Honestly, as long as you use a limited user account while doing daily activities, stay away from Ie (use chrome, iron, brave), use applocker, use windows defender and run MSRT (you can download a standalone version https://www.microsoft.com/en-us/wdsi/products#msrt) regularly, keep OS/ programs / drivers updated. Once a month you can run free standalone adware & virus scanners if you want:
https://free.drweb.com/cureit/?lng=en
https://www.bleepingcomputer.com/download/adwcleaner/
disable autoruns on all devices, use common sense when clicking link / reading emails/ not calling back scammers. Never turn off your firewall.
If you do all that, you should be clean forever, I haven’t had an infection in years. If you want to take it to the next level then you could run a virtual os or have it sandboxed, even both (over kill, if they want you that badly, they will get you).
Did you know that having your computer air gaped isn’t even protection anymore, they can still steal your data without touching your computer?