3.11.18.1 (L1) Ensure 'Configure Windows Defender SmartScreen' is set to 'Enabled: Warn and prevent bypass'

Information

This policy setting allows you to manage the behavior of Windows Defender SmartScreen. Windows Defender SmartScreen helps keep PCs safer by warning users before running unrecognized programs downloaded from the Internet. Some information is sent to Microsoft about files and programs run on PCs with this feature enabled.

The recommended state for this setting is: Enabled: Warn and prevent bypass

Windows Defender SmartScreen helps keep PCs safer by warning users before running unrecognized programs downloaded from the Internet. However, due to the fact that some information is sent to Microsoft about files and programs run on PCs some organizations may prefer to disable it.

Solution

To establish the recommended configuration via configuration profiles, set the following Settings Catalog path to Enabled: Warn and prevent bypass

Administrative Templates\Windows Components\File Explorer\Configure Windows Defender SmartScreen

Impact:

Users will be warned and prevented from running unrecognized programs downloaded from the Internet.

See Also

https://workbench.cisecurity.org/benchmarks/16853

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-16, CSCv7|8.3

Plugin: Windows

Control ID: edfe428dc35b049a22ee5179124d70134e6c1f7fa707169c9bdf0a9b97c3aa3c