Configuration Drift
1-minute read
What it is
Configuration Drift happens when systems gradually diverge from secure baseline configurations due to updates, manual fixes, or inconsistent deployment practices.
Why it matters
Even small deviations can introduce exploitable weaknesses, reduce visibility, and break compliance requirements without immediate detection.
How to reduce risk
- Define and document secure configuration baselines
- Continuously monitor changes against those baselines
- Automate compliance enforcement and remediation where possible
Related Terms: Hardening Baselines, Patch Management, Virtual Patch Management
External Resources:
- NIST Cybersecurity Framework: https://www.nist.gov/cyberframework