Google Cloud today released the beta version of its new Security Health Analytics service for helping detect and act on misconfigurations and compliance violations across Google Cloud Platform resources.
Security Health Analytics integrates into the Cloud Security Command Center (Cloud SCC). A dashboard shows potential security issues, or "findings," which when clicked display a step-by-step plan for how to remediate the problem. An admin might be alerted to an open firewall or overly privileged access to a storage bucket, along with a direct link to the affected resource.
The tool now supports Center for Internet Security (CIS) benchmarks, Google says, and is fully certified by CIS to monitor GCP Foundation benchmarks. These are recommendations for maintaining security and compliance across GCP resources. Security Health Analytics will monitor for assets that violate CIS recommendation 5.1, for example, which relates to the identification and remediation of storage buckets that are left accessible to the public.
Security Health Analytics shows steps to remediate an open firewall.
GCP customers can enable Security Health Analytics from Security Sources in Cloud SCC.