20.1 (L1) Ensure 'Endpoint Protection is installed and in use'

Information

This setting ensures endpoint protection is installed and in use on the system.

Examples of endpoint protection include, Microsoft Defender, McAfee MVISION, CrowdStrike Falcon, and Sophos Intercept X Advanced with XDR. Please note these are just examples.

Deploying and maintaining endpoint protection solution to detect malicious software can help protect the system against attacks that could destroy, modify, or exfiltrate data.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Install and configure endpoint protection solution on the system.

Impact:

If the endpoint protection solution is not configured properly, it may prohibit the use of legitimate software.

See Also

https://workbench.cisecurity.org/benchmarks/17610

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-3, 800-53|SI-16, CSCv7|8.1

Plugin: Windows

Control ID: 988097748615dc670ffbd72f99911c11fd6071bb5f820bd9c32269909dbf54ab