Skip to content

DNS Filtering

What is DNS Filtering?

A security technique that blocks access to malicious or unwanted domains by filtering DNS queries based on threat intelligence and policy.

Information Security

What the standards actually require on dns filtering

Requirements naming dns filtering across 2 standards, quoted from the control text.

Use DNS filtering services on all enterprise assets to block access to known malicious domains.

CIS-9.2 · Use DNS Filtering Services
MITRE D3FEND1 control

Apply D3FEND ISOLATE tactic to create logical or physical barriers in a system to reduce attack opportunities and impact. D3-EI Execution Isolation (D3-HBPI Hardware-based Process Isolation + D3-SCF System Call Filtering + D3-IBCA IO Channel Authentication + D...

MITRE-D3FEND-Isolate-Tactic-Execution-Network-Isolation-Sandboxing-Microsegmentation-DNS-Filtering · MITRE D3FEND Isolate Tactic + Execution + Network Isolation + Sandboxing + Microsegmentation + DNS Filtering

Questions people ask about dns filtering

What is DNS Filtering?
A security technique that blocks access to malicious or unwanted domains by filtering DNS queries based on threat intelligence and policy.
Why is DNS Filtering important for compliance?
DNS Filtering is a key concept in Information Security. Understanding dns filtering helps organizations meet regulatory requirements, reduce risk, and demonstrate due diligence during audits. Our compliance platform maps 686 frameworks with 311K cross-framework control mappings.
Which compliance frameworks address DNS Filtering?
DNS Filtering appears in the requirement text of CIS Controls v8, MITRE D3FEND. Across these standards we have identified 2 controls that name it directly, each linked to the control text on the compliance platform.
Where can I learn more about DNS Filtering?
Explore our compliance framework pages to see how dns filtering applies across different standards and regulations. Our implementation guides provide step-by-step guidance, and the compliance platform offers AI-powered analysis of how this concept maps across 686 frameworks.

See how DNS Filtering applies across compliance frameworks

Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.

Written and maintained by Gerard Blokdyk, The Art of Service.