Standard SEL
Interactive SEL
Canadian REL
IAB Interactive Standardized Equipment List
return to main tree
Search Interactive SEL:
[05HS-00-FRNS] Prev
[05HS-00-PFWL] Next
SEL Number:
05HS-00-MALW
Title:
Software, Malware/Anti-Virus Protection
Click here to check for SAVER documents related to this item.
Last Updated:
11/7/2024 10:30:57 AM
Previous SEL Number:
05HS-00-MALW
Description:
Software for protection against viruses, spyware, and malicious code. May be obtained for individual hosts or for entire network segments.
ImportantFeatures:
May be obtained as components or packages/suites.
Workstation software should allow both scheduled and "on access" scanning.
Operating Considerations:
Must maintain current signature file to operate effectively - usually requires a subscription.
Some products may look for behavioral anomalies in running applications - usage must be properly baselined to avoid unwanted disruptions due to false positives.
Should be deployed at the workstation, server, and firewall level for entire network segments. Generally deployed as a supplement to other security measures to provide more robust coverage.
Third-party professional security audit of network recommended to identify proper deployment and verify the effectiveness of the deployment against known threats.
Maintenance of current software versions for operating systems and software throughout the system is critical (including peripheral devices, network devices such as routers, and devices that only access the system periodically).
Consider complementary applications from different suppliers to maximize coverage (e.g., spyware protection from one company, anti-virus from another).
Training Requirements:
Core Training: Per Manufacturer's Specifications
Initial Training: Minimal (<1 day)
Sustainment Training: Minimal (<1 day)
Mandatory Standards:
Applicable Standards and References:
NIST SP 800-036, Guide to Selecting Information Security Products, Oct 2003 (WITHDRAWN, still available.)
NIST SP 800-045, Version 2, Guidelines on Electronic Mail Security, Feb 2007
NIST SP 800-083, Revision 1, Guide to Malware Incident Prevention and Handling for Desktops and Laptops, July 2013
MSSL:
HazMat: Response Team
Forensic Technician
Law Enforcement: SWAT/Tactical Team
Medical Point of Dispensing