Establish and apply a secure baseline across your organisations information technology (IT) infrastructure.
Options to consider:
- Establish and define baseline configurations for all endpoints, systems, network devices, cloud services and applications.
- Keep all baseline configurations under periodic review.
- Implement processes and utilising tools that assist in enforcing baseline configurations.
- Implement procedures to ensure you control any modification to baseline configurations.
- Document roles and responsibilities for applying and modifying baseline configurations.
Use appropriate anti-virus and anti-malware software and keep it up-to-date.
Options to consider:
- Conduct risk assessments to determine which anti-virus and anti-malware software is most suitable to your organisation.
- Keep records to demonstrate you’ve installed anti-virus and anti-malware software.
- Schedule regular anti-virus and anti-malware software scans and checks of systems.
- Keep anti-virus and anti-malware software up-to-date and install patches as soon as possible.
- Training staff who are responsible for deciding which anti-virus and anti-malware software to use.
- Keep a record of all updates you’ve installed.