Back to catalog
END-08.2ENDEndpoint Security
Automatic Spam and Phishing Protection Updates
Description
Mechanisms exist to automatically update anti-phishing and spam protection technologies when new releases are available in accordance with configuration and change management practices.
Cross-Mappings
67 paths across 3 frameworks
Cross-Mappings
NIST 800-531 mapping
SI-8(2)
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
CCI2 mappings
CCI-001308
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-005002
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
STIG63 mappings
SV-205024r396447_ruleThe ALG that implements spam protection mechanisms must be updated automatically.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 2 · disa_xccdf · related
SV-213454r823077_ruleMicrosoft Defender AV must be configured to check for definition updates daily.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 2 · disa_xccdf · related
SV-213454r961161_ruleMicrosoft Defender AV must be configured to check for definition updates daily.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · V2R8 · disa_xccdf · related
SV-221232r961161_ruleExchange messages with a blank sender field must be rejected.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · V2R6 · disa_xccdf · related
SV-221233r961161_ruleExchange messages with a blank sender field must be filtered.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · V2R6 · disa_xccdf · related
SV-221234r961161_ruleExchange filtered messages must be archived.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · V2R6 · disa_xccdf · related
SV-221235r961161_ruleThe Exchange Sender filter must block unaccepted domains.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · V2R6 · disa_xccdf · related
SV-221236r961161_ruleExchange nonexistent recipients must not be blocked.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · V2R6 · disa_xccdf · related
SV-221237r961161_ruleThe Exchange Sender Reputation filter must be enabled.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · V2R6 · disa_xccdf · related
SV-221238r961161_ruleThe Exchange Sender Reputation filter must identify the spam block level.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · V2R6 · disa_xccdf · related
+53 more (top 10 by confidence shown)
Control mappings provided by the Secure Controls Framework (SCF).
SCF
Powered by the Secure Controls Framework
The control catalog, cross-mappings, and STRM relationship data shown here are provided by the Secure Controls Framework (SCF), 2026.2. Every mapping is credited to SCF as the methodology, with the SCF reference and version stored alongside it.
© SCF Council, LLC. Secure Controls Framework content is free and shown here with attribution. securecontrolsframework.com · About SCF on STIGViewer