Apple, Cybersecurity Improvement Initiative (CII) Security Compliance Requirements
Overview
CII applies to supported macOS and iOS/iPadOS devices attributed to a university college or unit in Axonius. The university’s ongoing goal is 100% enrollment of eligible devices.
For more information, visit the Cybersecurity Improvement Initiative website.
Apple device compliance requirements
An eligible Apple device is considered complete for CII when it has the required management and protection software installed.
| Device operating system | Endpoint management | Endpoint protection |
|---|---|---|
| macOS | Jamf | CrowdStrike Falcon |
| iOS/iPadOS | Jamf | Not applicable |
When a device is identified as compliant:
-
The device is a university-owned Mac, iPhone, or iPad device.
-
The device is enrolled and managed in Jamf.
-
CrowdStrike Falcon Sensor is installed and operational on Macs.
Personally owned devices are not included unless they are identified as university-owned assets.
How compliance status is measured
Axonius collects asset data from university systems to maintain an inventory of devices. It updates device information daily and evaluates whether each device meets CII requirements.
Enrollment-status notifications
The CII team reviews the CII Unit Trend Dashboard monthly for units that previously reached 100% completion. If a unit falls below 90% completion, staff with Axonius access receive monthly reminders until the unit returns to at least 90% completion.
