Building security baselines
Security baselining is the practice of implementing a minimum set of standards and configurations within your environment. More specifically, it involves capturing a minimum configuration for your Windows devices. Building a baseline provides a minimum defined standard that will help ensure a more secure environment as you deploy systems and devices within an organization. We covered building standards for security baselines in Chapter 2, Building a Baseline. However, here, we want to focus specifically on Windows using the Microsoft Security Compliance Toolkit to create, apply, and analyze your Windows baselines.
Using the Microsoft Security Compliance Toolkit
We will be using the recommended baselines from the Microsoft Security Compliance Toolkit to build our policies. When downloading the toolkit, the following options are available for selection from the Microsoft download site:
- Windows 10 security baselines
- Windows Server security...