CIS Benchmark testing of Windows SIEM configuration.

This is an application for testing the configuration of Windows Audit Policy settings against the CIS Benchmark recommended settings.

Lots of organisations struggle with noisy Windows devices, especially if the SIEM vendor is charging by events volume. auditpolCIS points users in the direction of logging subcategories that can be disabled. We made an assessment of the security value of subcategories versus their noise volumes.

Note that CIS Benchmarks don't cover all categories that we can see from the auditpol command output. Where they do cover them, the CIS Benchmark recommendation applies. Where they do not cover (27 out of 59 tests), in most cases we have recommended a "No Auditing" setting.

Project Samples

Project Activity

See All Activity >

Follow auditpolCIS

auditpolCIS Web Site

Other Useful Business Software
Ship Agents Faster Icon
Ship Agents Faster

Transform your applications and workflows into powerful agentic systems at global scale.

Gemini Enterprise Agent Platform lets you rapidly build, scale, govern and optimize production-ready agents grounded in your organization's data. The platform enables developers to build custom or pre-built agents for virtually any use case. New customers get $300 in free credits.
Get Started Free
Rate This Project
Login To Rate This Project

User Reviews

Be the first to post a review of auditpolCIS!

Additional Project Details

Operating Systems

Linux, Mac, Windows

Intended Audience

Auditors, Developers, Security Professionals, System Administrators, Testers

User Interface

Console/Terminal

Programming Language

Python

Registered

2023-04-19