CIS Benchmark for Google Android — Neova Tech Solutions

Security configuration benchmarks are provided in this document which guides for establishing secure configuration posture for the Google Android OS. This benchmark will be useful for Android 10.0.x and hardware devices on which this OS is supported.
So the following settings have to be checked or changed:
- Android OS security settings
- Android OS privacy settings
- Android OS chrome browser settings
Android OS security settings
Android OS can be secured by making the changes into settings of OS, which will reduce the probability of exploiting the device by an attacker.
Description:
Ensure that the device is updated with security patch levels.
Audit:
To verify that the devices up to date to the most recent firmware version:
- Tap settings gear icon
- Tap advanced
- Tap System update
- Verify that Android security patch level is current and that no new updates exist.
Remediation:
Follow the below steps to check and update the device security patch level:
Similarly, we can ensure for other options like enabled screen lock, disabled pattern visibility, disabled smart lock etc. in the security settings section.
Android OS Privacy settings
Privacy-related recommendations are provided in this section.
Description:
Disable the notifications on the lock screen.
Audit:
To verify ‘Notifications on the lock screen’ are set to ‘don’t show notifications at all’:
6. Verify that the lock screen is set to don’t show notifications at all.
Remediation:
Follow the below steps to set on the lock screen to ‘don’t show notifications at all’:
6. Tap lock screen and set it to don’t show notifications at all.
According to the recommendations, we can disable Use Location, Web and app activity, Device Information etc. in the privacy settings section.
Android OS Chrome Browser Settings
Description:
This setting controls if a site asks before accessing the microphone.
Audit:
To verify if microphone is enabled:
Remediation:
Follow the below steps to Enable the microphone permission request:
Conclusion
Similarly, we can enable the settings for Location, Safe Browsing, Do Not Track options to secure Android OS.
Mobile devices with Android OS can be secured by following CIS benchmarks which help to protect the device from different threats.
Originally published at https://www.neovasolutions.com on April 25, 2020.
Connect with us: