Back
This checklist helps IT teams implement the Microsoft Edge STIG (Ver 2, Rel 4) across managed environments. It’s for system administrators, security engineers, and compliance officers who need a practical, step-by-step implementation plan.
Progress
0 / 19
- Download and read the Microsoft Edge STIG (Ver 2, Rel 4) — Review scope, roles, and controls for the Chromium-based Edge.
- Inventory Chromium-based Edge installations — List versions, platforms, and deployment methods (GPO, Intune, local).
- Map STIG controls to organizational policies and baselines — Identify required changes, exceptions, and owners for each control.
- Download SCAP 1.3 content for the Microsoft Edge STIG — Obtain SCAP 1.3 benchmark to automate assessments.
- Import SCAP content into your compliance or scanning tool — Use your scanner's import function to load the benchmark.
- Download the latest Group Policy Objects (GPO) package — Get the matching GPOs for the STIG version from DISA.
- Obtain Intune policy package for Edge (if using Intune) — Download the provided Intune policy files and guidance.
- Deploy Intune policies (if using Intune)
- Upload Intune policy files — Import the downloaded Intune package into your tenant.
- Assign Intune policies to device groups — Target policies to pilot groups first.
- Monitor Intune deployment status — Watch assignment and compliance reports for failures.
- Apply GPOs to Active Directory OUs — Link and enforce the downloaded GPO package in AD.
- Configure Edge browser security settings per STIG — Set update, extension, privacy, and telemetry settings.
- Disable unsupported or legacy features identified by STIG — Turn off deprecated protocols and risky features.
- Test configurations on pilot machines — Verify functionality and user impact before wide rollout.
- Run SCAP assessment and remediate findings — Scan for STIG compliance and fix discrepancies.
- Document implemented settings and approved exceptions — Record baselines, owners, and rationale for deviations.
- Send comments or change requests to DISA — Email feedback or proposed revisions to [email protected].
- Schedule quarterly STIG review and update process — Assign owners to check for new releases and patches.
Your Stats
🏆
0
Completed
📅
—
Last Done
⏱️
—
Last Time
Completion Rate
Items checked per run
⚡
—
Fastest Run
🔥
0
Streak
🚫
—
Most Skipped Step
🔄
0
Resets
📝 My Notes