# What is Endpoint Security?

> Endpoint security is the discipline of protecting devices and workloads that connect to organizational services, process data, or run applications.

- Canonical URL: https://yellowcube.eu/glossary/endpoint-security/
- Publisher: Yellow Cube
- Language: en
- Contact: hello@yellowcube.eu

## Content

Endpoints commonly include workstations, laptops, servers, mobile devices, and virtual machines, although scope varies. The discipline combines governance, secure configuration, identity and access controls, software maintenance, prevention, monitoring, response, and recovery rather than depending on one installed agent.

Effective endpoint security starts with knowing which assets exist, their owners, permitted access, and operating conditions. Controls must then reflect the platform, workload, data, exposure, and support lifecycle. Built-in operating-system protections and centrally managed tools can work together, but coverage and capability differ by device type.

### Key points

- **Control layers:** Use supported software, secure configuration, timely, tested updates, least privilege, application and device controls, encryption, malware defenses, host firewalls, protected logging, and recoverable data as appropriate.
- **Operational coverage:** Track enrollment, agent and policy health, exceptions, unsupported assets, remote devices, missed updates, tampering, and whether security events reach an accountable response process.
- **Design trade-offs:** Evaluate performance, accessibility, privacy, data transfer, administrative privilege, offline behavior, compatibility, and safety or availability constraints before enforcing changes.
- **Important limitation:** Endpoint controls cannot protect devices they do not cover or fully observe, and they do not replace identity, network, cloud, application, or data safeguards. A managed or alert-free endpoint is not necessarily correctly configured or uncompromised.

### Related terms

[Endpoint protection platform (EPP)](<https://yellowcube.eu/glossary/endpoint-protection-platform/>) · [Endpoint detection and response (EDR)](<https://yellowcube.eu/glossary/endpoint-detection-and-response/>) · [Mobile security](<https://yellowcube.eu/glossary/mobile-security/>) · [Device control](<https://yellowcube.eu/glossary/device-control/>) · [Vulnerability management](<https://yellowcube.eu/glossary/vulnerability-management/>) · [Virtual desktop infrastructure (VDI) security](<https://yellowcube.eu/glossary/virtual-desktop-infrastructure-security/>) · [Point-of-sale (POS) security](<https://yellowcube.eu/glossary/point-of-sale-security/>)

### Sources

[NIST SP 800-53 Rev. 5, Update 1](https://csrc.nist.gov/pubs/sp/800/53/r5/upd1/final) · [Center for Internet Security Controls v8.1](https://www.cisecurity.org/controls/cis-controls-list) · [UK National Cyber Security Centre: Device Security Guidance](https://www.ncsc.gov.uk/collection/device-security-guidance)

## Attribution and scope

This Markdown representation is generated from the same approved content records as the canonical HTML page. Cite the canonical URL above when referencing this material. Product and service descriptions are informational; confirm project-specific requirements with Yellow Cube.

