Details.
Verification of Windows or Linux builds for vulnerabilities and best practices to establish a secure base image. Checks usually cover BIOS and disk encryption, physical security, security policies and GPOs, users, groups and permissions, network and firewall settings, Active Directory, single sign-on, software and services, software restrictions, data exfiltration measures and CIS controls benchmarking.
