Hi Everyone,
Following internal penetration testing, Mojave has failed to pass security controls as they do not align with the CIS 10:14 Benchmark. This was no real surprise as we saw it coming. We are now tasked with some security remediation work and i wanted to hear from other who may be sitting in the same boat or who have had experience implementing these controls.
Previously with High Sierra we were able to meet compliance standards fairly easily using Jamf's CIS scrips hosted on Jamf GitHub found here https://github.com/jamf/CIS-for-macOS-High-Sierra-CP/tree/master/CIS%20Scripts which fully assign with https://www.jamf.com/resources/white-papers/macos-security-checklist
It would appear Jamf haven’t completed the benchmark for macOS Mojave yet, you could also argue its not Jamf's responsibility either - but have been helpful in the past in recognising CIS Benchmarks plays a big part in corporate I.T world and have been helpful enough to assist its customers to meet standard with such contributions.
What are people's views?
James.
