Item Search

NameAudit NamePluginCategory
1.1 (L1) Host hardware must have auditable, authentic, and up to date system and device firmwareCIS VMware ESXi 8.0 v1.1.0 L1VMware

SYSTEM AND SERVICES ACQUISITION

1.1 Ensure Latest SQL Server Service Packs and Hotfixes are InstalledCIS SQL Server 2008 R2 DB Engine L1 v1.7.0MS_SQLDB

CONFIGURATION MANAGEMENT

1.1 Ensure Latest SQL Server Service Packs and Hotfixes are InstalledCIS SQL Server 2012 Database L1 DB v1.6.0MS_SQLDB

CONFIGURATION MANAGEMENT

1.1 Ensure Latest SQL Server Service Packs and Hotfixes are InstalledCIS SQL Server 2014 Database L1 DB v1.5.0MS_SQLDB

CONFIGURATION MANAGEMENT

1.1 Ensure Latest SQL Server Service Packs and Hotfixes are InstalledCIS SQL Server 2012 Database L1 AWS RDS v1.6.0MS_SQLDB

CONFIGURATION MANAGEMENT

1.1 Ensure Latest SQL Server Service Packs and Hotfixes are InstalledCIS SQL Server 2014 Database L1 AWS RDS v1.5.0MS_SQLDB

CONFIGURATION MANAGEMENT

1.1 Ensure the appropriate MongoDB software version/patches are installedCIS MongoDB 4 L1 DB v1.0.0MongoDB

CONFIGURATION MANAGEMENT

1.1 Ensure the Appropriate Version/Patches for Oracle Software Is InstalledCIS Oracle Server 12c DB Traditional Auditing v3.0.0OracleDB

CONFIGURATION MANAGEMENT

1.1 Ensure the Appropriate Version/Patches for Oracle Software Is InstalledCIS Oracle Server 12c DB Unified Auditing v3.0.0OracleDB

CONFIGURATION MANAGEMENT

1.1 Ensure the Appropriate Version/Patches for Oracle Software Is InstalledCIS Oracle Server 18c DB Traditional Auditing v1.1.0OracleDB

CONFIGURATION MANAGEMENT

1.1 Ensure the Appropriate Version/Patches for Oracle Software Is InstalledCIS Oracle Server 18c DB Unified Auditing v1.1.0OracleDB

CONFIGURATION MANAGEMENT

1.1.1 Ensure NGINX is installedCIS NGINX Benchmark v2.0.1 L1 WebserverUnix

SYSTEM AND SERVICES ACQUISITION

1.1.2 Ensure NGINX is installed from sourceCIS NGINX Benchmark v2.0.1 L2 ProxyUnix

SYSTEM AND SERVICES ACQUISITION

1.2 Ensure End of Life JUNOS Devices are not usedCIS Juniper OS Benchmark v2.1.0 L1Juniper

CONFIGURATION MANAGEMENT

1.2 Ensure the Image Profile VIB acceptance level is configured properlyCIS VMware ESXi 6.5 v1.0.0 Level 1 Bare MetalUnix

CONFIGURATION MANAGEMENT

1.2 Ensure the Image Profile VIB acceptance level is configured properlyCIS VMware ESXi 6.7 v1.1.0 Level 1 Bare MetalUnix

CONFIGURATION MANAGEMENT

1.2.8 Ensure the version of the operating system is an active vendor supported releaseCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

1.3 Ensure Apache Is Installed From the Appropriate BinariesCIS Apache HTTP Server 2.4 L1 v2.1.0 MiddlewareUnix

CONFIGURATION MANAGEMENT

1.3 Ensure Apache Is Installed From the Appropriate BinariesCIS Apache HTTP Server 2.4 L1 v2.1.0Unix

CONFIGURATION MANAGEMENT

1.3 Ensure no unauthorized kernel modules are loaded on the hostCIS VMware ESXi 6.5 v1.0.0 Level 1 Bare MetalUnix

CONFIGURATION MANAGEMENT

2.1.6 Ensure the latest firmware is installedCIS Fortigate 7.0.x v1.3.0 L2FortiGate

SECURITY ASSESSMENT AND AUTHORIZATION, RISK ASSESSMENT

2.11 Ensure EFI version is valid and being regularly checked - daemonCIS Apple macOS 11 v1.1.0 L1Unix

SYSTEM AND INFORMATION INTEGRITY

2.11 Ensure EFI version is valid and being regularly checked - integrity-checkCIS Apple macOS 11 v1.1.0 L1Unix

SYSTEM AND INFORMATION INTEGRITY

4.1 Ensure device is not obviously jailbrokenMobileIron - CIS Apple iOS 13 and iPadOS 13 v1.0.0 End User Owned L1MDM

CONFIGURATION MANAGEMENT

4.1 Ensure device is not obviously jailbrokenAirWatch - CIS Apple iOS 14 and iPadOS 14 Institution Owned L1MDM

CONFIGURATION MANAGEMENT

4.1 Ensure device is not obviously jailbrokenAirWatch - CIS Apple iOS 13 and iPadOS 13 Institution Owned L1MDM

CONFIGURATION MANAGEMENT

4.1 Ensure device is not obviously jailbrokenAirWatch - CIS Apple iOS 13 and iPadOS 13 v1.0.0 End User Owned L1MDM

CONFIGURATION MANAGEMENT

4.1 Ensure device is not obviously jailbrokenAirWatch - CIS Apple iOS 14 and iPadOS 14 v1.0.0 End User Owned L1MDM

CONFIGURATION MANAGEMENT

4.1 Ensure device is not obviously jailbrokenMobileIron - CIS Apple iOS 14 and iPadOS 14 v1.0.0 End User Owned L1MDM

CONFIGURATION MANAGEMENT

4.1 Ensure device is not obviously jailbrokenMobileIron - CIS Apple iOS 14 and iPadOS 14 Institution Owned L1MDM

CONFIGURATION MANAGEMENT

4.1 Ensure device is not obviously jailbrokenMobileIron - CIS Apple iOS 13 and iPadOS 13 Institution Owned L1MDM

CONFIGURATION MANAGEMENT

4.1 Ensure the Latest Security Patches are AppliedCIS MySQL 5.6 Enterprise Database L1 v2.0.0MySQLDB

SYSTEM AND SERVICES ACQUISITION

4.1 Ensure the Latest Security Patches are AppliedCIS MySQL 5.7 Enterprise Database L1 v2.0.0MySQLDB

SYSTEM AND SERVICES ACQUISITION

4.2 Ensure 'Software Update' returns 'Your software is up to date.'AirWatch - CIS Apple iOS 13 and iPadOS 13 v1.0.0 End User Owned L1MDM

CONFIGURATION MANAGEMENT

4.2 Ensure 'Software Update' returns 'Your software is up to date.'MobileIron - CIS Apple iOS 13 and iPadOS 13 v1.0.0 End User Owned L1MDM

CONFIGURATION MANAGEMENT

4.2 Ensure 'Software Update' returns 'Your software is up to date.'MobileIron - CIS Apple iOS 14 and iPadOS 14 Institution Owned L1MDM

CONFIGURATION MANAGEMENT

4.2 Ensure 'Software Update' returns 'Your software is up to date.'MobileIron - CIS Apple iOS 13 and iPadOS 13 Institution Owned L1MDM

CONFIGURATION MANAGEMENT

4.2 Ensure 'Software Update' returns 'Your software is up to date.'MobileIron - CIS Apple iOS 14 and iPadOS 14 v1.0.0 End User Owned L1MDM

CONFIGURATION MANAGEMENT

4.2 Ensure 'Software Update' returns 'Your software is up to date.'AirWatch - CIS Apple iOS 14 and iPadOS 14 Institution Owned L1MDM

CONFIGURATION MANAGEMENT

4.2 Ensure 'Software Update' returns 'Your software is up to date.'AirWatch - CIS Apple iOS 13 and iPadOS 13 Institution Owned L1MDM

CONFIGURATION MANAGEMENT

4.2 Ensure 'Software Update' returns 'Your software is up to date.'AirWatch - CIS Apple iOS 14 and iPadOS 14 v1.0.0 End User Owned L1MDM

CONFIGURATION MANAGEMENT

4.2 Ensure device is not obviously jailbroken or compromisedAirWatch - CIS Apple iPadOS 17 v1.1.0 End User Owned L1MDM

SYSTEM AND SERVICES ACQUISITION

4.2 Ensure device is not obviously jailbroken or compromisedAirWatch - CIS Apple iPadOS 17 Institutionally Owned L1MDM

SYSTEM AND SERVICES ACQUISITION

5.5 Ensure that SKU Basic/Consumption is not used on artifacts that need to be monitored (Particularly for Production Workloads)CIS Microsoft Azure Foundations v2.1.0 L2microsoft_azure

SYSTEM AND SERVICES ACQUISITION

5.9 Ensure Legacy EFI Is Valid and Updating - checked regularlyCIS Apple macOS 13.0 Ventura v2.0.0 L1Unix

SYSTEM AND SERVICES ACQUISITION

5.9 Ensure Legacy EFI Is Valid and Updating - validCIS Apple macOS 13.0 Ventura v2.0.0 L1Unix

SYSTEM AND SERVICES ACQUISITION

5.10.1 Ensure Kubernetes Web UI is DisabledCIS Google Kubernetes Engine (GKE) v1.5.0 L1GCP

CONFIGURATION MANAGEMENT

7.28 (L2) Virtual machines should have virtual machine hardware version 19 or newerCIS VMware ESXi 8.0 v1.1.0 L2VMware

SYSTEM AND SERVICES ACQUISITION

20.42 Ensure 'Operating System is maintained at a supported servicing level'CIS Microsoft Windows Server 2019 STIG v2.0.0 STIG DCWindows

SYSTEM AND SERVICES ACQUISITION

20.42 Ensure 'Operating System is maintained at a supported servicing level'CIS Microsoft Windows Server 2019 STIG v2.0.0 STIG MSWindows

SYSTEM AND SERVICES ACQUISITION