This website uses Cookies. Click Accept to agree to our website's cookie use as described in our Privacy Policy. Click Preferences to customize your cookie settings.
Senior Solutions Consultant at Google Cloud Security. Working on the NextGen of Security Solutions. Google Security Command Center, SIEM, SOAR, Attack Surface Management, Attack Simulation, Threat Intelligence
Security Command Center now supports dynamic mute rules, which allow you
to mute future and existing findings temporarily until a specified date
or indefinitely until a finding no longer matches the configuration. We
are adding these rules as an alte...
Please note at the time of this post the Toxic Combinations feature is
currently in Preview. A toxic combination is a group of security issues
that, when they occur together in a particular pattern, create a path to
one or more of your high-value res...
Today's enterprises rarely rely on a single cloud provider. Hybrid and
multi-cloud strategies have become the norm, offering flexibility and
avoiding vendor lock-in. However, this diversity can make security
management complex. Google Cloud's multi-c...
Embarking on your cloud journey with Google Cloud Platform?
Congratulations! The power and scalability of GCP are at your
fingertips. But amidst the excitement, we understand the paramount
importance of securing your cloud environment. That's where G...
Let's face it, Security Command Center (SCC) is a goldmine of security
data. But sometimes, those shiny nuggets of insight need a bit of
refining before they reveal their true value. That's where BigQuery
comes in, transforming your SCC data into a p...
I would normally only expect to see Findings in SCC if the VM Manager
part is enabled and running properly. If you don't see anything in the
VM Manager part i would recommend trying to concentrate on that part
first and verify if all the requirements...
Hello @dheerajpanyam, i believe this would not work by default due to
the nature of the dynamically assigned IP as you mentioned. WSS today
requires to be applied against domains with static ip assigned to them.
The following link shows a few details...
SCCE is now essentially fully connected with SCC and SecOps (SIEM+SOAR)
https://cloud.google.com/security-command-center/docs/concepts-security-command-center-overview#enterprise_tier
Findings from SCC will be ingested in SIEM and certain Critical Fi...
Hi Lee, For the GKE Security Bulletin vulnerabilities we would normally
look for vulnerabilities related to Security Bulletins related to GKE.
Some more details on these can be found here:
https://cloud.google.com/kubernetes-engine/security-bulletins...
At the moment i don't think we have a way to programmatically enable the
premium tier for a project basis. I've seen this question a few times in
the past and it could be a great feature to be added in the future. If
possible and if you have access t...