ASD Strategies to Mitigate Cyber Security Incidents

The Australian Signals Directorate (ASD) has developed prioritised mitigation strategies to help technical cyber security professionals in all organisations mitigate cyber security incidents caused by various threats.

The new document establishes the "essential 8 mitigation strategies" that ASD considers as the cyber security baseline for all organisations against malware infection and security incidents. The recommendations include:

  1. using application whitelisting to help prevent malicious software and unapproved programs from running
  2. patching applications such as Flash, web browsers, Microsoft Office, Java and PDF viewers
  3. patching operating systems
  4. restricting administrative privileges to operating systems and applications based on user duties
  5. disabling untrusted Microsoft Office macros to prevent them from being used as malware vectors
  6. blocking browser access to Adobe Flash Player, online ads and untrusted Java code
  7. implementing multi factor authentication
  8. ensuring daily back up of important data