CIS provides security benchmarks for various platforms such as servers, operating systems, mobile devices, browsers, and so on. There are two ways one can use CIS benchmarks:
- Individually download the benchmark for the required platform from https://www.cisecurity.org/cis-benchmarks/ and then manually verify the configuration as per the benchmark.
- Use an automated tool for assessing the target platform against the CIS benchmark, such as the CIS CAT tool. The CIS CAT tool can be obtained from https://learn.cisecurity.org/cis-cat-landing-page.
The free version of the CIS CAT tool supports the assessment of only a limited number of benchmarks, while the professional version allows assessment of all available CIS benchmarks. ...