<h2 style="margin-top: 0px; margin-bottom: 10px;">What is included in Kaspersky Embedded Systems Security Compliance Edition?</h2>
<p style="margin-top: 0px; margin-bottom: 0px;"><strong>Real-Time File Protection</strong> – Scans files, boot sectors and NTFS streams on access.<br /> <strong>Applications Launch Control</strong> – Allows only approved executables, libraries and drivers to run.<br /> <strong>Device Control</strong> – Clocks unauthorised USB flash drives and other peripherals.<br /> <strong>File Integrity Monitor</strong> – Detects changes to defined files, including changes made offline.<br /> <strong>Log Inspection</strong> – Reviews Windows event logs for signs of intrusion.<br /> <strong>Important</strong> – No EDR, patch management, encryption or mobile coverage.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">What are the main benefits of Kaspersky Embedded Systems Security Compliance Edition?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Kaspersky Embedded Systems Security Compliance Edition is a standalone protection product for Windows-based embedded devices such as ATMs, POS terminals, ticketing machines and medical equipment. It runs as an agent on each device and is managed centrally through Kaspersky Security Center, while a local application console and a command line remain available for devices with poor connectivity.<br /> <br /> <strong>Runs on legacy Windows</strong> – Protects devices still running unsupported Windows versions.<br /> <strong>Low resource footprint</strong> – Designed for low-end hardware and weak network links.<br /> <strong>Default Deny mode</strong> – Can be installed without the anti-malware component.<br /> <strong>Ransomware defences</strong> – Anti-Cryptor and Remediation Engine roll back malicious changes.<br /> <strong>Exploit Prevention</strong> – Protects process memory against exploitation of known vulnerabilities.<br /> <strong>SIEM export</strong> – Sends events to syslog or a SIEM platform.</p>
<p style="margin-top: 15px; margin-bottom: 15px;"><a href="#" target="_blank" data-ke-doc="windows-defender-not-enough"><strong>Best antivirus? Why Windows Defender alone is not enough</strong><br />Explains which protection layers the built-in Windows defences do not cover and where a dedicated security product is needed.</a></p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Which company size is Kaspersky Embedded Systems Security Compliance Edition suitable for?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">The deciding factor is not headcount but whether you operate Windows terminals that cannot be patched or replaced on a normal cycle. A retailer with twelve checkout systems has the same technical problem as a bank with a national ATM fleet, but only the larger operator usually needs the central console, the audit trail and the evidence reports.</p>
<table style="width: 100%; border-collapse: collapse; background-color: #efefef; margin-top: 15px; margin-bottom: 15px; font-size: 14px; line-height: 1.35;">
<tbody>
<tr><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: left; font-weight: bold; background-color: #dedede;">Requirement</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Small business</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Medium-sized company</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Large company</th></tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Reporting obligation Switzerland</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">NIS 2 in the European Union</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Rarely</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Security questionnaire from large customers</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Sometimes</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Central console for terminals across several sites</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Limited</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">This product fits</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Only for terminals</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
</tbody>
</table>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does Kaspersky Embedded Systems Security Compliance Edition meet the requirements of Swiss cybersecurity legislation?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">The reporting obligation under the revised Information Security Act applies to operators of critical infrastructure, including energy and drinking water suppliers, transport companies, hospitals, financial service providers and cantonal and communal administrations, not to every company that runs a payment terminal. Those operators must submit an initial report to the Federal Office for Cybersecurity (BACS) within 24 hours of discovering a qualifying cyberattack, with the remaining details following within 14 days. Two components of this edition help you hold that deadline on embedded devices: Log Inspection surfaces suspicious Windows event log patterns, and the File Integrity Monitor records changes to defined files, including changes made while the device was switched off, which is what lets an administrator reconstruct when a terminal was manipulated. Events can be forwarded to a syslog server or SIEM, so the timeline needed for the report does not have to be assembled from each device by hand. What it does not do is decide whether an incident is reportable, cover servers, workstations or mobile devices outside the embedded scope, or provide the root-cause analysis an EDR product would deliver, so the classification decision stays with your team. This is not legal advice, and whether your organisation falls under the reporting obligation must be assessed in each individual case.</p>
<p style="margin-top: 15px; margin-bottom: 15px;"><a href="#" target="_blank" data-ke-doc="data-loss-backups-avoid-outages"><strong>Data loss is expensive: How backups help you avoid outages</strong><br />Covers why protection software alone does not restore operations and which backup measures reduce downtime after an incident.</a></p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does Kaspersky Embedded Systems Security Compliance Edition meet the requirements of European cybersecurity legislation?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">No software product creates NIS 2 compliance, because the directive addresses organisational risk management, not a product feature list. NIS 2 requires categories of measures such as risk analysis and security policies, incident handling, business continuity, supply chain security, security in the acquisition and maintenance of systems including vulnerability handling, access control and asset management, cryptography, cyber hygiene and training, and multi-factor authentication. This edition contributes to a narrow but relevant part of that: system hardening through Applications Launch Control, removable media control, detection and logging on devices that no longer receive operating system patches, and event export for incident handling. It contributes nothing to multi-factor authentication, encryption, vulnerability and patch management, backup and continuity, or staff training, and it covers only Windows-based embedded devices, so the rest of your estate needs separate measures. Supply chain security is also a category where the vendor question below is part of the assessment rather than something the product resolves.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">What should you know about official assessments of Kaspersky?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">On 20 June 2024 the US Department of Commerce, Bureau of Industry and Security, issued a Final Determination prohibiting Kaspersky from providing anti-virus and cybersecurity products or services in the United States or to US persons. New sales stopped on 20 July 2024 and updates to existing US customers ended on 29 September 2024; related entities were added to the Entity List. The measure remains in force, and Kaspersky closed its US operations. Germany's Federal Office for Information Security (BSI) published a warning about Kaspersky anti-virus software on 15 March 2022 and confirmed in 2026 that it maintains it; the BSI has no legal basis for a sales ban, so the product remains legally available in Germany. Italy, the Netherlands, Canada and Australia have restricted use in government or public-sector procurement. Kaspersky states that it is a private company without ties to any government, describes the decisions as politically motivated, and points to its relocation of European data processing to Zurich in 2018 and to its Transparency Centres. Both authorities based their positions on supplier risk and the possibility of state influence, not on published findings that the software fails to detect malware. In practice this matters most if you sell to US persons, bid for public-sector contracts, or answer supply chain questionnaires that ask about vendor jurisdiction; in Switzerland and the European Union the product is sold and updated normally. Whether that residual risk is acceptable is a decision for your organisation.</p>
<p style="margin-top: 15px; margin-bottom: 15px;"><a href="#" target="_blank" data-ke-doc="norton-vs-kaspersky-2025"><strong>Norton vs. Kaspersky – Which antivirus program offers the best protection in 2025?</strong><br />Compares detection performance, system load and feature scope of both vendors for buyers weighing up a change of supplier.</a></p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does Kaspersky Embedded Systems Security Compliance Edition help with security questionnaires from large customers?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Yes, for the questions about endpoint hardening and change monitoring, and not for most of the rest. You can answer positively on malware protection for systems running end-of-life operating systems, application allowlisting through Default Deny, control of removable media, file integrity monitoring on defined paths, review of system logs, centrally enforced policies, and forwarding of security events to a SIEM. You cannot answer the questions on continuous endpoint detection and response, 24/7 monitoring, patch and vulnerability management, disk encryption, multi-factor authentication, backup and restore testing, mobile device management, or security awareness training, and you will have to state that these are covered elsewhere or not at all. One item deserves particular attention here: questionnaires from regulated customers increasingly ask about vendor country of origin, and no additional Kaspersky product closes that item. For the technical gaps, extending within the same family is usually cheaper and less work than mixing vendors, since Kaspersky's endpoint and management products share the same console; the vendor-origin question, by contrast, can only be answered by documenting your risk assessment or by changing supplier.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">What is the difference between Kaspersky Embedded Systems Security and the Compliance Edition?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">The single decisive difference is system inspection: the File Integrity Monitor, Log Inspection and Registry Access Monitor are unlocked by the Compliance Edition licence and are not available in the standard edition. Both editions ship the same protection engine, so the choice is not about malware detection quality. Kaspersky offers the two as separate licences of the same product, and the compliance components are enabled by the licence rather than installed as a different application. Choose the Compliance Edition when you have to prove after the fact what changed on a terminal, for example for card payment audits or an incident report; choose the standard edition when you only need protection and control.</p>
<table style="width: 100%; border-collapse: collapse; background-color: #efefef; margin-top: 15px; margin-bottom: 15px; font-size: 14px; line-height: 1.35;">
<tbody>
<tr><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: left; font-weight: bold; background-color: #dedede;">Component</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Standard edition</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Compliance Edition</th></tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Real-Time File Protection and On-Demand Scan</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Applications Launch Control</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Device Control and Firewall Management</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">File Integrity Monitor</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Log Inspection</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Registry Access Monitor</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">EDR and patch management</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
</tr>
</tbody>
</table>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Which limitations should you know before buying?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">The components described here belong to the Windows version; embedded devices running Linux are covered by a separate Kaspersky product and are not protected by this licence. Kaspersky states in its own documentation that update functionality and Kaspersky Security Network may not be available in the software in the United States, which is the practical consequence of the US prohibition and matters for groups with American sites. The product is explicitly not intended for automated process control systems, where Kaspersky points to Kaspersky Industrial CyberSecurity for Nodes instead, so a plant with SCADA nodes needs a different licence for that part of the estate. Central policies, reports and deployment require Kaspersky Security Center, which is a separate on-premises installation to plan and maintain; without it you manage each device through its local console or the command line. The most common follow-up purchases are endpoint protection for normal office PCs and servers, and patch management, because neither is part of this product.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Frequently asked questions about Kaspersky Embedded Systems Security Compliance Edition</h3>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Is Kaspersky Security Center mandatory?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">No. The application can be operated entirely locally through its own console or the command line, which is the usual approach for a handful of terminals. Kaspersky Security Center becomes necessary as soon as you want one policy set, one status view and one report across many devices.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does it work on devices with poor or no internet connectivity?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Yes, that is one of its design goals. The application can be installed in a Default Deny configuration without the anti-malware component, which removes the need for regular signature downloads and suits terminals on slow or intermittent links.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does a base licence require an existing licence?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">No. Kaspersky distinguishes base licences from renewals, and a base licence is a new licence that does not require an existing one of the same product. A renewal, by contrast, is tied to a licence you already hold.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Can it replace endpoint protection on normal office PCs?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Not sensibly. It is built for fixed-function devices with a narrow application set, and it has no web or mail protection and no EDR. Office workstations and servers belong on Kaspersky's endpoint products, which is also why many buyers run both.</p>
<div class="ke-block mceNonEditable" data-ke-block="blogteaser" data-topics="sec-endpoint,compliance-ch-isg,compliance-supplier" data-audience="b2b" data-count="3"> </div>