Item Search

NameAudit NamePluginCategory
1.1.6.1.1 Ensure when a cloud recording is available is set to enabledCIS Zoom L1 v1.0.0Zoom

CONFIGURATION MANAGEMENT

1.2.10 Ensure require passcode to access shared cloud recordings is set to enabledCIS Zoom L2 v1.0.0Zoom

CONFIGURATION MANAGEMENT

1.139 WN10-CC-000197CIS Microsoft Windows 10 STIG v1.0.0 CAT IIIWindows

CONFIGURATION MANAGEMENT

2.3 Ensure That Retention Policies on Cloud Storage Buckets Used for Exporting Logs Are Configured Using Bucket LockCIS Google Cloud Platform Foundation v4.0.0 L2GCP

ACCESS CONTROL, MEDIA PROTECTION

2.3.23.2 (L1) Ensure 'Block signing into Office' is set to 'Enabled: Org ID only'CIS Microsoft Intune for Office v1.1.0 L1Windows

ACCESS CONTROL

4.2.8 Ensure that the --hostname-override argument is not setCIS Kubernetes v1.24 Benchmark v1.0.0 L1 WorkerUnix

CONFIGURATION MANAGEMENT

4.4 Ensure http server is not runningCIS Apple OSX 10.11 El Capitan L1 v1.1.0Unix

CONFIGURATION MANAGEMENT

4.4 Ensure http server is not runningCIS Apple OSX 10.10 Yosemite L1 v1.2.0Unix

CONFIGURATION MANAGEMENT

4.4.1 Consider external secret storageCIS Google Kubernetes Engine (GKE) Autopilot v1.1.0 L2GCP

SYSTEM AND COMMUNICATIONS PROTECTION

4.4.2 Consider external secret storageCIS Google Kubernetes Engine (GKE) v1.7.0 L2GCP

SYSTEM AND COMMUNICATIONS PROTECTION

5.4.2 Consider external secret storageCIS Kubernetes v1.12.0 L2 Master NodeUnix

SYSTEM AND COMMUNICATIONS PROTECTION

5.4.2 Consider external secret storageCIS Red Hat OpenShift Container Platform v1.8.0 L2 OpenShiftOpenShift

SYSTEM AND COMMUNICATIONS PROTECTION

18.9.58.2 (L1) Ensure 'Prevent the usage of OneDrive for file storage on Windows 8.1' is set to 'Enabled'CIS Microsoft Windows Server 2008 R2 Domain Controller Level 1 v3.3.1Windows

ACCESS CONTROL

18.9.58.2 (L1) Ensure 'Prevent the usage of OneDrive for file storage on Windows 8.1' is set to 'Enabled'CIS Microsoft Windows Server 2008 R2 Member Server Level 1 v3.3.1Windows

ACCESS CONTROL

61.1 (L2) Ensure 'Disallow Cloud Notification' is set to 'Allow'CIS Microsoft Intune for Windows 10 v4.0.0 L2Windows

CONFIGURATION MANAGEMENT

AIOS-17-003450 - Apple iOS/iPadOS 17 must not allow backup to remote systems (Cloud Photo Library).AirWatch - DISA Apple iOS/iPadOS 17 v2r2MDM

ACCESS CONTROL, CONFIGURATION MANAGEMENT

AIOS-17-003450 - Apple iOS/iPadOS 17 must not allow backup to remote systems (Cloud Photo Library).MobileIron - DISA Apple iOS/iPadOS 17 v2r2MDM

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Android Device Configuration - Google backupTenable Best Practices for Microsoft Intune Android v1.0microsoft_azure

ACCESS CONTROL, CONFIGURATION MANAGEMENT

APPL-13-002037 - The macOS system must be configured to disable the Cloud Storage Setup services.DISA STIG Apple macOS 13 v1r5Unix

CONFIGURATION MANAGEMENT

Do not suggest third-party content in Windows spotlightMSCT Windows 11 v24H2 v1.0.0Windows

CONFIGURATION MANAGEMENT

Do not suggest third-party content in Windows spotlightMSCT Windows 10 v21H2 v1.0.0Windows

CONFIGURATION MANAGEMENT

Do not suggest third-party content in Windows spotlightMSCT Windows 11 v1.0.0Windows

CONFIGURATION MANAGEMENT

Do not suggest third-party content in Windows spotlightMSCT Windows 11 v25H2 v1.0.0Windows

CONFIGURATION MANAGEMENT

Do not suggest third-party content in Windows spotlightMSCT Windows 10 v21H1 v1.0.0Windows

CONFIGURATION MANAGEMENT

Do not suggest third-party content in Windows spotlightMSCT Windows 10 1803 v1.0.0Windows

CONFIGURATION MANAGEMENT

Do not suggest third-party content in Windows spotlightMSCT Windows 10 v20H2 v1.0.0Windows

CONFIGURATION MANAGEMENT

GOOG-12-008600 - Google Android 12 must be configured to not allow backup of [all applications, configuration data] to remote systems.AirWatch - DISA Google Android 12 COBO v1r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-12-008600 - Google Android 12 must be configured to not allow backup of [all applications, configuration data] to remote systems.MobileIron - DISA Google Android 12 COBO v1r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-12-008600 - Google Android 12 must be configured to not allow backup of [all applications, configuration data] to remote systems.AirWatch - DISA Google Android 12 COPE v1r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-12-008600 - Google Android 12 must be configured to not allow backup of [all applications, configuration data] to remote systems.MobileIron - DISA Google Android 12 COPE v1r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-13-008600 - Google Android 13 must be configured to not allow backup of [all applications, configuration data] to remote systems.MobileIron - DISA Google Android 13 COBO STIG v2r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-13-008600 - Google Android 13 must be configured to not allow backup of [all applications, configuration data] to remote systems.MobileIron - DISA Google Android 13 COPE STIG v2r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-13-008600 - Google Android 13 must be configured to not allow backup of [all applications, configuration data] to remote systems.AirWatch - DISA Google Android 13 COBO STIG v2r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-13-008600 - Google Android 13 must be configured to not allow backup of [all applications, configuration data] to remote systems.AirWatch - DISA Google Android 13 COPE STIG v2r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-13-708600 - Google Android 13 must be configured to not allow backup of all work profile applications to remote systems.AirWatch - DISA Google Android 13 BYOD v1r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-14-008600 - Google Android 14 must be configured to not allow backup of [all applications, configuration data] to remote systems.AirWatch - DISA Google Android 14 COPE STIG v2r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-14-008600 - Google Android 14 must be configured to not allow backup of [all applications, configuration data] to remote systems.AirWatch - DISA Google Android 14 COBO STIG v2r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-14-008600 - Google Android 14 must be configured to not allow backup of [all applications, configuration data] to remote systems.MobileIron - DISA Google Android 14 COBO STIG v2r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-14-008600 - Google Android 14 must be configured to not allow backup of [all applications, configuration data] to remote systems.MobileIron - DISA Google Android 14 COPE STIG v2r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-14-708600 - Google Android 14 must be configured to not allow backup of all work profile applications to remote systems.MobileIron - DISA Google Android 14 BYOAD v1r1MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-15-006750 - Google Android 15 allow list must be configured to not include artificial intelligence (AI) applications that process device data in the cloud, including Google Gemini.MobileIron - DISA Google Android 15 COPE STIG v1r2MDM

IDENTIFICATION AND AUTHENTICATION

GOOG-15-006750 - Google Android 15 allow list must be configured to not include artificial intelligence (AI) applications that process device data in the cloud, including Google Gemini.AirWatch - DISA Google Android 15 COBO STIG v1r2MDM

IDENTIFICATION AND AUTHENTICATION

GOOG-15-006750 - Google Android 15 allow list must be configured to not include artificial intelligence (AI) applications that process device data in the cloud, including Google Gemini.AirWatch - DISA Google Android 15 COPE STIG v1r2MDM

IDENTIFICATION AND AUTHENTICATION

iOS Device Management - HandoffTenable Best Practices for Microsoft Intune iOS v1.0microsoft_azure

ACCESS CONTROL, CONFIGURATION MANAGEMENT

MS.AAD.3.2v1 - If phishing-resistant MFA has not been enforced, an alternative MFA method SHALL be enforced for all users.CISA SCuBA Microsoft 365 Entra ID v1.5.0microsoft_azure

ACCESS CONTROL, SECURITY ASSESSMENT AND AUTHORIZATION, CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND INFORMATION INTEGRITY

OpenStack Identity - Disable admin token in /etc/keystone/keystone-paste.iniTNS OpenStack Keystone/Identity Security GuideUnix

ACCESS CONTROL

OpenStack Identity - Disable admin token in /etc/keystone/keystone.confTNS OpenStack Keystone/Identity Security GuideUnix

ACCESS CONTROL

WN10-CC-000197 - Microsoft consumer experiences must be turned off.DISA Microsoft Windows 10 STIG v3r5Windows

CONFIGURATION MANAGEMENT

WN11-CC-000197 - Microsoft consumer experiences must be turned off.DISA Microsoft Windows 11 STIG v2r6Windows

CONFIGURATION MANAGEMENT

ZEBR-10-003900 - Zebra Android 10 must be configured to not allow backup of all applications and configuration data to remote systems.MobileIron - DISA Zebra Android 10 COBO v1r2MDM

ACCESS CONTROL