DEVICE-009: Chrome OS Device Policies

Platform
Google Workspace
Category
Device & Endpoint Management
Severity
Medium
Zero Trust pillar
Devices (weight 3)
Golden fixtures
3
Branch coverage
Observed: fixtures prove the verdicts they exercise
Provenance
baseline

What it checks

Chrome OS devices should have appropriate policies enforced including auto-update, login restrictions, and security settings

Recommended value

Chrome OS devices managed with enforced policies for updates, login, and security

Remediation

Admin Console > Devices > Chrome > Settings > Device settings > Configure auto-update, login restrictions, and security policies

Fixture-proven verdicts

Every verdict below is proven by a golden fixture in the module's gating test suite. This table derives from the last green run; it cannot be edited by hand.

Verdict scenarios for DEVICE-009
ScenarioExpected verdict
cleanPASS
empty-chromePASS
throttledNot Assessed

Framework mappings

NIST SP 800-53
CM-6, SI-2
CIS Benchmark
6.9
MITRE ATT&CK
T1189