Endpoint Hardening

Hardening is the control layer most estates start and never finish. These articles cover baseline selection and enforcement, the settings that matter most on Windows endpoints and servers, why hardening regresses after it’s applied, and how to roll changes out without generating a wave of tickets.

Automated Remediation: Closing the Gap Between Risk Hunting & Hardening

Automated Remediation: Closing the Gap Between Risk Hunting & Hardening

Automated remediation closes the gap between finding risk and maintaining a hardened state – turning security findings into prioritized, validated, reversible fixes that stay enforced as environments change.

Learn more

Topic

Author

LockBit 2.0 logo, captioned 'Are you letting LockBit loose with lax security?'

LockBit 2.0 Ransomware: Insights & Counter-Measures

LockBit 2.0 doesn't succeed because organizations lack security tools. It succeeds when the last mile of hardening is left open. Learn how the ransomware operates and the practical counter-measures that close its favorite entry points.

Yakov Kogan
Yakov Kogan
Nov 23, 2023 | 5 min read
Photo of a dynamite bundle with a digital timer, captioned 'Dealing with Windows defaults'

Legacy Windows Settings: An OS Security Time Bomb

Some of the riskiest Windows exposures aren't new threats at all. They're legacy settings that survived every upgrade. This post explains how to find and fix them safely.

Tal Kollender
Tal Kollender
Sep 11, 2023 | 7 min read

Want updates?

Capture the noteworthy, cut the noise!

Get Remedio’s monthly endpoint security briefing on emerging risks, hardening strategies, and what’s new in enterprise security.

Subscribe to our newsletter to stay up-to-date and in the loop.

One email a month. Unsubscribe anytime.

Photo of a stethoscope on a keyboard, captioned 'Cyber hygiene and healthcare security'

Hardening NHS Security With Better Device Configuration

For NHS teams, device configuration is a security control, not a background task. Misconfigurations quietly expand risk across clinical environments, while hardened settings contain it. This post breaks down how configuration hygiene strengthens NHS security.

Jamie Byers
Jamie Byers
Sep 5, 2023 | 7 min read
Photo of a business handshake, captioned 'Securing endpoints after an M&A'

Best Practices in Cybersecurity: Mergers and Acquisitions

Cybersecurity due diligence doesn't end at discovery. In mergers and acquisitions, the real risk often lives in inherited misconfigurations, conflicting policies, and unmanaged endpoints. Learn how to ensure policy compliance across newly combined environments.

Gilad Raz
Gilad Raz
Aug 28, 2023 | 6 min read
Photo of a robotic hand touching a laptop, captioned 'An automated approach to configuration security'

Optimize Operational Efficiency with Secure Configuration Automation

Secure configuration automation closes the last mile between visibility and action. This post explains how automated assessment and remediation cut manual toil, reduce misconfigurations, and keep endpoints continuously hardened without disrupting operations.

Jason Doris
Jason Doris
Apr 4, 2023 | 5 min read
ncsc-caf-cyber-attacks-defense

Implementing NCSC CAF and Ensuring Device Security at Scale

Thriving through the NCSC CAF means turning secure configuration into an operational discipline, with continuous enforcement, safe remediation, and measurable posture gains.

Jamie Byers
Jamie Byers
Mar 29, 2023 | 5 min read
Cyber Essentials checkmark badge, captioned 'Your essential guide to NCSC certification'

Your Complete Guide to Cyber Essentials Compliance

Cyber Essentials compliance doesn’t fail on policy alone. It breaks down in the last mile, where endpoint hardening, configuration drift, and day-to-day operational pressure collide. This guide shows you how to meet Cyber Essentials requirements with continuous enforcement and safe remediation, so compliance holds up in production, not just on paper.

Jamie Byers
Jamie Byers
Nov 24, 2022 | 7 min read
sizing-up-ipv6-security

The Truth About IPv6 Security: Separating Fact from Fiction

IPv6 security isn’t inherently risky, but misconfiguration, weak visibility, and uneven hardening can expand your attack surface fast. This post breaks down common myths, the real IPv6 vulnerabilities security teams should pay attention to, and what it takes to reduce exposure across modern endpoints.

Tal Kollender
Tal Kollender
Sep 20, 2022 | 3 min read
what-are-security-misconfigurations

Misconfigurations – The Overlooked Risk Fueling 1 in 3 Breaches

Misconfigurations don’t just create risk, they create preventable exposure. See why they fuel 1 in 3 breaches and how safe remediation helps close the gap.

Jamie Byers
Jamie Byers
Jul 29, 2021 | 5 min read
cyber-posture-you-cant-stop-trying

How Remedio Helps Organizations Improve their Cyber Posture

Cyber posture doesn’t improve just because you can see the problem. It improves when misconfigurations are hardened, configuration drift is controlled, and safe remediation happens fast enough to shrink the exposure gap. This post breaks down how Remedio helps organizations move from visibility to continuous enforcement, stronger endpoint posture, and measurable risk reduction.

Ran Shiftan
Ran Shiftan
Dec 16, 2020 | 5 min read

How to Prevent Horizontal Privilege Escalation on Windows Endpoints

Stopping privilege escalation takes more than visibility. Learn how to harden endpoints, control configuration drift, and reduce the paths adversaries use to move laterally.

Tal Kollender
Tal Kollender
Aug 9, 2020 | 4 min read