Security hardening requirements are formally defined to reduce the attack surface of all company devices
Sekit's Device hardening policy is part of A.5.1's topic-specific policy layer: it names the services, features and defaults that must be disabled to shrink the attack surface.
Defining in writing which services and defaults must be disabled to shrink attack surface is a specific hardening instance of A.8.9's configuration standards.
https://sekit.ai/api/mcp/crosswalk