UCF STIG Viewer Logo

The MDM server device integrity validation component must provide a near real-time alert when any of the organization defined list of compromise or potential compromise indicators occurs.


Overview

Finding ID Version Rule ID IA Controls Severity
V-36178 SRG-APP-284-MDM-173-MDIS SV-47582r1_rule High
Description
When an intrusion detection security event occurs it is imperative the operating system that has detected the event immediately notify the appropriate support personnel so they can respond accordingly. The ability of an MDM server to alert on compromises to the managed mobile devices mitigates the potential for these compromises to have further consequences to the enterprise.
STIG Date
Mobile Device Manager Security Requirements Guide 2013-01-24

Details

Check Text ( C-44418r1_chk )
Review the MDM server configuration to ensure the MDM server device integrity validation component provides a near real-time alert when any of the organization defined list of compromise or potential compromise indicators occurs. If this function is not configured, this is a finding.
Fix Text (F-40708r1_fix)
Configure the MDM server to provide a near real-time alert when any of the organization defined list of compromise or potential compromise indicators occurs.