCESS CONTROL

2.4.3 Ensure 'Maximum Auto-Lock' is set to '2 minutes' or lessAirWatch - CIS Apple iOS 12 v1.0.0 End User Owned L1MDM

ACCESS CONTROL

2.5.2.1 Ensure Siri Is DisabledCIS Apple macOS 15.0 Sequoia v1.1.0 L1Unix

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

2.5.3 Ensure Location Services Is EnabledCIS Apple macOS 10.14 v2.0.0 L2Unix

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

2.6.6 Enable Location ServicesCIS Apple macOS 10.12 L2 v1.2.0Unix

CONFIGURATION MANAGEMENT

2.6.7 Monitor Location Services AccessCIS Apple macOS 10.12 L2 v1.2.0Unix

CONFIGURATION MANAGEMENT

2.7.3 iCloud DriveCIS Apple macOS 10.12 L2 v1.2.0Unix

ACCESS CONTROL

2.8.1 Time Machine Auto-BackupCIS Apple macOS 10.12 L2 v1.2.0Unix

CONTINGENCY PLANNING

2.12 Securely delete files as neededCIS Apple macOS 10.12 L2 v1.2.0Unix

CONFIGURATION MANAGEMENT

2.13.1 Audit Passwords System Preference SettingCIS Apple macOS 13.0 Ventura v3.1.0 L1Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

2.13.1 Audit Passwords System Preference SettingCIS Apple macOS 14.0 Sonoma v2.1.0 L1Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

3.2 Configure Security Auditing Flags - 'audit all failed events across all audit classes'CIS Apple macOS 10.12 L2 v1.2.0Unix

AUDIT AND ACCOUNTABILITY

3.2 Configure Security Auditing Flags - 'audit successful/failed administrative events'CIS Apple macOS 10.12 L2 v1.2.0Unix

AUDIT AND ACCOUNTABILITY

3.2 Configure Security Auditing Flags per local organizational requirements - 'audit successful/failed file deletion events'CIS Apple macOS 10.13 L2 v1.1.0Unix

AUDIT AND ACCOUNTABILITY

3.2 Configure Security Auditing Flags per local organizational requirements - 'audit successful/failed login/logout events'CIS Apple macOS 10.13 L2 v1.1.0Unix

AUDIT AND ACCOUNTABILITY

3.2 Ensure Security Auditing Flags Are Configured Per Local Organizational Requirements - 'audit successful/failed file attribute modification events'CIS Apple macOS 10.14 v2.0.0 L2Unix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY

3.2.1.1 Ensure 'Allow screenshots and screen recording' is set to 'Disabled'MobileIron - CIS Apple iOS 14 and iPadOS 14 Institution Owned L2MDM

ACCESS CONTROL

3.2.1.10 Ensure 'Force encrypted backups' is set to 'Enabled'AirWatch - CIS Apple iOS 18 v1.0.0 L1 Institution OwnedMDM

CONTINGENCY PLANNING, SYSTEM AND COMMUNICATIONS PROTECTION

3.2.1.27 Ensure 'Allow password sharing (supervised only)' is set to 'Disabled'AirWatch - CIS Apple iOS 14 and iPadOS 14 Institution Owned L1MDM

CONFIGURATION MANAGEMENT

3.2.2.1 Ensure 'Force fraud warning' is set to 'Enabled'MobileIron - CIS Apple iOS 17 Institution Owned L1MDM

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

3.2.2.1 Ensure 'Force fraud warning' is set to 'Enabled'AirWatch - CIS Apple iPadOS 18 v1.0.0 L1 Institutionally OwnedMDM

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

3.2.2.1 Ensure 'Force fraud warning' is set to 'Enabled'MobileIron - CIS Apple iPadOS 18 v1.0.0 L1 Institutionally OwnedMDM

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

3.7 Audit Software InventoryCIS Apple macOS 10.14 v2.0.0 L2Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

5.1.4 Check Library folder for world writable filesCIS Apple macOS 10.12 L2 v1.2.0Unix

ACCESS CONTROL

5.2.3 Ensure Complex Password Must Contain Alphabetic Characters Is ConfiguredCIS Apple macOS 10.14 v2.0.0 L2Unix

IDENTIFICATION AND AUTHENTICATION

5.2.4 Ensure Complex Password Must Contain Numeric Character Is ConfiguredCIS Apple macOS 10.14 v2.0.0 L2Unix

IDENTIFICATION AND AUTHENTICATION

5.2.5 Complex passwords must contain a Special CharacterCIS Apple macOS 10.13 L2 v1.1.0Unix
5.9 Ensure system is set to hibernate - hibernatemodeCIS Apple macOS 10.14 v2.0.0 L2Unix

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

5.13 Create a Login window bannerCIS Apple macOS 10.14 v2.0.0 L2Unix

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

5.15 Create a Login window bannerCIS Apple macOS 10.12 L2 v1.2.0Unix

ACCESS CONTROL

5.18 Create specialized keychains for different purposesCIS Apple macOS 10.13 L2 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.4 Use parental controls for systems that are not centrally managedCIS Apple macOS 10.13 L2 v1.1.0Unix

ACCESS CONTROL

6.5 Use parental controls for systems that are not centrally managedCIS Apple macOS 10.12 L2 v1.2.0Unix

CONFIGURATION MANAGEMENT

7.1 Extensible Firmware Interface (EFI) passwordCIS Apple macOS 10.14 v2.0.0 L2Unix

CONFIGURATION MANAGEMENT

7.4 Software Inventory ConsiderationsCIS Apple macOS 10.12 L2 v1.2.0Unix

CONFIGURATION MANAGEMENT

7.5 Firewall ConsiderationCIS Apple macOS 10.13 L2 v1.1.0Unix

CONFIGURATION MANAGEMENT

7.11 App Store Password SettingsCIS Apple macOS 10.12 L2 v1.2.0Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Big Sur - Configure Apple System Log Files Owned by Root and Group to WheelNIST macOS Big Sur v1.4.0 - All ProfilesUnix

SYSTEM AND INFORMATION INTEGRITY

Catalina - Ensure the System Implements Malicious Code Protection MechanismsNIST macOS Catalina v1.5.0 - 800-53r5 HighUnix

SYSTEM AND INFORMATION INTEGRITY

Catalina - Ensure the System Implements Malicious Code Protection MechanismsNIST macOS Catalina v1.5.0 - 800-53r5 ModerateUnix

SYSTEM AND INFORMATION INTEGRITY

Monterey - Configure Apple System Log Files Owned by Root and Group to WheelNIST macOS Monterey v1.0.0 - All ProfilesUnix

SYSTEM AND INFORMATION INTEGRITY

Monterey - Ensure the System Implements Malicious Code Protection MechanismsNIST macOS Monterey v1.0.0 - 800-53r5 HighUnix

SYSTEM AND INFORMATION INTEGRITY