# Standards & References ## Primary Standards - **NIST SP 800-53 MP-7**: Media Use - restricting removable media types and usage - **PCI DSS 4.0 Req 3.4.2**: Restrict removable electronic media for cardholder data - **CIS Control 10.4**: Configure device control to prevent removable media autorun - **ISO 27001 A.8.3.1**: Management of removable media ## Supporting References - **MDE Device Control**: https://learn.microsoft.com/en-us/defender-endpoint/device-control-overview - **CrowdStrike Device Control**: Falcon Console documentation - **GPO Removable Storage**: https://learn.microsoft.com/en-us/windows/client-management/mdm/policy-csp-remotemanagement