From the course: Certified Information Security Manager (CISM) Cert Prep (2022): 1 Information Security Governance

Unlock the full course today

Join today to access over 23,200 courses taught by industry experts.

Developing security baselines

Developing security baselines

- [Instructor] Most cyber security teams are responsible for maintaining the security of literally thousands of devices ranging from laptops and tablets, to routers and firewalls. The sheer number of these systems makes it impossible to manually configure each of them to operate in a secure manner. Security baselines provide enterprises with an effective way to specify the minimum standards for computing systems and efficiently apply them across deployed devices. Many organizations begin their security standardization efforts by developing a baseline standard that sets forth the minimum standards that apply to all devices regardless of their purpose, operating system, or the types of data that they contain. For example, a baseline security standard might require that a named individual is responsible for the security of each device. That the device is protected against unauthorized access attempts. That it doesn't…

Contents