Skip to content
arrow_back
search
ISM-1605 policy ASD Information Security Manual (ISM)

Harden Operating Systems for Secure Virtual Environments

Ensure systems sharing a server are protected by solidifying the operating system.

record_voice_over

Plain language

When you have several systems sharing the same server, it's like multiple households sharing one house. If one system gets hacked, the others are at risk too. Hardening the operating system is like making sure each household locks their doors and windows securely, so if one neighbour leaves theirs open, it doesn't put everyone else in danger.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Feb 2022

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

When using a software-based isolation mechanism to share a physical server's hardware, the underlying operating system is hardened.
policy ASD Information Security Manual (ISM) ISM-1605
priority_high

Why it matters

Without hardening the host OS in shared virtual environments, a compromise can enable cross-VM access, data loss and service disruption.

settings

Operational notes

Maintain hardened host OS baselines for hypervisors/VM hosts; patch promptly, disable unused services, and regularly audit settings to prevent drift.

Mapping detail

Mapping

Direction

Controls