Microsoft Windows Server

This CIS Benchmark is the product of a community consensus process and consists of secure configuration guidelines developed for Microsoft Windows Server

CIS Benchmarks are freely available in PDF format for non-commercial use:

Included in this Benchmark

Free Download

CIS Benchmark

Safeguard IT systems against cyber threats with these CIS Benchmarks. Click to download a PDF from the list of available versions.

Learn more about CIS Benchmark
Recent versions available for CIS Benchmark:
* Microsoft Windows Server 2012 R2 (1.0.0)
Azure Compute Microsoft Windows Server 2022 (1.0.0)
Azure Compute Microsoft Windows Server 2019 (1.0.0)
Microsoft Windows Server 2022 (1.0.0)
Microsoft Windows Server 2019 (1.3.0)
Microsoft Windows Server 2019 STIG (1.1.0)
Microsoft Windows Server 2016 (1.4.0)
Microsoft Windows Server 2016 RTM (Release 1607) (1.3.0)
Microsoft Windows Server 2016 STIG (1.2.0)
Microsoft Windows Server 2012 (1.0.0)
Microsoft Windows Server 2012 (non-R2) (2.4.0)
Microsoft Windows Server 2012 R2 (2.6.0)
Microsoft Windows Server 2008 (2.0.0)
Microsoft Windows Server 2008 (2.1.0)
Microsoft Windows Server 2008 (non-R2) (3.3.0)
Microsoft Windows Server 2008 R2 (2.0.0)
Microsoft Windows Server 2008 R2 (3.3.0)
Microsoft Windows Server 2003 (3.0.0)
Microsoft Windows Server 2003 (3.1.0)
CIS Securesuite Members Only

CIS-CAT Pro

Scan your systems against this CIS Benchmark to easily identify your conformance to the secure configuration recommendations.

Learn more about CIS-CAT Pro

Not a CIS SecureSuite member yet?

Apply for membership
Recent versions available for CIS-CAT Pro:
Azure Compute Microsoft Windows Server 2022 (1.0.0)
Azure Compute Microsoft Windows Server 2019 (1.0.0)
Microsoft Windows Server 2022 (1.0.0)
Microsoft Windows Server 2019 (1.3.0)
Microsoft Windows Server 2019 STIG (1.1.0)
Microsoft Windows Server 2016 (1.4.0)
Microsoft Windows Server 2016 RTM (Release 1607) (1.2.0)
Microsoft Windows Server 2016 STIG (1.2.0)
Microsoft Windows Server 2012 (non-R2) (2.4.0)
Microsoft Windows Server 2012 R2 (2.6.0)
Microsoft Windows Server 2008 (non-R2) (3.1.0)
Microsoft Windows Server 2008 R2 (3.3.0)
Microsoft Windows Server 2003 (3.1.0)
CIS Securesuite Members Only

Build Kits

Automate your hardening efforts for Microsoft Windows Server using Group Policy Objects (GPOs) for Microsoft Windows and Bash shell scripts for Unix and Linux environments.

Download CIS Build Kits

Not a CIS SecureSuite member yet?

Apply for membership
Recent versions available for CIS Build Kits:
Azure Compute Microsoft Windows Server 2022 (1.0.0)
Azure Compute Microsoft Windows Server 2019 (1.0.0)
Microsoft Windows Server 2022 (1.0.0)
Microsoft Windows Server 2019 (1.3.0)
Microsoft Windows Server 2019 STIG (1.1.0)
Microsoft Windows Server 2016 (1.4.0)
Microsoft Windows Server 2016 RTM (Release 1607) (1.3.0)
Microsoft Windows Server 2016 STIG (1.2.0)
Microsoft Windows Server 2012 (1.0.0)
Microsoft Windows Server 2012 (non-R2) (2.4.0)
Microsoft Windows Server 2012 R2 (2.6.0)
Microsoft Windows Server 2008 (non-R2) (3.3.0)
Microsoft Windows Server 2008 R2 (2.0.0)
Microsoft Windows Server 2008 R2 (3.3.0)
Available on all major cloud service provider marketplaces

CIS Hardened Images

Virtual machine (VM) images that are pre-configured to meet the robust security recommendations of the associated CIS Microsoft Windows Server Benchmark.

Available CIS Hardened Images
Recent versions available for CIS Hardened Images:
Microsoft Windows Server 2022 (1.0.0)
Microsoft Windows Server 2019 (1.3.0)
Microsoft Windows Server 2019 STIG (1.1.0)
Microsoft Windows Server 2016 (1.4.0)
Microsoft Windows Server 2016 STIG (1.2.0)
Microsoft Windows Server 2012 (non-R2) (2.4.0)
Microsoft Windows Server 2012 R2 (2.6.0)
Resource

Looking for an older version?

Older versions of the CIS Benchmarks that are no longer supported by CIS and the CIS Benchmarks Community are not lised above. Access a list of archived CIS Benchmarks in Workbench.

Explore CIS Benchmarks Resources

CIS Benchmarks Community

Collaborate with SMEs, implementers, and other cybersecurity practitioners from around the world to help secure Microsoft Windows Server

Join A Community

Effective Implementation of the CIS Benchmarks

Learn how CIS SecureSuite tools and resources help automate the assessment and implementation of CIS Benchmarks to meet security best practices.

Register For A Webinar Today

CIS Benchmarks

Discover the CIS Benchmarks

Learn what they are, how to use them, and how to get involved in their development.

Learn More

Discover More Configuration Guides

There are more than 100 CIS Benchmarks across 25+ vendor product families.

View all CIS Benchmarks

View all active and archived CIS Benchmarks, join a community and more in Workbench.

Access Workbench

Information Hub

CIS Microsoft Windows Server Benchmarks