Skip to content
arrow_back
search
ISM-1592 policy ASD Information Security Manual (ISM)

Prevent Unauthorised Application Installations by Users

Regular users cannot install apps unless they are approved, keeping systems secure.

record_voice_over

Plain language

This control ensures that regular users in your organisation can't install new applications unless they've been given the green light. It matters because if unauthorised apps are installed, it could lead to security breaches, put sensitive data at risk, or cause system disruptions.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

May 2025

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Unprivileged users do not have the ability to install unapproved applications.
policy ASD Information Security Manual (ISM) ISM-1592
priority_high

Why it matters

Allowing users to install unapproved applications can introduce malware, enable data leakage, and create unauthorised access pathways across endpoints.

settings

Operational notes

Enforce application allowlisting and remove local admin rights; regularly review approved apps and alert on unauthorised installation attempts.

Mapping detail

Mapping

Direction

Controls