Skip to content

Anti-Malware

What is Anti-Malware?

Software designed to detect, prevent, and remove malicious software such as viruses, worms, trojans, and ransomware from computer systems and networks.

Information Security

Each of these is named in at least one of the same controls as anti-malware. The number is how many controls name both.

What the standards actually require on anti-malware

Requirements naming anti-malware across 6 standards, quoted from the control text.

PCI DSS 4.07 controls

Audit logs for the anti-malware solution are enabled and retained in accordance with Requirement 10.5.1.

5.3.4 · Audit logs for anti-malware enabled

Deploy modern anti-malware solutions with cloud-delivered protection, real-time scanning, and behaviour monitoring.

ES-2 · Use modern anti-malware software
CIS Controls v83 controls

Configure automatic updates for anti-malware signature files on all enterprise assets.

CIS-10.2 · Configure Automatic Anti-Malware Signature Updates

All in scope devices must run anti malware software that is kept current, scans files on access and prevents execution of known malicious code.

CEP-MA-01 · Anti-Malware Deployment and Operation

Where anti-malware software is used, it must be kept up to date with the latest signatures and engine updates.

CE-MP.2 · Anti-Malware Signatures Updated

Deploy anti-malware solutions validated by the OT vendor where supported, configure scans to avoid impacting real-time operations, and maintain signature updates through approved paths.

OT-HOST-3 · Anti-Malware for OT

Questions people ask about anti-malware

What is Anti-Malware?
Software designed to detect, prevent, and remove malicious software such as viruses, worms, trojans, and ransomware from computer systems and networks.
Why is Anti-Malware important for compliance?
Anti-Malware is a key concept in Information Security. Understanding anti-malware helps organizations meet regulatory requirements, reduce risk, and demonstrate due diligence during audits. Our compliance platform maps 686 frameworks with 311K cross-framework control mappings.
Which compliance frameworks address Anti-Malware?
Anti-Malware appears in the requirement text of PCI DSS 4.0, Azure Security Benchmark, CIS Controls v8, Cyber Essentials Plus, UK Cyber Essentials. Across these standards we have identified 21 controls that name it directly, each linked to the control text on the compliance platform.
Where can I learn more about Anti-Malware?
Explore our compliance framework pages to see how anti-malware applies across different standards and regulations. Our implementation guides provide step-by-step guidance, and the compliance platform offers AI-powered analysis of how this concept maps across 686 frameworks.

See how Anti-Malware applies across compliance frameworks

Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.

Written and maintained by Gerard Blokdyk, The Art of Service.