Skip to main content
Google Cloud Documentation
Technology areas
  • AI and ML
  • Application development
  • Application hosting
  • Compute
  • Data analytics and pipelines
  • Databases
  • Distributed, hybrid, and multicloud
  • Industry solutions
  • Migration
  • Networking
  • Observability and monitoring
  • Security
  • Storage
Cross-product tools
  • Access and resources management
  • Costs and usage management
  • Infrastructure as code
  • SDK, languages, frameworks, and tools
/
Console
  • English
  • Deutsch
  • Español – América Latina
  • Français
  • Português – Brasil
  • 中文 – 简体
  • 日本語
  • 한국어
Sign in
  • Security Command Center
Start free
Overview Guides Reference Samples Resources
Google Cloud Documentation
  • Technology areas
    • More
    • Overview
    • Guides
    • Reference
    • Samples
    • Resources
  • Cross-product tools
    • More
  • Console
  • Discover
  • Product overview
  • Service tiers
  • Activate Security Command Center
  • Overview of activating Security Command Center
  • Standard tier enhanced and automatically activated for some customers
  • Plan for the activation
    • Data and infrastructure security overview
    • Data residency
      • Plan for data residency
      • Security Command Center regional endpoints
    • Control access with IAM
      • Access control with IAM
      • Control access with organization-level activations
      • Control access with project-level activations
    • Configure custom organization policies
    • Enable CMEK for Security Command Center
    • Overview of VPC Service Controls and Security Command Center
    • Best practices
      • Security Command Center best practices
      • Cryptomining detection best practices
  • Activate Security Command Center Standard or Premium
    • Activate Security Command Center Standard tier for an organization
    • Activate Security Command Center Premium tier for an organization
    • Activate Security Command Center Standard or Premium for a project
    • Features available with project-level activations
  • Activate Security Command Center Enterprise for an organization
    • Activate Security Command Center Enterprise
    • Modify Security Command Center Enterprise tier
    • Connect to AWS for configuration and resource data collection
    • Connect to Azure for configuration and resource data collection
    • Control access to features in SecOps console pages
    • Map and authenticate users to enable SOAR-related features
    • Integrate Security Command Center Enterprise with ticketing systems
    • Connect to AWS for log data collection
    • Connect to Microsoft Azure for log data collection
    • Advanced configuration for threat management
    • Update the Enterprise use case for SOAR
    • Manage SOAR settings
  • Configure additional security services
    • Choose the services to enable
    • Configure security services
    • Provision Security Command Center resources with Terraform
  • Modify Security Command Center Standard or Premium tier
    • Modify the Security Command Center Standard tier
    • Modify the Security Command Center Premium tier
    • Modify data residency or data encryption configuration
  • Investigate findings, issues, and assets
  • Use Security Command Center in the Google Cloud console
  • Assess risk using Risk overview dashboards
  • Work with issues
    • Issues overview
    • Manage and remediate issues
    • Predefined security graph rules
  • Work with findings
    • Overview of findings
      • When to expect findings
      • Findings classes
      • Finding severities
      • Finding states
    • Review and manage findings in the console
    • Edit findings queries
    • Mute findings in Security Command Center
      • Mute findings overview
      • Manage mute rules
      • Mute individual findings
      • Migrate from static to dynamic mute rules
    • Annotate findings with security marks
  • Configure exports and notifications
    • Export Security Command Center data
    • Enable Pub/Sub notifications
    • Stream findings to BigQuery
    • Bulk export findings to BigQuery
    • Export logs to Cloud Logging
    • Enable real-time chat notifications
  • Work with assets and resources
    • Assets and resources overview
    • Inspect assets monitored by Security Command Center
    • Annotate assets with security marks
  • Explore the security graph using queries
  • Generate risk reports
    • Risk reports overview
    • Download risk reports
  • Gemini in Security Command Center
  • Manage security posture and compliance
  • Compliance Manager
    • Compliance Manager overview
    • Enable Compliance Manager
    • Manage frameworks
    • Framework reference
    • Manage cloud controls
    • Write rules for custom cloud controls
    • Cloud control reference
    • Cloud controls that support batch scanning only
    • Monitor your frameworks for compliance
    • Audit your environment
    • Audit locations for Compliance Manager
    • Use Compliance Manager with VPC Service Controls
    • Assess compliance without Compliance Manager (legacy)
  • Data security posture management
    • Data security posture management overview
    • Data security posture management in the Standard tier