CIS Benchmarks October 2023 Update

CIS-Benchmarks

The following CIS Benchmarks have been released or updated. We've highlighted the major updates below. Each Benchmark includes a full changelog that can be referenced to see all changes made.

CIS Benchmarks Updated in September

CIS Google Android Benchmark v1.5.0

 Here's a look at what went into this updated Benchmark:

  • Corrected typographical errors
  • Now covers Google Android OS 12 & 13

Thanks to the Google Android community for updating this Benchmark.

Download the CIS Google Android Benchmark in PDF.

CIS SecureSuite Members can visit CIS WorkBench here to download other formats and related resources.

CIS IBM Db2 11 Benchmark v1.1.0

Here’s a quick overview of improvements we’ve made:

  • Corrected typographical errors
  • Incorporated changes based on community feedback and IBM Technical Documentation

Thanks to Andrea Ott and the IBM Db2 community. Special thanks go to Greg Stager and IBM for dedicating their time and resources to this Benchmark.

Download the CIS IBM Db2 Benchmark in PDF.

CIS SecureSuite Members can visit CIS WorkBench here to download other formats and related resources.

CIS Kubernetes Benchmark v1.8.0

Here are some notes on the work that we did:

  • Edited guidance and recommendations to specifically address Kubernetes v1.27
  • Evaluated and improved all automated assessment content
  • Redefined and improved Controls 8 recommendation mapping

A huge thank you to the CIS Kubernetes Community for making this Benchmark happen. Special thanks go to Mark Larinde and Cory Sherman.

Download the CIS Kubernetes Benchmark in PDF.

CIS SecureSuite Members can visit CIS WorkBench here to download other formats and related resources.

CIS Microsoft Edge Benchmark v2.0.0

Here's a summary of the changes we made:

  • Added 17 new security settings
  • Updated seven settings
  • Removed two settings

A huge thank you to William Ferguson, Johannes Goerlich, Daniel Jasiak, and Patrick Stoeckle for making this Benchmark happen.

Download the CIS Microsoft Web Browser Benchmark in PDF.

CIS SecureSuite Members can visit CIS WorkBench here to download other formats and related resources.

CIS VMware ESXi 7.0 Benchmark v1.3.0

Here are some highlights of the work that was done:

  • Edited guidance and recommendations to specifically address ESXi 7.0 update 3n
  • Evaluated and improved all automated assessment content
  • Refined and improved Controls v8 recommendation mapping

A huge thank you to the CIS Apache Tomcat Community for making this Benchmark happen. Special thanks go to Matthew Reagan of CIS and Robert Plankers of VMware.

Download the CIS VMware Benchmark in PDF.

CIS SecureSuite Members can visit CIS WorkBench here to download other formats and related resources.

New CIS Benchmarks Released in September

CIS IBM i V7R5M0 Benchmark v1.1.0

Here are the major milestones involved with creating this Benchmark:

  • Updated configurations based on community feedback

Thanks to the entire CIS IBM i Community for support. Special thanks go to Bruce Bading, Thomas Barlen, Robert Andrews, Terry Ford, Robin Tatam, Dan Riehl, Tim Mullenbach, Steve Will, and Bálint Varga-Perke.

Download the CIS IBM i Benchmark in PDF.

CIS SecureSuite Members can visit CIS WorkBench here to download other formats and related resources.

CIS Microsoft Azure Compute Services Benchmark v1.0.0

Version 1.0.0 is the first release of a long-term goal to support in-depth recommendations for individual cloud services. The Azure Compute Services Benchmark is a first foray in a set of categorical Service Benchmarks, which will build upon the Cloud Foundations Benchmarks to cover security best practice recommendations for individual cloud services. 

Download the CIS Microsoft Azure Benchmark in PDF.

CIS SecureSuite Members can visit CIS WorkBench here to download other formats and related resources.

Additional CIS Benchmarks Announcements

Are you interested in providing feedback to the Benchmarks Product Team about the prioritization of the Benchmarks recommendations and/or how the Level 1 and Level 2 recommendations are categorized? We’d love to hear from you! Contact [email protected].

  

 

Get involved by helping us develop content, review recommendations, and test CIS Benchmarks. Join a community today! We're looking for contributors for the following technologies:

 

   
If you're interested, please reach out to us at [email protected]. You can also learn more on the CIS Benchmarks Community page.