Endpoint protections (such as secure configuration, security applications, and host monitoring) are implemented to protect assets that are important to the delivery of the function, where feasible, at least in an ad hoc manner
Endpoint protections refer to cybersecurity controls applied directly to IT and OT assets. These controls should be focused on prevention of endpoint security risks such as exploits, attacks and inadvertent data leakage caused by human error. Endpoint protections may include configuration hardening, configuration policies and rules, endpoint detection and response software, anti-malware software, monitoring software agents, data loss prevention tools, host-based intrusion detection and firewalls, and other protections.
Related Practices · Input From: Implementing ASSET-1a provides input that may be useful for implementing this practice. · Progression: This practice is part of a practice progression. Practice progressions are groups of related practices that represent increasingly complete or more advanced implementations of an activity. The practices in this progression include: ARCHITECTURE-3a, ARCHITECTURE-3b, ARCHITECTURE-3c, ARCHITECTURE-3d, ARCHITECTURE-3h, ARCHITECTURE-3k.