The organization employs malicious code protection mechanisms at information system exit points to eradicate malicious code.
No STIG checks reference this CCI.