Skip to main content

Medical Device Maker — 2026-May-26

Medical Device Maker

Audit and remediate local administrator access across a Windows endpoint fleet, delivering an audit-defensible attestation package and a repeatable control to prevent privilege drift.

  • Audited local Administrators group membership, the built-in local admin account, and directory-level device-admin roles on every in-scope device
  • Built a repeatable PowerShell detection and remediation workflow producing standardized per-device evidence, consolidated into a single attestation report
  • Scoped Windows LAPS to replace shared local-admin passwords with per-device rotating credentials
  • Recommended converting the one-time audit into a continuous, quarterly-attested control to stop configuration drift

Related projects