Item Search

NameAudit NamePluginCategory
1.1.5.1 Ensure 'Enable Automatic Updates' is set to 'Enabled'CIS Microsoft Office Enterprise v1.1.0 L1Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

1.1.5.2 Ensure 'Hide option to enable or disable updates' is set to 'Enabled'CIS Microsoft Office Enterprise v1.1.0 L1Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

1.2.4 Ensure Red Hat Subscription Manager connection is configuredCIS Red Hat Enterprise Linux 7 STIG v2.0.0 L2 ServerUnix

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

1.5 Ensure System Data Files and Security Updates Are Downloaded Automatically Is Enabled - ConfigDataInstallCIS Apple macOS 10.15 Catalina v3.0.0 L1Unix

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

1.5 Ensure System Data Files and Security Updates Are Downloaded Automatically Is Enabled - CriticalUpdateInstallCIS Apple macOS 10.15 Catalina v3.0.0 L1Unix

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

1.6 Ensure Install Security Responses and System Files Is EnabledCIS Apple macOS 14.0 Sonoma v1.0.0 L1Unix

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

1.79 Ensure 'Enable component updates in Microsoft Edge' is set to 'Enabled'CIS Microsoft Edge L1 v2.0.0Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

1.106 Ensure 'Notify a user that a browser restart is recommended or required for pending updates' is set to 'Enabled: Required - Show a recurring prompt to the user indicating that a restart is required'CIS Microsoft Edge L1 v2.0.0Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

1.109 Ensure 'Set the time period for update notifications' is set to 'Enabled: 86400000'CIS Microsoft Edge L1 v2.0.0Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

2.1.1 Ensure That Microsoft Defender for Servers Is Set to 'On'CIS Microsoft Azure Foundations v2.1.0 L2microsoft_azure

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

2.1.2 Ensure That Microsoft Defender for App Services Is Set To 'On'CIS Microsoft Azure Foundations v2.1.0 L2microsoft_azure

RISK ASSESSMENT, SYSTEM AND SERVICES ACQUISITION

2.1.3 Ensure That Microsoft Defender for (Managed Instance) Azure SQL Databases Is Set To 'On'CIS Microsoft Azure Foundations v2.1.0 L2microsoft_azure

RISK ASSESSMENT, SYSTEM AND SERVICES ACQUISITION

2.1.4 Ensure That Microsoft Defender for SQL Servers on Machines Is Set To 'On'CIS Microsoft Azure Foundations v2.1.0 L2microsoft_azure

RISK ASSESSMENT, SYSTEM AND SERVICES ACQUISITION

2.1.5 Ensure That Microsoft Defender for Open-Source Relational Databases Is Set To 'On'CIS Microsoft Azure Foundations v2.1.0 L2microsoft_azure

RISK ASSESSMENT, SYSTEM AND SERVICES ACQUISITION

2.1.6 Ensure That Microsoft Defender for Azure Cosmos DB Is Set To 'On'CIS Microsoft Azure Foundations v2.1.0 L2microsoft_azure

RISK ASSESSMENT, SYSTEM AND SERVICES ACQUISITION

3.1.1 Ensure 'Update policy override default' is set to 'Enabled: Always allow updates (recommended)'CIS Microsoft Edge L1 v2.0.0Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

4.4.2.1 Ensure active authselect profile includes pam modulesCIS AlmaLinux OS 8 Workstation L1 v3.0.0Unix

SECURITY ASSESSMENT AND AUTHORIZATION, RISK ASSESSMENT

4.4.2.1 Ensure active authselect profile includes pam modulesCIS Red Hat EL8 Server L1 v3.0.0Unix

SECURITY ASSESSMENT AND AUTHORIZATION, RISK ASSESSMENT

4.4.2.1 Ensure active authselect profile includes pam modulesCIS Rocky Linux 8 Server L1 v2.0.0Unix

SECURITY ASSESSMENT AND AUTHORIZATION, RISK ASSESSMENT

4.4.2.1 Ensure active authselect profile includes pam modulesCIS AlmaLinux OS 8 Server L1 v3.0.0Unix

SECURITY ASSESSMENT AND AUTHORIZATION, RISK ASSESSMENT

4.4.2.1 Ensure active authselect profile includes pam modulesCIS Red Hat EL8 Workstation L1 v3.0.0Unix

SECURITY ASSESSMENT AND AUTHORIZATION, RISK ASSESSMENT

5.1.1 Ensure Image Vulnerability Scanning is enabledCIS Google Kubernetes Engine (GKE) v1.5.0 L1GCP

RISK ASSESSMENT

5.4.1 Ensure custom authselect profile is usedCIS AlmaLinux OS 9 Server L1 v1.0.0Unix

SECURITY ASSESSMENT AND AUTHORIZATION, RISK ASSESSMENT

5.4.1 Ensure custom authselect profile is usedCIS Red Hat EL9 Server L1 v1.0.0Unix

SECURITY ASSESSMENT AND AUTHORIZATION, RISK ASSESSMENT

5.4.1 Ensure custom authselect profile is usedCIS Oracle Linux 9 Server L1 v1.0.0Unix

SECURITY ASSESSMENT AND AUTHORIZATION, RISK ASSESSMENT

5.4.1 Ensure custom authselect profile is usedCIS Red Hat EL9 Workstation L1 v1.0.0Unix

SECURITY ASSESSMENT AND AUTHORIZATION, RISK ASSESSMENT

6.7 Ensure a secure Vulnerability Protection Profile is applied to all security rules allowing trafficCIS Palo Alto Firewall 10 v1.1.0 L1Palo_Alto

RISK ASSESSMENT

18.8.4.1 Ensure 'Encryption Oracle Remediation' is set to 'Enabled: Force Updated Clients'CIS Azure Compute Microsoft Windows Server 2022 v1.0.0 L1 DCWindows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.8.4.1 Ensure 'Encryption Oracle Remediation' is set to 'Enabled: Force Updated Clients'CIS Microsoft Windows Server 2019 STIG DC L1 v1.0.1Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.9.17.1 Ensure 'Download Mode' is set to 'Enabled'CIS Microsoft Windows Server 2016 STIG MS STIG v1.1.0Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.9.17.1 Ensure 'Download Mode' is set to 'Enabled'CIS Microsoft Windows Server 2019 STIG MS STIG v1.0.1Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.9.102.1.3 Ensure 'Select when Quality Updates are received' is set to 'Enabled: 0 days' - DeferQualityUpdatesCIS Microsoft Windows Server 2019 STIG DC L1 v1.0.1Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.9.102.1.3 Ensure 'Select when Quality Updates are received' is set to 'Enabled: 0 days' - DeferQualityUpdatesPeriodInDaysCIS Microsoft Windows Server 2019 STIG DC L1 v1.0.1Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.9.102.2 Ensure 'Configure Automatic Updates' is set to 'Enabled'CIS Microsoft Windows Server 2019 STIG DC L1 v1.0.1Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.9.102.3 Ensure 'Configure Automatic Updates: Scheduled install day' is set to '0 - Every day'CIS Microsoft Windows Server 2019 STIG DC L1 v1.0.1Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.9.103.1.3 Ensure 'Select when Quality Updates are received' is set to 'Enabled: 0 days' - DeferQualityUpdatesCIS Microsoft Windows Server 2016 STIG DC L1 v1.1.0Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.9.103.1.3 Ensure 'Select when Quality Updates are received' is set to 'Enabled: 0 days' - DeferQualityUpdatesPeriodInDaysCIS Microsoft Windows Server 2016 STIG DC L1 v1.1.0Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.9.103.2 Ensure 'Configure Automatic Updates' is set to 'Enabled'CIS Microsoft Windows Server 2016 STIG DC L1 v1.1.0Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.9.103.3 Ensure 'Configure Automatic Updates: Scheduled install day' is set to '0 - Every day'CIS Microsoft Windows Server 2016 STIG DC L1 v1.1.0Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.9.103.4 Ensure 'No auto-restart with logged on users for scheduled automatic updates installations' is set to 'Disabled'CIS Microsoft Windows Server 2016 STIG DC L1 v1.1.0Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.9.108.1.1 Ensure 'Do not adjust default option to 'Install Updates and Shut Down' in Shut Down Windows dialog box' is set to 'Disabled'CIS Microsoft Windows Server 2008 Member Server Level 1 v3.3.1Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.9.108.1.1 Ensure 'Do not adjust default option to 'Install Updates and Shut Down' in Shut Down Windows dialog box' is set to 'Disabled'CIS Microsoft Windows Server 2008 Domain Controller Level 1 v3.3.0Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.9.108.1.2 Ensure 'Do not display 'Install Updates and Shut Down' option in Shut Down Windows dialog box' is set to 'Disabled'CIS Microsoft Windows Server 2008 Member Server Level 1 v3.3.1Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.9.108.1.2 Ensure 'Do not display 'Install Updates and Shut Down' option in Shut Down Windows dialog box' is set to 'Disabled'CIS Microsoft Windows Server 2008 Domain Controller Level 1 v3.3.0Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.9.108.1.3 Ensure 'No auto-restart with logged on users for scheduled automatic updates installations' is set to 'Disabled'CIS Microsoft Windows Server 2008 Domain Controller Level 1 v3.3.0Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.9.108.1.4 Ensure 'Reschedule Automatic Updates scheduled installations' is set to 'Enabled: 1 minute'CIS Microsoft Windows Server 2008 Member Server Level 1 v3.3.0Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.9.108.2.1 Ensure 'Configure Automatic Updates' is set to 'Enabled'CIS Microsoft Windows Server 2008 Member Server Level 1 v3.3.1Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.9.108.2.2 Ensure 'Configure Automatic Updates: Scheduled install day' is set to '0 - Every day'CIS Microsoft Windows Server 2008 Member Server Level 1 v3.3.1Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.10.67.3 Ensure 'Turn off Automatic Download and Install of updates' is set to 'Disabled'CIS Microsoft Intune for Windows 11 v2.0.0 L1 + BLWindows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

18.10.94.3.2 Ensure 'Select when Quality Updates are received' is set to 'Enabled: 0 days'CIS Microsoft Intune for Windows 11 v2.0.0 L1 + BLWindows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY