5.10.6 Enable Cloud Security Command Center (Cloud SCC)

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Enable Cloud Security Command Center (Cloud SCC) to provide a centralized view of security for your GKE clusters.

Rationale:

Cloud Security Command Center (Cloud SCC) is the canonical security and data risk database for GCP. Cloud SCC enables you to understand your security and data attack surface by providing asset inventory, discovery, search, and management.

Impact:

None.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Follow the instructions at https://cloud.google.com/security-command-center/docs/quickstart-scc-setup.

Default Value:

By default, Cloud SCC is disabled.

See Also

https://workbench.cisecurity.org/benchmarks/11806

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CSCv7|5.5

Plugin: GCP

Control ID: df5642118d8c3272dbbcbf27d5a71d9f5fccf1eb3e3e5fa8e5288ac265077534