Skip to content
arrow_back
search
E8-RM-ML1.4 bolt ASD Essential Eight

Prevent users from changing Microsoft Office macro security settings

Ensure users cannot alter macro settings in Microsoft Office applications.

record_voice_over

Plain language

This control is about stopping people from changing the security settings for macros in Microsoft Office programs like Word and Excel. This is important because if these settings are altered, harmful macros could sneak in and cause chaos in your files, leading to data loss or theft.

Framework

ASD Essential Eight

Control effect

Preventative

E8 mitigation strategy

RM

Classifications

N/A

Official last update

N/A

Control Stack last updated

19 Mar 2026

E8 maturity levels

ML1

Official control statement

Microsoft Office macro security settings cannot be changed by users.
bolt ASD Essential Eight E8-RM-ML1.4
priority_high

Why it matters

If users can change Office macro security, they may enable macros and run malicious code, leading to malware, data loss or fraud.

settings

Operational notes

Enforce Office macro security via GPO/Intune; regularly confirm users cannot change settings and audit policy/application baselines after updates.

Mapping detail

Mapping

Direction

Controls