Hi,
For organizations following the macOS CIS Benchmark, I am wondering how you or your procurement group handles purchasing Macs.
For example, if you put an order in for the 2019 iMac model, it comes with 10.14.4 installed and can't downgrade to approved CIS Benchmarks, which is at 10.13 High Sierra. Once the CIS Benchmark drops, it takes time for our internal security group to approve and lay down their revisions.
How are you folks handling this at your organization? Any hints, gotchas, best practices?
