{"id":27564,"date":"2022-08-22T23:38:32","date_gmt":"2022-08-22T21:38:32","guid":{"rendered":"https:\/\/www.makingscience.com\/?p=27564"},"modified":"2022-08-22T23:38:32","modified_gmt":"2022-08-22T21:38:32","slug":"security-command-center-strengthen-your-companys-security-with-google-cloud-gcp","status":"publish","type":"post","link":"https:\/\/www.makingscience.com\/us\/blog\/security-command-center-strengthen-your-companys-security-with-google-cloud-gcp\/","title":{"rendered":"Security Command Center: Strengthen your company&#8217;s security with Google Cloud (GCP)"},"content":{"rendered":"<p><span style=\"font-weight: 400;\">When migrating your infrastructure to the cloud one of your main concerns might be: <\/span><b>is the cloud really secure? And how can I maintain control of all that happens in my cloud infrastructure?\u00a0<\/b><\/p>\n<p><b>Google Cloud Platform\u2019s Security Command Center is one solution to help answer those questions.<\/b><span style=\"font-weight: 400;\"> It centralizes the visualization of all your organization\u2019s assets and its possible vulnerabilities or misconfigurations.<\/span><\/p>\n<p><img fetchpriority=\"high\" decoding=\"async\" class=\"alignnone size-large wp-image-22765\" src=\"https:\/\/www.makingscience.com\/wp-content\/uploads\/1\/2022\/04\/Captura-de-pantalla-2022-04-18-a-las-10.58.05-1005x1024.png\" alt=\"\" width=\"1005\" height=\"1024\" \/><\/p>\n<p><span style=\"font-weight: 400;\">To start using the Security Command Center, you must first activate it within your organization using an account that has privileged admin roles. Luckily you can get started using the stand tier free of charge.<\/span><\/p>\n<h3>Standard Tier<\/h3>\n<p><span style=\"font-weight: 400;\">Here are some of the useful features the standard tier offers:<\/span><\/p>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><b>Security Health Analytics<\/b><span style=\"font-weight: 400;\"> scans Google Cloud assets looking for vulnerabilities and misconfigurations like:<\/span>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"2\"><span style=\"font-weight: 400;\">MFA being inactive for a certain account (we know how risky this is in a privileged account)<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"2\"><span style=\"font-weight: 400;\">It detects members outside the organization with access to resources that are included in a group with permissions.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"2\"><span style=\"font-weight: 400;\">Dangerous open ports in the perimetral firewall.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"2\"><span style=\"font-weight: 400;\">Exposed public log buckets.<\/span><\/li>\n<\/ul>\n<\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">With predefined rules against the most common attacks and the possibility to create custom rules like IP filtering, <\/span><b>Cloud Armor acts as a WAF<\/b><span style=\"font-weight: 400;\">, adding another layer of security to all your deployments. We love and use this feature in all our website deployments. The Security Command Center helps us visualize all the incidents it detects and to adapt our rules accordingly.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">You can <\/span><b>detect security anomalies<\/b><span style=\"font-weight: 400;\"> in your VMs like potentially leaked credentials and crypto mining.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">All this <\/span><b>information can be exported to BigQuery <\/b><span style=\"font-weight: 400;\">or your favorite third-party SIEM to be processed<\/span><\/li>\n<\/ul>\n<p><span style=\"font-weight: 400;\"><img decoding=\"async\" class=\"alignnone size-large wp-image-22770\" src=\"https:\/\/www.makingscience.com\/wp-content\/uploads\/1\/2022\/04\/Captura-de-pantalla-2022-04-18-a-las-10.59.51-1024x242.png\" alt=\"\" width=\"1024\" height=\"242\" \/><\/span><\/p>\n<p><span style=\"font-weight: 400;\">For a more detailed rundown of all the features, you can check the official documentation.<\/span><\/p>\n<p><span style=\"font-weight: 400;\"><img decoding=\"async\" class=\"alignnone size-large wp-image-22775\" src=\"https:\/\/www.makingscience.com\/wp-content\/uploads\/1\/2022\/04\/Captura-de-pantalla-2022-04-18-a-las-11.00.07-1024x614.png\" alt=\"\" width=\"1024\" height=\"614\" \/><\/span><\/p>\n<h3>Premium Tier<\/h3>\n<p><span style=\"font-weight: 400;\">There are additional features in the <\/span><b>Security Command Center<\/b><span style=\"font-weight: 400;\"> premium tier, such as:<\/span><\/p>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><b>Container Threat Detection<\/b><span style=\"font-weight: 400;\">\u200b: this service continuously monitors the state of deployed container images. It will alert you if there was an added binary to the image that was not in the original one. It will also alert you about the execution of malicious scripts or reverse shells.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><b>Using threat intelligence and machine learning<\/b><span style=\"font-weight: 400;\">, Malware, brute force SSH and outgoing DoS anomalies are added to the Event Threat Detection. It also adds the detection of changes to MFA, SSO, or leaked passwords to the user&#8217;s account protection.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">One of the most important features of this tier is the possibility to create compliance dashboards and reports<\/span><b> following the most used standards in the industry<\/b><span style=\"font-weight: 400;\"> like CIS, NIST, PCI, or ISO27001. You can view and export these compliance reports to help ensure all your resources are meeting all their compliance requirements.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">If you enable VM Manager, you can detect vulnerabilities in the operating systems installed on virtual machines.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><b>Create SMS alerts, and emails,<\/b><span style=\"font-weight: 400;\"> or have them sent to your favorite chat application with Pub\/Sub notifications.<\/span><\/li>\n<\/ul>\n<p><span style=\"font-weight: 400;\">We use the Security Command Center extensively for its defensive security features like Cloud Armor and its health monitoring of the organization\u2019s users and assets. As we discover more of its features, we are integrating them to make the most of its full potential.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Here we have just detailed some of the capabilities of the Security Command Center, but there are many more that can suit your specific needs.<\/span><\/p>\n<blockquote><p>Are you looking to make your site more secure? Making Science has got you covered! We can perform site audits and provide recommendations about where and how to get started.<\/p><\/blockquote>\n<p style=\"text-align: center;\"><a style=\"border-radius: 15px; padding: 1em; background-color: #f0076f; color: white;\" href=\"https:\/\/www.makingscience.com\/contact\/\">Get in touch<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>When migrating your infrastructure to the cloud one of your main concerns might be: is the cloud really secure? And how can I maintain control of all that happens in my cloud infrastructure?\u00a0 Google Cloud Platform\u2019s Security Command Center is one solution to help answer those questions. It centralizes the visualization of all your organization\u2019s [&hellip;]<\/p>\n","protected":false},"author":23,"featured_media":23551,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[976,701],"tags":[709,684,942,943],"class_list":["post-27564","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","category-security","tag-gcp-2","tag-google-analytics-4-2","tag-google-cloud-platform-2","tag-security-command-center-2"],"acf":[],"_links":{"self":[{"href":"https:\/\/www.makingscience.com\/us\/wp-json\/wp\/v2\/posts\/27564","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.makingscience.com\/us\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.makingscience.com\/us\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.makingscience.com\/us\/wp-json\/wp\/v2\/users\/23"}],"replies":[{"embeddable":true,"href":"https:\/\/www.makingscience.com\/us\/wp-json\/wp\/v2\/comments?post=27564"}],"version-history":[{"count":0,"href":"https:\/\/www.makingscience.com\/us\/wp-json\/wp\/v2\/posts\/27564\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.makingscience.com\/us\/wp-json\/wp\/v2\/media\/23551"}],"wp:attachment":[{"href":"https:\/\/www.makingscience.com\/us\/wp-json\/wp\/v2\/media?parent=27564"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.makingscience.com\/us\/wp-json\/wp\/v2\/categories?post=27564"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.makingscience.com\/us\/wp-json\/wp\/v2\/tags?post=27564"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}