Skip to content
arrow_back
search
ISM-1341 policy ASD Information Security Manual (ISM)

Implement HIPS or EDR on Workstations

Ensure your computers are protected by constantly monitoring for threats.

record_voice_over

Plain language

This control means you need to set up protective software on your work computers to constantly watch for signs of trouble, like viruses or hackers trying to get in. It matters because if a threat slips through unnoticed, it can lead to data breaches, financial loss, and damage to your business's reputation.

Framework

ASD Information Security Manual (ISM)

Control effect

Detective

Classifications

NC, OS, P, S, TS

ISM last updated

Feb 2025

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

A HIPS or EDR solution is implemented on workstations.
policy ASD Information Security Manual (ISM) ISM-1341
priority_high

Why it matters

Without HIPS/EDR on workstations, malware may go undetected, enabling credential theft and data exfiltration before containment.

settings

Operational notes

Monitor HIPS/EDR console daily, triage high-severity workstation alerts, and confirm agents/signatures are current and reporting to central management.

Mapping detail

Mapping

Direction

Controls