Skip to content

Microsoft Defender Antivirus Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-APP-000210

    <GroupDescription></GroupDescription>
    Group
  • Microsoft Defender AV must be configured to block Win32 imports from macro code in Office.

    &lt;VulnDiscussion&gt;This rule blocks potentially malicious behavior by not allowing macro code to execute routines in the Win 32 dynamic link lib...
    Rule Medium Severity
  • SRG-APP-000210

    <GroupDescription></GroupDescription>
    Group
  • Microsoft Defender AV must be configured to prevent user and apps from accessing dangerous websites.

    &lt;VulnDiscussion&gt;Enable Microsoft Defender Exploit Guard network protection to prevent employees from using any application to access dangerou...
    Rule Medium Severity
  • SRG-APP-000207

    <GroupDescription></GroupDescription>
    Group
  • Microsoft Defender AV must be configured for automatic remediation action to be taken for threat alert level High.

    &lt;VulnDiscussion&gt;This policy setting allows the customization of which automatic remediation action will be taken for each threat alert level....
    Rule Medium Severity
  • SRG-APP-000207

    <GroupDescription></GroupDescription>
    Group
  • Microsoft Defender AV must be configured for automatic remediation action to be taken for threat alert level Medium.

    &lt;VulnDiscussion&gt;This policy setting allows the customization of which automatic remediation action will be taken for each threat alert level....
    Rule Medium Severity
  • SRG-APP-000207

    <GroupDescription></GroupDescription>
    Group
  • Microsoft Defender AV must be configured for automatic remediation action to be taken for threat alert level Low.

    &lt;VulnDiscussion&gt;This policy setting allows the customization of which automatic remediation action will be taken for each threat alert level....
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules