Vulnerability Discussion
The macOS system must employ automated mechanisms to determine the state of system components. The DOD requires the installation and use of an approved endpoint security solution to be implemented on the operating system. For additional information, reference all applicable OPORDs and FRAGOs on SIPRNet.
Check
Verify the macOS system is configured with automated mechanisms to determine the state of system components.
Ask the system administrator (SA) or information system security officer (ISSO) if the approved endpoint security solution is loaded on the system.
If the installed components of the endpoint security solution are not at the DOD-approved minimal versions, this is a finding.
Fix
Install the approved endpoint security solution onto the system.