Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-36178 | SRG-APP-284-MDM-173-MDIS | SV-47582r1_rule | High |
Description |
---|
When an intrusion detection security event occurs it is imperative the operating system that has detected the event immediately notify the appropriate support personnel so they can respond accordingly. The ability of an MDM server to alert on compromises to the managed mobile devices mitigates the potential for these compromises to have further consequences to the enterprise. |
STIG | Date |
---|---|
Mobile Device Manager Security Requirements Guide | 2013-01-24 |
Check Text ( C-44418r1_chk ) |
---|
Review the MDM server configuration to ensure the MDM server device integrity validation component provides a near real-time alert when any of the organization defined list of compromise or potential compromise indicators occurs. If this function is not configured, this is a finding. |
Fix Text (F-40708r1_fix) |
---|
Configure the MDM server to provide a near real-time alert when any of the organization defined list of compromise or potential compromise indicators occurs. |