Endpoint Security for Windows 10

Well-Tempered Computer

Recommendations for Windows 10

The majority of successful attacks on systems with Windows 10 can already be detected or prevented with the on-board tools available in the operating system. To make it easier to configure the operating system appropriately, the German Federal Office for Information Security (BSI) recently published recommended actions for securing Windows systems: SiSyPHuS Win10: Study on System Integrity, Logging, Hardening, and Security-Relevant Functionality in Windows 10. [9] One focus in creating this was on ease of implementation and practical application. For this reason, the BSI makes the recommended configuration settings available for download as group policy objects that can be imported directly.

In the security analysis, BSI examines the security-critical functions of the operating system. The goal is to be able to evaluate the security and residual risks for using Windows 10, to identify framework conditions for secure use of the operating system, and to create practically applicable advice for hardening and secure use. The recommendations from SiSyPHuS are primarily aimed at federal and state authorities, as well as companies. However, technically savvy citizens can also implement the listed points, depending on the Windows 10 version they are using.

The recommendations, Group Policy objects (GPOs), and other partial results of the study that have already been published are available on the BSI website [9]. The BSI intends to publish further conclusions from other parts of the study successively. The analyses include components such as PowerShell, the application compatibility infrastructure, driver management, and PatchGuard. The subject of the study was Windows 10 Enterprise LTSC 2019, 64-bit, German-language version.


Microsoft has made an effort in Windows 10 to expand the list of new security features in addition to those already built-in and, as a result, has achieved a better level of protection than in older operating system versions. The semiannual updates and the ever-increasing integration with Azure Cloud make Windows 10 one of the most secure operating systems on the market. Unfortunately, many features require the use of the Enterprise version and cloud integration.

Buy this article as PDF

Express-Checkout as PDF
Price $2.95
(incl. VAT)

Buy ADMIN Magazine

Get it on Google Play

US / Canada

Get it on Google Play

UK / Australia

Related content

comments powered by Disqus
Subscribe to our ADMIN Newsletters
Subscribe to our Linux Newsletters
Find Linux and Open Source Jobs

Support Our Work

ADMIN content is made possible with support from readers like you. Please consider contributing when you've found an article to be beneficial.

Learn More”>


		<div class=