Windows Security Settings & Policies

 

🔐 Windows Security Settings & Policies

Windows provides built-in tools to protect your system, data, and network from viruses, hackers, and unauthorized users.


🔹 What is Windows Security?

👉 Windows Security is a collection of features that protect:

  • Device

  • Network

  • User accounts

  • Data

Main tool: Windows Security (Defender)



🛡️ Main Parts of Windows Security


1️⃣ Virus & Threat Protection

👉 Protects against malware and viruses.

Features:

  • Real-time protection

  • Quick scan

  • Full scan

  • Threat history

  • Ransomware protection

Use:

Settings → Privacy & Security → Windows Security


2️⃣ Firewall & Network Protection

👉 Controls incoming and outgoing traffic.

Types of Networks:

  • Domain

  • Private

  • Public

Functions:

  • Block unauthorized access

  • Allow safe apps



3️⃣ Account Protection

👉 Protects user login.

Includes:

  • Windows Hello (PIN, Face, Fingerprint)

  • Dynamic Lock

  • Password policies



4️⃣ App & Browser Control

👉 Protects from unsafe apps and websites.

Includes:

  • SmartScreen

  • Exploit protection

  • Reputation-based protection



5️⃣ Device Security

👉 Hardware-based security.

Includes:

  • Secure Boot

  • TPM

  • Core isolation



6️⃣ Ransomware Protection

👉 Protects files from being locked.

Feature:

  • Controlled folder access

  • OneDrive backup



📜 Windows Security Policies

Security Policies control what users can and cannot do.

Open using:

secpol.msc

or

gpedit.msc


🔹 Important Policy Types


✅ 1️⃣ Password Policy

👉 Controls passwords.

Settings:

  • Minimum password length

  • Password complexity

  • Maximum password age

  • Account lockout



✅ 2️⃣ Account Lockout Policy

👉 Locks account after wrong attempts.

Controls:

  • Lockout threshold

  • Lockout duration



✅ 3️⃣ User Rights Assignment

👉 Defines user permissions.

Examples:

  • Log on locally

  • Access this computer from network

  • Shut down system



✅ 4️⃣ Audit Policy

👉 Tracks user activity.

Logs:

  • Login attempts

  • File access

  • Policy changes



✅ 5️⃣ Software Restriction / App Control

👉 Blocks unwanted software.

Controls:

  • Allowed apps

  • Blocked apps



✅ 6️⃣ Windows Update Policy

👉 Controls updates and patches.

Ensures:

  • Security updates

  • Bug fixes



🔹 Group Policy (GPO)

👉 Used to manage security in multiple computers (Domain).

Tool:

gpedit.msc

Use for:

  • Disable USB

  • Block Control Panel

  • Enforce password

  • Restrict apps



🔹 Best Security Practices in Windows

✔ Keep Defender ON
✔ Use strong passwords
✔ Enable Firewall
✔ Keep Windows Updated
✔ Use standard user account
✔ Enable BitLocker
✔ Backup data



📝 Short Notes (Exam Ready)

  • Windows Security protects system.

  • Firewall filters traffic.

  • Policies control user behavior.

  • Group Policy manages security.

  • Audit policy logs activities.



🎯 One Line Summary

👉 Windows Security Settings and Policies protect your computer, network, and users by using Defender, Firewall, and Policy rules.

Comments

Popular posts from this blog

Introduction to Computer

History of Computer

Computer Generation