Loading...
Loading...
SPH Domain
Automated security hygiene
The garrison. Daily operations.
Security Posture and Hygiene is the garrison: the daily operations that keep your defenses functional. SPH missions cover endpoint protection, email security, security awareness, log management, and the continuous measurement of security hygiene metrics.
Capabilities
EDR deployment, endpoint hardening, and continuous endpoint health monitoring.
Advanced email gateway, phishing protection, DMARC enforcement, and secure communication channels.
Role-based training programs, phishing simulations, and security culture development.
Continuous security posture scoring with automated hygiene checks and trend reporting.
Missions
Each mission has defined scope, deliverables, and completion criteria.
Establish baseline security posture score across all six PDM domains.
Complete inventory of all endpoints including BYOD and IoT devices.
Evaluate email security controls including SPF, DKIM, DMARC, and gateway configuration.
Measure current security awareness levels through simulated phishing and assessments.
Deploy endpoint detection and response across all managed endpoints.
Implement advanced email security with sandboxing, URL rewriting, and attachment scanning.
Design and launch role-based security awareness training program with quarterly modules.
Deploy or configure SIEM with log sources, correlation rules, and alerting.
Apply endpoint hardening policies including application whitelisting and USB controls.
Implement DNS-layer security filtering to block malicious domains and C2 channels.
Deploy browser security policies including extension management and safe browsing enforcement.
Execute targeted phishing simulation campaign with metrics and remedial training.
Simulate endpoint compromise and measure detection, isolation, and response times.
Scenario-based tabletop exercise testing incident response procedures and decision-making.
Continuous security posture monitoring with automated scoring and trend analysis.
Monthly security awareness content delivery with quarterly phishing simulations.
Weekly security hygiene metrics including patch status, EDR health, and email filter effectiveness.
Regular log analysis and SIEM rule tuning based on emerging threat patterns.
The Foundational Risk Model evaluates your SPH domain and produces specific mission recommendations.