CIS Benchmark for Google Android — Neova Tech Solutions

Neova Solutions
3 min readApr 25, 2020

Security configuration benchmarks are provided in this document which guides for establishing secure configuration posture for the Google Android OS. This benchmark will be useful for Android 10.0.x and hardware devices on which this OS is supported.

So the following settings have to be checked or changed:

  • Android OS security settings
  • Android OS privacy settings
  • Android OS chrome browser settings

Android OS security settings

Android OS can be secured by making the changes into settings of OS, which will reduce the probability of exploiting the device by an attacker.

Description:

Ensure that the device is updated with security patch levels.

Audit:

To verify that the devices up to date to the most recent firmware version:

  1. Tap settings gear icon
  2. Tap advanced
  3. Tap System update
  4. Verify that Android security patch level is current and that no new updates exist.

Remediation:

Follow the below steps to check and update the device security patch level:

Similarly, we can ensure for other options like enabled screen lock, disabled pattern visibility, disabled smart lock etc. in the security settings section.

Android OS Privacy settings

Privacy-related recommendations are provided in this section.

Description:

Disable the notifications on the lock screen.

Audit:

To verify ‘Notifications on the lock screen’ are set to ‘don’t show notifications at all’:

6. Verify that the lock screen is set to don’t show notifications at all.

Remediation:

Follow the below steps to set on the lock screen to ‘don’t show notifications at all’:

6. Tap lock screen and set it to don’t show notifications at all.

According to the recommendations, we can disable Use Location, Web and app activity, Device Information etc. in the privacy settings section.

Android OS Chrome Browser Settings

Description:

This setting controls if a site asks before accessing the microphone.

Audit:

To verify if microphone is enabled:

Remediation:

Follow the below steps to Enable the microphone permission request:

Conclusion

Similarly, we can enable the settings for Location, Safe Browsing, Do Not Track options to secure Android OS.

Mobile devices with Android OS can be secured by following CIS benchmarks which help to protect the device from different threats.

Originally published at https://www.neovasolutions.com on April 25, 2020.

Sign up to discover human stories that deepen your understanding of the world.

Free

Distraction-free reading. No ads.

Organize your knowledge with lists and highlights.

Tell your story. Find your audience.

Membership

Read member-only stories

Support writers you read most

Earn money for your writing

Listen to audio narrations

Read offline with the Medium app

Neova Solutions
Neova Solutions

Written by Neova Solutions

We transform ideas into beautiful products. Since 2007, we are empowering startups to build disruptive products that are feature-rich and robust.

No responses yet

Write a response