The default Builtin\Administrators group must be removed from the SCOM Administrators Role Group.
An XCCDF Rule
Description
SCOM servers with default well-known operating system groups defined the SCOM Administrators Global Group may allow a local administrator access to privileged SCOM access.
- ID
- SV-237437r643957_rule
- Version
- SCOM-IA-000003
- Severity
- Medium
- References
- Updated
Remediation Templates
A Manual Procedure
Remove the Built-in\Administrators group from the SCOM Administrators Role Group.