CIS Benchmarks January 2025 Update

CIS-Benchmarks

The following CIS Benchmarks™ and CIS Build Kits have been updated or recently released. We've highlighted the major updates below. Each Benchmark and Build Kit includes a full changelog that references all changes.

CIS Benchmarks Updated Last Month

CIS Apple macOS 12.0 Monterey Benchmark v4.0.0

Some items of note for this update:

  • Supplemental section added to give more information on the security of macOS that does not require specific guidance
  • Added missing functionality that was not auditable in previous versions of the Benchmarks
  • Modified recommendations to reflect community tickets

A huge thanks to the CIS macOS Community for making this happen. Special thanks go to Ron Colvin, William Harrison, Bob Gendler, Allen Golbig, Dan Brodjieski, and John Mahlman.

Download the CIS Apple macOS Benchmark in PDF.

CIS SecureSuite® Members can visit CIS WorkBench here to download other formats and related resources. 

CIS Apple macOS 14.0 Sonoma Cloud-tailored Benchmark v1.1.0

Some items of note for this update:

  • Added missing functionality that was not auditable in previous versions of the Benchmarks
  • Removed recommendations that were not needed in a non-local environment
  • Updated all Terminal commands to reflect the shell change from bash to zsh
  • Modified recommendations to reflect community tickets

A huge thanks to the CIS macOS Community for making this happen.

Download the CIS Apple macOS Benchmark in PDF.

CIS SecureSuite Members can visit CIS WorkBench here to download other formats and related resources. 

CIS Microsoft Intune for Office Benchmark v1.1.0

Some items of note for this update:

  • Added one new security setting
  • Removed one setting

A huge thank you to the CIS Windows Intune Community and Windows Team for making this Benchmark happen.

Download the CIS Microsoft Intune for Microsoft Windows Benchmark in PDF.

CIS SecureSuite Members can visit CIS WorkBench here to download other formats and related resources. 

CIS Microsoft Windows Server 2019 STIG Benchmark v3.0.0

Some items of note for this update:

  • Added 16 new security settings
  • Updated 22 settings
  • Removed 14 settings
  • Added STIG-related text to over 200 recommendations
  • Moved, added, and removed sections due to updated ADMX templates

A huge thank you to the CIS Windows Community and Windows Team for making this Benchmark happen.

Download the CIS Microsoft Windows Server Benchmark in PDF.

CIS SecureSuite Members can visit CIS WorkBench here to download other formats and related resources. 

CIS Microsoft Windows Server 2022 STIG Benchmark v2.0.0

Some items of note for this update:

  • Added 16 new security settings
  • Updated 22 settings
  • Removed 14 settings
  • Added STIG-related text to over 200 recommendations
  • Moved, added, and removed sections due to updated ADMX templates

A huge thank you to the CIS Windows Community and Windows Team for making this Benchmark happen.

Download the CIS Microsoft Windows Server Benchmark in PDF.

CIS SecureSuite Members can visit CIS WorkBench here to download other formats and related resources. 

CIS Red Hat OpenShift Container Platform Benchmark v1.7.0

This Benchmark includes support for Kubernetes clusters built on Kubernetes v1.28, v1.29, and v1.30. Some items of note for this update: 

  • The AAC has been improved
  • The Benchmark and recommendations have been updated to support Kubernetes v1.30

A huge thank you to the CIS Kubernetes Community for making this Benchmark happen, with special thanks to Rory McCune, Mark Larinde, and Lance Bragstad for their dedication to making this Benchmark the best it can be.

Download the CIS Kubernetes Benchmark in PDF.

CIS SecureSuite Members can visit CIS WorkBench here to download other formats and related resources. 

CIS SUSE Linux Enterprise 15 Benchmark v2.0.0

Some items of note for this update:

  • Added 204 recommendations
  • Added 57 sections
  • Dropped 148 recommendations
  • Dropped 34 sections
  • Moved 80 recommendations
  • Updated 81 recommendations
  • Updated 10 sections

A special thank you to the Linux Community and the Nix team. Without their hard work, this Benchmark would not have been possible.

Download the CIS SUSE Linux Enterprise Server Benchmark in PDF.

CIS SecureSuite Members can visit CIS WorkBench here to download other formats and related resources. 

CIS Build Kits Created Last Month

 

 

Get involved by helping us develop content, review recommendations, and test CIS Benchmarks. Join a community today!

If you're interested, please reach out to us at [email protected]. You can also learn more on the CIS Benchmarks Community page.