From the course: ISC2 Certified Information Systems Security Professional (CISSP) (2024) Cert Prep

Unlock this course with a free trial

Join today to access over 24,700 courses taught by industry experts.

Developing security baselines

Developing security baselines

- [Narrator] Most cybersecurity teams are responsible for maintaining the security of literally thousands of devices, ranging from laptops and tablets, to routers and firewalls. The sheer number of these systems makes it impossible to manually configure each of them to operate in a secure manner. Security baselines provide enterprises with an effective way to specify the minimum standards for computing systems and efficiently apply them across deployed devices. Many organizations begin their security standardization efforts by developing a baseline standard that sets forth the minimum standards that apply to all devices regardless of their purpose, operating system or the types of data that they contain. For example, a baseline security standard might require that a named individual is responsible for the security of each device. That the device is protected against unauthorized access attempts. That it doesn't jeopardize the confidentiality, integrity, or availability of other…

Contents