Email and Web Browser Protections

Restrict, either through uninstalling or disabling, any unauthorized or unnecessary browser or email client plugins, extensions, and add-on applications.


Login

Email and Web Browser Protections

Level 2

To lower the chance of spoofed or modified emails from valid domains, implement DMARC policy and verification, starting with implementing the Sender Policy Framework (SPF) and the DomainKeys Identified Mail (DKIM) standards.


Login

Email and Web Browser Protections

Block unnecessary file types attempting to enter the enterprise’s email gateway.


Login

Email and Web Browser Protections

Deploy and maintain email server anti-malware protections, such as attachment scanning and/or sandboxing.


Login

Malware Defenses

Deploy and maintain anti-malware software on all enterprise assets.


Login

Malware Defenses

Configure automatic updates for anti-malware signature files on all enterprise assets.


Login

Malware Defenses

Disable autorun and autoplay auto-execute functionality for removable media.


Login

Malware Defenses

Configure anti-malware software to automatically scan removable media.


Login

Malware Defenses

Enable anti-exploitation features on enterprise assets and software, where possible, such as Microsoft® Data Execution Prevention (DEP), Windows® Defender Exploit Guard (WDEG), or Apple® System Integrity Protection (SIP) and Gatekeeper™.


Login

Malware Defenses

Centrally manage anti-malware software.


Login