Skip to content
arrow_back
search
ISM-0843 policy ASD Information Security Manual (ISM)

Ensure Workstation Security with Application Control

Application control is used to secure workstations by managing which programs can run.

record_voice_over

Plain language

Application control means keeping a tight lid on which software programs are allowed to run on your office computers. This matters because if unapproved or malicious software runs, it can lead to data loss, privacy breaches, or even bring your business operations to a halt.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Aug 2021

Control Stack last updated

19 Mar 2026

E8 maturity levels

ML1, ML2, ML3

Official control statement

Application control is implemented on workstations.
policy ASD Information Security Manual (ISM) ISM-0843
priority_high

Why it matters

Without application control on workstations, unauthorised or malicious software can run, enabling malware, data theft and service disruption.

settings

Operational notes

Maintain workstation application control by reviewing allow/deny rules and updating authorised application lists after patches, installs and business changes.

Mapping detail

Mapping

Direction

Controls