ACSC Essential Eight Uplift Services
1. Application Control
Implement allowlisting using Microsoft Defender Application Control (WDAC), AppLocker, or more comprehensive solution such as Airlock Digital for maturity level 3, ensuring only approved applications are permitted.
2. Patch Applications
Assess and automate OS and Application patching with industry leading Patching Solutions combined with Vulnerability Management to address known application vulnerabilities and achieve maturity level 3.
3. MS Office Macro Settings
Configure Microsoft 365, Group Policy and V3 signatures to disable untrusted Macros and reduce risk from embedded code.
4. User Application Hardening
Harden browsers, PDF readers and Office apps with baseline policies, reducing attack surface for common exploits.
5. Restrict Admin Privileges
Use Entra ID roles, Just-in-Time access, and Privileged Identity Management to control administrative privileges.
6. Patch Operating Systems
Automate Windows/Linux OS patching with compliance reporting for visibility and assurance across all assets.
7. Multi-Factor Authentication
Enforce Phishing-resistant MFA using Entra ID, Okta or other platforms for all users and applications to block credential theft and phishing attacks and achieve maturity level 3.
8. Regular Backups
Implement immutable, encrypted backups with DR testing across hybrid environments for fast, secure recovery.