Baselines define minimum security configurations for systems. Every device should meet the baseline before deployment.
What baselines cover:
- OS hardening settings
- Required security software
- Disabled unnecessary services
- Firewall configurations
- Logging requirements
- Patch levels
Sources for baselines:
- CIS Benchmarks
- NIST guidelines
- Vendor security guides
- Your own standards
Benefits: Consistent security, easier auditing, faster deployment, clear remediation targets. Automate baseline enforcement.