This repository provides a structured Windows security hardening framework combining GPO baselines, telemetry controls, update governance, and automation-driven compliance validation.
It mirrors enterprise desktop security deployment methodology.
It includes:
- GPO security baseline modeling
- Telemetry control strategies
- Update management enforcement
- Automation-driven compliance validation
- Audit export procedures
| Phase | Description | Link |
|---|---|---|
| Phase 1 | GPO Security Baseline | Open |
| Phase 2 | Telemetry Control | Open |
| Phase 3 | Update Management | Open |
| Phase 4 | Compliance Validation | Open |
- Reduce outbound telemetry exposure
- Enforce consistent security posture
- Prevent unauthorized configuration drift
- Automate validation of security baseline
- Enable rebuild-from-scratch deployment model
- Windows 10/11
- Group Policy
- PowerShell Automation
- Update Management
- Telemetry Control
- Security Hardening
- Compliance Validation