What Security Controls does the CyberSmart Active Protect run on Mac and Windows devices
The CyberSmart Active Protect conducts a series of Security Controls on each device to verify its security configuration. These controls correspond with the five core areas of Cyber Essentials. The number of controls may differ based on the device model and operating system.
Here's a breakdown of the Security Controls for Mac devices:
1. Automatic Operating System Updates:
Keeping your operating system (OS) up-to-date is vital to defend against new threats and vulnerabilities. Automatic OS updates eliminate manual updates and can improve system performance.
2. Automatic Application Updates:
Enabling automatic app updates ensures your software is always up-to-date, guarding your system against potential threats or vulnerabilities.
3. Firewall:
A local firewall is a pivotal part of your device's protection, acting as the initial layer of defence against external threats. All operating systems offer built-in firewalls that are accessible and effective.
4. Stealth Mode:
Enabling stealth mode prevents your device from being detected through network scans, which could be exploited for subsequent attacks. This feature is part of your firewall's capabilities.
5. System Integrity Protection:
System Integrity Protection (SIP) prevents unauthorised modification of specific system-owned files and directories by processes without proper entitlements.
6. GateKeeper:
The GateKeeper enabled check enhances your system's security by blocking untrusted applications from executing.
7. Password:
Setting a strong password is a fundamental security measure. A robust password (at least eight characters long, with a mix of uppercase and lowercase letters, symbols, and numbers) ensures exclusive access to your device.
8. Anti-malware:
Anti-malware software is a primary defence against external threats. Any reputable anti-malware program with real-time scanning, web surfing protection, and comprehensive file scanning suffices.
9. Local Administrator:
Proper user permissions are essential for maintaining system and information confidentiality, integrity, and availability. Admin privileges should be limited where feasible. Users should ideally have standard accounts, with admin privileges granted only when necessary for tasks like password management.
10. Native Full Disk Encryption:
Encouraging whole-disk encryption adds an extra security layer. Without the correct credentials, unauthorised access to encrypted files becomes nearly impossible.
11. Operating System Supported:
Verifying that the operating system is supported by the manufacturer is vital. Outdated, unsupported systems can expose vulnerabilities that would otherwise be patched through updates.
For Windows devices, the following Security Controls apply:
1. Automatic Operating System Updates:
Similar to Mac devices, automatic OS updates are crucial for maintaining system security and performance.
2. Password:
A strong password is a basic step to ensure exclusive access to your device.
3. Firewall:
A local firewall remains a critical defence against external threats.
4. Anti-malware:
Just as with Mac devices, anti-malware software offers essential protection.
5. Local Administrator:
Proper user permissions and restricted admin privileges are key to maintaining system integrity and security.
6. Operating System Supported:
Ensuring your operating system is manufacturer-supported prevents security vulnerabilities.
7. AutoPlay:
Verifying that AutoPlay is disabled is important to prevent potential susceptibility to malware through this Windows feature.
These controls collectively bolster your device's security and ensure it adheres to best practices.