Security applications are required as an element of device configuration where feasible (for example, endpoint detection and response, host-based firewalls)
Security applications should be an element of device configuration where feasible. The organization should consider protections such as endpoint detection and response solutions that monitor and respond to malicious activity and provide logs to a higher level analysis platform. Host-based firewalls are another consideration for device configuration as they can be configured to allow only essential communication.
Related Practices · Progression: This practice is part of a practice progression. Practice progressions are groups of related practices that represent increasingly complete or more advanced implementations of an activity. The practices in this progression include: ARCHITECTURE-3e, ARCHITECTURE-3f, ARCHITECTURE-3l.