Protect user accounts by requiring an additional authentication factor beyond passwords. MFA significantly reduces the risk of account compromise caused by phishing, credential theft, and password reuse.
Hardening items
41 recommendations. Filter by category, criticality, maturity tier, or system.
Reduce the attack surface by disabling Internet Explorer and enforcing Microsoft Edge with Internet Explorer mode only for legacy applications when absolutely required.
Centrally enforce a secure Chrome baseline across your fleet by deploying Google's ADMX templates through Group Policy — lock down extensions, password saving, and risky flags instead of relying on user discretion.
Prevent sensitive business data from being exposed to AI services by implementing data classification, access controls, DLP policies, and approved AI usage guidelines.
Reduce security risks by assigning permissions to roles instead of individual users, ensuring consistent least-privilege access across your environment.
Prevent users from copying data to or from removable USB storage devices by enforcing a Group Policy that blocks USB storage drivers.