Chrome STIG Prep
15 items · Security · Medium difficulty · 1 hour
Gather and test Chrome STIG resources before deployment.
-
Download SCAP 1.3 content (Google Chrome STIG)
Grab the official SCAP 1.3 package for automated scanning.
-
Download Standalone XCCDF (Google Chrome STIG)
Get the XCCDF benchmark for manual or scanner import.
-
Download Intune policy pack for Chrome
Retrieve the Intune policy definitions provided by DISA.
-
Download Group Policy Objects (GPOs) for Chrome
Download the GPO templates and configured policy files.
-
Download SCC / automated content for compliance tools
Grab SCC content for your automated compliance platform.
-
Verify SHA checksums for all downloaded files
Confirm integrity using provided SHA values.
-
Review the Google Chrome STIG document
Read requirements, SRG relationships, and applicability notes.
-
Import GPOs into a test domain
Load GPO files into a lab AD environment for validation.
-
Apply GPO to a pilot OU
Target a small pilot OU to validate effects before wide rollout.
-
Verify GPO settings applied on pilot machines
Check registry/policy settings on sample endpoints.
-
Import Intune policies into a test tenant
Load and review Intune policy packs for assigned groups.
-
Import SCAP/XCCDF into your compliance scanner
Prepare the scanner to run Chrome STIG checks (XCCDF/SCAP).
-
Run a lab scan using SCAP/XCCDF and review findings
Identify and note deviations before production rollout.
-
Document a baseline configuration and rollback plan
Record current settings and a clear rollback procedure.
-
Subscribe to DISA/STIG updates and note POC email
Track future updates; keep DISA contact email for comments.
Printed from TickYouOff — the interactive version tracks your progress and can be shared with others.