Vulnerability Discussion
The macOS system must employ automated mechanisms to determine the state
of system components. The DOD requires the installation and use of an approved endpoint security
solution to be implemented on the operating system. For additional information, reference all applicable
OPORDs and FRAGOs on SIPRNet.
Check
Verify the macOS system is configured with automated mechanisms to determine the state of
system components.
Ask the system administrator (SA) or information system security officer (ISSO) if the approved
endpoint security solution is loaded on the system.
If the installed components of the endpoint security solution are not at the DOD-approved minimal
versions, this is a finding.
Fix
Install the approved endpoint security solution onto the system.