STIGQter STIGQter: STIG Summary: Google Android 14 BYOAD Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 13 Mar 2024:

The Google Android 14 BYOAD must be configured to either disable access to DOD data and IT systems and user accounts or wipe the work profile if the EMM system detects that native security controls are disabled.

DISA Rule

SV-260066r948403_rule

Vulnerability Number

V-260066

Group Title

PP-BYO-000080

Rule Version

GOOG-14-800800

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the EMM to either disable access to DOD data and IT systems and user accounts on the Google Android 14 BYOAD or wipe the work profile if it has been detected that native BYOAD security controls are disabled (e.g., jailbroken/rooted). The exact procedure will depend on the EMM system used at the site.

Check Contents

Verify the EMM has been configured to either disable access to DOD data, IT systems, and user accounts on the Google Android 14 BYOAD or wipe the work profile if it has been detected that native BYOAD security controls are disabled (e.g., jailbroken/rooted). The exact procedure will depend on the EMM system used at the site.

If the EMM has not been configured to either disable access to DOD data, IT systems, and user accounts on the Google Android 14 BYOAD or wipe the work profile if it has been detected that native BYOAD security controls are disabled, this is a finding.

Vulnerability Number

V-260066

Documentable

False

Rule Version

GOOG-14-800800

Severity Override Guidance

Verify the EMM has been configured to either disable access to DOD data, IT systems, and user accounts on the Google Android 14 BYOAD or wipe the work profile if it has been detected that native BYOAD security controls are disabled (e.g., jailbroken/rooted). The exact procedure will depend on the EMM system used at the site.

If the EMM has not been configured to either disable access to DOD data, IT systems, and user accounts on the Google Android 14 BYOAD or wipe the work profile if it has been detected that native BYOAD security controls are disabled, this is a finding.

Check Content Reference

M

Target Key

5588