Skip to content
arrow_back
search
ISM-0382 policy ASD Information Security Manual (ISM)

Restrict Unprivileged User Actions on Applications

Ordinary users cannot remove or turn off approved apps on their own.

record_voice_over

Plain language

This is about making sure that regular staff members can't uninstall or turn off important software on company devices. It's important because if someone were to remove essential software by mistake, it could open the door for security risks, leading to data breaches or other disruptions.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

May 2025

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Unprivileged users do not have the ability to uninstall or disable approved applications.
policy ASD Information Security Manual (ISM) ISM-0382
priority_high

Why it matters

If unprivileged users can uninstall or disable approved apps, security controls (e.g. AV/EDR) may be removed, increasing risk of compromise and data loss.

settings

Operational notes

Enforce policy/MDM so standard users cannot uninstall or disable approved apps; regularly review local admin rights and alert on removal/disable events.

Mapping detail

Mapping

Direction

Controls