20.1 Ensure 'Endpoint Protection is installed and in use'

Information

This setting ensures endpoint protection is installed and in use on the system.

Examples of endpoint protection include, Microsoft Defender, McAfee MVISION, CrowdStrike Falcon, and Sophos Intercept X Advanced with XDR. Please note these are just examples.

Rationale:

Deploying and maintaining endpoint protection solution to detect malicious software can help protect the system against attacks that could destroy, modify, or exfiltrate data.

Impact:

If the endpoint protection solution is not configured properly, it may prohibit the use of legitimate software.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Install and configure endpoint protection solution on the system.

Default Value:

N/A

See Also

https://workbench.cisecurity.org/benchmarks/13921