IAB Interactive Standardized Equipment List   return to main tree

Search Interactive SEL:



SEL Number: 05HS-00-MALW
Title: Software, Malware/Anti-Virus Protection


Last Updated: 11/7/2024 10:30:57 AM

Previous SEL Number: 05HS-00-MALW

Description: Software for protection against viruses, spyware, and malicious code. May be obtained for individual hosts or for entire network segments.

ImportantFeatures: May be obtained as components or packages/suites.
Workstation software should allow both scheduled and "on access" scanning.


Operating Considerations: Must maintain current signature file to operate effectively - usually requires a subscription.
Some products may look for behavioral anomalies in running applications - usage must be properly baselined to avoid unwanted disruptions due to false positives.
Should be deployed at the workstation, server, and firewall level for entire network segments. Generally deployed as a supplement to other security measures to provide more robust coverage.
Third-party professional security audit of network recommended to identify proper deployment and verify the effectiveness of the deployment against known threats.
Maintenance of current software versions for operating systems and software throughout the system is critical (including peripheral devices, network devices such as routers, and devices that only access the system periodically).
Consider complementary applications from different suppliers to maximize coverage (e.g., spyware protection from one company, anti-virus from another).


Training Requirements: Core Training: Per Manufacturer's Specifications
Initial Training: Minimal (<1 day)
Sustainment Training: Minimal (<1 day)


Mandatory Standards:

Applicable Standards and References:


MSSL:
  • HazMat: Response Team
  • Forensic Technician
  • Law Enforcement: SWAT/Tactical Team
  • Medical Point of Dispensing