Hardening Tips to Make Your Windows 10 Computer Safe

If you have a Windows computer, you will undoubtedly have several options to make it more secure against the multiple existing security threats. Today in this article we are going to make a series of basic recommendations that you can make to configure Windows with the best possible security, all these suggestions are very easy to make and suitable for all users. Specifically, we will talk about how to perform different actions to perform hardening in Windows 10.

But what exactly does hardening mean ? It is the action of adequately protecting a specific system, network or software, with the aim of significantly reducing the chances that your computer will be the victim of an attack. Specifically, hardening is based on the least privileged model or, according to the configuration settings of your computer.

Hardening Tips to Make Your Windows 10 Computer Safe

Now, let’s move on to citing some of the hardening techniques. Virtually all of them are simple to implement, so it won’t take you too long to get them up and running.

Uninstall programs that we are not using

Believe it or not, this is one of the least common practices. However, this takes much less time than we think. Ideally, from the moment we finish installing our operating system, we will do the review in search of programs that we do not need to use. Also, if you have just acquired a Windows computer already installed, one of the first actions you can take is to eliminate what you don’t need. One of the most common attack vectors is the programs installed on the computer. By uninstalling the applications that we are not using, we will reduce the “exposure” surface.

In fact, it is recommended to check our list of installed programs with certain frequency. This, especially if we are installing programs frequently for all kinds of uses. Also, it is good to pay attention to the installation wizard of the different programs. Why? Well, in many cases, these install additional programs to the one we originally requested.

How do I manage my programs? Just go to the menu and look for the phrase “add or remove programs.” Select this option and it will direct you to the list of installed programs.

As long as they are not programs that come with the operating system itself, you can uninstall them. Just click on the program to remove and click Uninstall . Then, you must follow the steps of the uninstall wizard.

Recommendation: When installing programs, avoid clicking the Next button very quickly, and check what kind of additional programs you want installed. Avoid additional programs such as antivirus of dubious origin. Since these are used to containing malware, spyware and even ransomware that could make your files inaccessible.

Use Windows Security

This tool is also known as Windows Defender . This solution may be the great unknown, but in recent times it has improved a lot and is currently the most recommended antivirus / antimalware solution to use, in addition, it is completely free and comes incorporated in our operating system. Despite the fact that it already has certain features activated by default, it is considered a good practice to be able to customize their settings in order to more effectively protect our computer.

If you want to access Windows Security, you only need to search for it by name in the search bar and you can directly access it:

There are options that deserve special attention, one of them is Protection against viruses and threats . At the moment of entering, you will have the possibility to carry out a quick examination of the files contained in your computer. This takes a few minutes and details the number of threats found, if any. Also, it is possible to customize the exams with variants such as the full exam or the Windows Defender exam offline .

On the other hand, it is valid to look at the Performance and device status option. In it we can have a look at how our computer is. It will give you information regarding the state of the battery, storage capacity and other aspects. If your needs do not go beyond the essential, you do not need to download any additional security solution.

Protection against ransomware

Continuing with what we can do with Windows Security to protect our computer, let’s focus on how to protect ourselves against the dreaded ransomware . Keep in mind that, if you are a victim of this type of attack, be sure that you will not be able to recover your files, unless some type of failure has been found in the software that has encrypted your files. Remember: never pay the ransom if you want to recover them. Well, that will only increase the chances of it happening again.

Consequently, we suggest going to Windows Security> Protection against viruses and threats> Protection against ransomware.

  • Controlled access to folders: it is extremely important to keep it active. Since this will allow potential malicious programs to be unable to control your files and folders. In addition, you will have the option to view the history of the locks, add or remove protected folders and manage the applications that have controlled access to your files or folders.
  • Data recovery by ransomware: if you use OneDrive, you will be able to configure and manage the synchronization of your files and folders. This will be very useful, especially if you become a victim of this type of attack since all the files will be in your space in the cloud. Also, keep in mind that all the changes you make to the synchronized files will be reflected in the synchronization with OneDrive itself.

Encryption of SSDs, hard drives or partitions

SSDs or hard drives are what allow us to keep our files on the computer. However, it is not often that we pay attention to them in the aspect of their protection. If we do not take essential security measures, a cybercriminal could take advantage of the vulnerability and take control of your computer, including the hard drive and its contents. Therefore, it is important to opt for tools like BitLocker . Bitlocker will allow you to encrypt your entire hard drive, a partition, and even a removable storage device.

This is an encryption solution that is integrated into Windows and on your own, you have the opportunity to configure it. It is good to keep in mind that the Secure Platform Module (TPM) must be enabled if you need to apply encryption using BitLocker. However, if you have any of the latest versions of Windows 10 you may come across the fact that TPM is enabled by default. So you can access BitLocker without more laps.

In the event that you need to check the status of the TPM, simply go to Windows Security> Device Security> Security Processor . In this section you can view and manage the status of the same. In the event of an error message, pay attention to detail and follow the instructions. In the worst case scenario, use the manufacturer’s technical support to solve the problem. If you don’t have a TPM, you can disable it by entering Bitlocker policies to allow this.

You can also make use of EFS (Encryption File Sistem), and you can even use Veracrypt to create encrypted containers, encrypt partitions and even entire disks.

Secure authentication of our logins

A good part of cyber attacks are prevented if your Windows computer has user accounts with strong passwords. Nothing more dangerous than having a user without any password, or worse, with a password that is very easy to guess. More than ever, our computers are part of our daily lives to a great extent.

This is the importance of being aware of how vulnerable our data becomes if we do not take essential security measures. Make sure the password you use is long, plus it contains numbers and special characters. In short, the password should not have a specific meaning.

One of the bad habits that to date is maintained, is to use a password that can link us to something or someone, that has to do with our life. For example, the name of our pet or our favorite food. That is, anything that can tell an aspect of our life.

Manage logon options

Do the search for “Login Options” and a window like this will appear:

It is important to note that, according to the brand and model of our computer, you will have more or less login options. Also, there are options that depend on others. An example is that, if you want to use the Windows Hello PIN , your user must have a password.

Let’s see one of the simplest options: the password . Click the option and then click Add. Indicates the password, confirmation, and a password hint. The latter is useful in the event that you forget it.

Click Next and it will send you a confirmation message like the one we will show below. Finally, click Finish . If you also want to configure the PIN, in “Login options” you must select the Windows Hello PIN option and a small window like this will appear:

There you will have to indicate your usual login password and click OK .

Indicate the PIN of your preference. In this case, you can only indicate numbers. Now if you want to include letters and symbols, check the Include letters and symbols checkbox.

If you click on PIN Requirements , you will see some considerations regarding what your PIN should contain with the addition of letters and symbols.

It is clear that there are several possibilities to ensure that your computer is protected. The various security threats do not rest at any time of the day, they are permanently present. More than ever, maintaining the security and privacy of our data is the most important thing. Just a few minutes of your time can save you a headache from being the victim of some type of attack.