Security Command Center release notes

This page contains release notes for features and updates to Security Command Center. You can periodically check this page for announcements about new or updated features, bug fixes, known issues, and deprecated functionality.

You can see the latest product updates for all of Google Cloud on the Google Cloud page, browse and filter all release notes in the Google Cloud console, or programmatically access release notes in BigQuery.

To get the latest product updates delivered to you, add the URL of this page to your feed reader, or add the feed URL directly.

August 13, 2026

Feature

AI Protection supports data residency in the Kingdom of Saudi Arabia (KSA) for all Security Command Center service tiers.

For more information, see Planning for data residency.

August 10, 2026

Feature

The integration of Security Command Center with Application Design Center for application lifecycle security assessments is generally available (GA). Design-time findings are sent to Security Command Center on demand during deployment. This feature lets you filter findings by App Hub application at the app-enabled folder and project levels.

For more information, see Application lifecycle security assessments.

August 04, 2026

Feature

Security Command Center released new Malicious Skill runtime threat detectors for Google Kubernetes Engine (GKE), Cloud Run, and Agent Platform. These detectors identify when a malicious skill (an AI agent capability) is executed or loaded. A malicious skill is any malicious binary that has been tagged as an LLM skill by Google's threat intelligence.

For more information, see the following:

August 03, 2026

Feature

The Assured Open Source Software Premium tier supports JavaScript (NPM) packages for Node.js environments.

For more information, see Download NPM packages using direct repository access and List of supported NPM packages for the Assured Open Source Software premium tier.

Feature

For the Security Command Center Standard tier, AI Protection is supported for both projects and organizations.

Project-level activations for the Standard tier include access to the AI security dashboard, basic inventory view (excluding Gemini models), and baseline security findings.

Some features of AI Protection are only available for the Premium and Enterprise tiers or for organization-level activations. For more information, see Configure AI Protection.

July 31, 2026

Feature

Organizations that are enrolled in the data residency Preview program can update their organization's data residency and data encryption configuration. For more information, see Modify data residency or data encryption configuration.

Feature

Agent Platform Vulnerability Assessment (Preview) scans for plaintext secrets, such as credentials, access tokens, and API keys, in customer-deployed Gemini Enterprise Agent Platform containers. For more information, see Agent Platform Vulnerability Assessment.

July 28, 2026

Feature

Version 1.2.0 of the Google SCC ITSM app and version 1.3.0 of the Google SCC SIR app have been released.

To reflect this update, the ServiceNow integration guide is updated with the following changes:

  • Added support for ServiceNow Yokohama, Zurich, and Australia versions.
  • Added the following features:

    • Mute and unmute findings
    • Create mute rules
    • Create Configuration Item (CI) lookup rules
    • View the action log
  • Updated setup instructions for Java KeyStore certificates.

  • Added additional troubleshooting steps for maximum execution time exceeded errors, data collection issues, and ECC Queue timeout errors.

For more information, see Sending Security Command Center data to ServiceNow.

July 27, 2026

Feature

For the Security Command Center Premium tier, you can enable AI Protection at the project level.

Project-level activations include access to the AI security dashboard, AI threat detection, and AI vulnerability and misconfiguration findings.

Some features of AI Protection are only available for organization-level activations. For more information, see Configure AI Protection.

Feature

For the Security Command Center Premium tier, you can enable AI Protection at the project level.

Project-level activations include access to the AI security dashboard, AI threat detection, and AI vulnerability and misconfiguration findings.

For more information, see Configure AI Protection.

July 17, 2026

Announcement

Key insights from Security Command Center are available on the Security & compliance page in Cloud Hub. This feature is available in General Availability.

July 13, 2026

Feature

You can integrate Security Command Center with Jira to review findings in your Jira project. For more information, see Integrate Jira with Security Command Center.

July 09, 2026

Feature

You can modify the data residency and data encryption configuration on the Premium and Standard tiers after you activate Security Command Center for your organization. For more information, see Modify data residency or data encryption configuration.

June 25, 2026

Change

The Assured Open Source Software premium tier includes an updated list of curated binaries for the Go, Java, and Python languages.

For more information, see List of supported Java and Python packages for the Assured OSS premium tier and List of supported Go packages for the Assured OSS premium tier.

June 18, 2026

Feature

Security Command Center External Exposure is available in Preview for the Security Command Center Premium tier. The service helps you manage and reduce your external attack surface through automated asset discovery, Google Cloud network exposure path validation, and active exploitability testing.

For more information, see Detect exposed resources.

June 05, 2026

Feature

AI Protection supports data residency in the European Union (EU) for the Security Command Center Premium tier.

For more information, see Planning for data residency.

Change

The following Security Command Center finding category names from AI Protection have new names that clarify that AI Protection detects Gemini foundation models:

  • VERTEX_AI_MODEL_DETECTED changes to GEMINI_MODEL_DETECTED.
  • VERTEX_AI_MODEL_NOT_PROTECTED_BY_MODEL_ARMOR changes to GEMINI_MODEL_NOT_PROTECTED_BY_MODEL_ARMOR.

For more information about AI Protection findings, see AI Protection overview.

May 28, 2026

Feature

Risk Engine detects toxic combinations that are related to Managed Service for Apache Spark (formerly known as Dataproc), including Lightning Engine.

Feature

Risk reports are updated to include more content in the Risk Engine introduction and the System attack exposure pages. For more information about what's included in risk reports, see Risk reports overview.

May 21, 2026

Change

The following Compliance Manager frameworks were updated:

  • CIS Critical Security Controls v8 (version 8.0)
  • CIS GCP Foundations Benchmark v3.0 (version 7.0)
  • CSA Cloud Controls Matrix v4.0.11 (version 7.0)
  • ISO 27001:2022 (version 9.0)
  • NIST 800-53 Revision 5 (version 9.0)
  • NIST Cybersecurity Framework 1.1 (version 8.0)
  • PCI DSS v4.0.1 (version 6.0)
  • Qatar National Information Assurance Standard v2.1 (version 6.0)
  • SOC 2017 (version 7.0)
Deprecated

The Security Command Center Enterprise service tier is deprecated. It will be shut down on May 21, 2027. By default, your organization will automatically move to the Premium service tier on that date.

Feature

Artifact guard is available in Preview to the Security Command Center Enterprise and Premium tiers. Artifact guard is a service that helps you prevent the deployment of vulnerable packages throughout the software development lifecycle.

Feature

Risk Engine detects toxic combinations that are related to Cloud Build resources.

May 19, 2026

Change

Vulnerability Assessment for Google Cloud supports scanning XFS and NTFS disk partition types.

May 15, 2026

Change

Vulnerability Assessment for Google Cloud supports scanning GKE clusters that have Image streaming enabled.

May 11, 2026

Change

Compliance Manager can be enabled for a single project. For more information, see Enable Compliance Manager.

Change

New Standard tier activations at the organization level support the enhanced Standard tier features. New Standard tier activations at the project level continue to support Standard-legacy tier features. For more information, see Standard tier enhanced and automatically activated for some customers.

April 22, 2026

Feature

When Security Command Center is activated at the project level only, you can enable Vulnerability Assessment for Google Cloud on the single project.

Feature

Security Command Center has new predefined rules and controls:

Feature

Security Command Center findings that are related to AI security risks are available in the Security tab of the Gemini Enterprise Agent Platform. The feature helps provide comprehensive visibility into findings, active threats, and attack path simulations. This feature requires Security Command Center Premium or Enterprise.

For more information, see View security findings.

April 17, 2026

Feature

Through the Application Design Center, Security Command Center helps you perform proactive security assessments (Preview) throughout your application development lifecycle. This integration shows both design-time and runtime findings in Security Command Center. For more information, see Application lifecycle security assessments.

Feature

Data Security Posture Management has new controls in Preview. The controls help you secure Cloud Storage objects and include the following:

  • Govern the minimum retention period for Cloud Storage objects
  • Require Customer-Managed Encryption for Cloud Storage objects
  • Restrict Public Access to Cloud Storage objects

For more information, see Advanced data governance and security cloud controls.

April 16, 2026

Feature

AI Protection supports agentic workloads in Preview, including Gemini Enterprise Agent Platform and Model Context Protocol (MCP) servers. This update includes the following:

  • Agent Platform Vulnerability Assessment: Identifies software vulnerabilities (CVEs) in agentic workloads that are deployed with Gemini Enterprise Agent Platform. Findings are surfaced for vulnerabilities of HIGH or CRITICAL severity that are detected in your custom dependencies.
  • Expanded detection and controls: Includes new threat detection findings and recommended security controls for AI agents and MCP servers.
  • Enhanced inventory and filtering: Provides an updated AI security dashboard view and new filtering options for agentic resources in the console.

April 15, 2026

Change

When you activate Security Command Center Standard or Premium tier for a project, several services are automatically enabled and service-specific service agents are provisioned with the required IAM roles and permissions.

For more information, see Activate for a project when Security Command Center is not active in the organization.

April 14, 2026

Feature

Cloud Run Threat Detection monitors Cloud Run worker pools. For a list of resources that Cloud Run Threat Detection monitors, see Supported resources.

April 09, 2026

Announcement

Key insights from Security Command Center are available on the Security & compliance page in Cloud Hub. This feature is available in Preview.

April 02, 2026

Feature

Security Command Center Risk Engine supports Managed Service for Apache Spark resources in attack paths and Managed Service for Apache Spark clusters and jobs in high-value resource sets.

March 31, 2026

March 27, 2026

Announcement

Risk Engine has launched enhanced heuristics to help identify default high-value resources.

If you are using the default high-value resource set, you might observe changes in the exposure scores of their findings, resources, and issues. For information about these changes, see Default high-value resource set.

March 25, 2026

Change

The following Compliance Manager frameworks were updated:

  • CIS GKE 1.7 (version 3.0)
  • CIS Critical Security Controls v8 (version 6.0)
  • CSA Cloud Controls Matrix v4.0.11 (version 5.0)
  • ISO 27001:2022 (version 7.0)
  • Qutar National Information Assurance Standard v2.1 (version 4.0)
  • NIST 800-53 Revision 5 (version 7.0)
  • NIST Cybersecurity Framework 1.1 (version 6.0)
  • PCI DSS v4.0.1 (version 4.0)
  • Security Essentials (version 12.0)
  • SOC 2017 (version 5.0)

March 16, 2026

Change

The names of Event Threat Detection rules pertaining to AI control plane have changed.

The Cloud Run Threat Detection rule Privilege Escalation: Fileless Execution in /dev/shm has been shut down.

March 09, 2026

Announcement

In March 2026, Risk Engine will launch enhanced heuristics to more accurately identify default high-value resources.

No action is required. As a result of this enhancement, customers using the default high-value resource set may observe changes in the exposure scores of their findings, resources, and issues. Customers using custom resource value configurations are not affected.

March 05, 2026

Feature

AI Protection is generally available (GA) in the Security Command Center Premium tier at the organization level.

For regional availability, see Locations for AI Protection.

February 26, 2026

Feature

Security Command Center lets you filter findings, issues, and compliance information to view only the resources that are registered to an App Hub application. For information, see Integration with App Hub.

February 11, 2026

Feature

The Security Command Center Standard tier, available at no charge, has a new set of capabilities and is activated automatically for some organizations. For information about these changes, see Standard tier enhanced and automatically activated for some customers.

January 30, 2026

Change

The prompt injection and jailbreak detection filter for the Mumbai (asia-south1) and Singapore (asia-southeast1) regions is upgraded to improve detection accuracy and reduce the rate of false positives.

December 16, 2025

Feature

The following Container Threat Detection detectors have been released to General Availability:

  • Command and Control: Piped Encoded Code Execution Detected
  • Command and Control: Piped Encoded Download

December 15, 2025

Feature

You can configure Model Armor floor settings for Google-managed Model Context Protocol (MCP) servers to define baseline safety and security filters. This feature is in Preview.

You can also configure Cloud Logging for sanitization operations. The Model Armor floor settings perform these operations on traffic to and from Google-managed MCP servers and Gemini Enterprise Agent Platform models.

December 12, 2025

Change

Multiple pages in Security Command Center Standard have been improved:

  • The Risk overview page is enhanced to provide separate views for misconfiguration, vulnerabilities and identity-related findings.
  • The Findings page includes predefined filter views for vulnerabilities and identity findings.
  • The left navigation has been updated.
Feature

AI Protection is generally available (GA) in the Security Command Center Enterprise tier and is available as a Preview in the Security Command Center Premium tier.

December 11, 2025

Feature

Security Command Center Risk Engine supports Cloud Build Attack Paths with Cloud Build Resources supported in the high-value resource set.

December 10, 2025

Feature

You can configure Model Armor to enhance the security of your agentic AI applications that interact with Google Cloud Model Context Protocol (MCP) servers. This feature is in Preview. For configuration details, see Model Armor integration with Google Cloud MCP servers.

December 05, 2025

Change

Security Command Center Risk Engine uses the storage.restrictAuthTypes organization policy constraint to determine whether Cloud Storage buckets are reachable using signed URLs.

December 04, 2025

December 03, 2025

November 20, 2025

Change

The following updates simplify Security Command Center Standard and Premium tier activation for organizations:

See the following for detailed information about activating a specific tier:

November 17, 2025

Feature

The following AI Protection features are available:

  • AI Security dashboard: The dashboard has an updated AI Inventory section, which includes an overview of AI agents.
  • Assets page: You can filter for AI resources, including AI agents that are deployed to Agent Runtime.

AI Protection is available in Preview to the Security Command Center Enterprise tier.

Feature

Agent Engine Threat Detection, a built-in service of Security Command Center, is available in Preview to the Security Command Center Enterprise and Premium tiers. This service helps you detect and investigate potential attacks on AI agents that are deployed to Agent Runtime Runtime.

November 14, 2025

Feature

Data Security Posture Management (DSPM) supports the Security Command Center Premium tier at the organization level.

November 11, 2025

Change

Several features and updates have been made available to Security Command Center in a federated identity environment:

  • Exporting findings to a CSV file.
  • Exporting findings to Cloud Storage.

The following features aren't supported by identity federation but are being moved to other sections in the documentation:

  • Sending feedback in Security Command Center
  • Managing Google SecOps settings.

November 10, 2025

Feature

Model Armor is available in the following regions:

  • europe-west1 (Belgium)
  • europe-west2 (London)
  • europe-west3 (Frankfurt)
  • asia-south1 (Mumbai)

For more information, see Locations for the Model Armor API.

Feature

Data Security Posture Management (DSPM) has been released to General Availability for the Security Command Center Enterprise tier.

November 07, 2025

Feature

You can use customer-managed encryption keys (CMEK) organization policies with Security Command Center. For more information, see Use CMEK organization policies with Security Command Center.

Feature

The monitoring and auditing capabilities for Compliance Manager have been released to General Availability.

November 06, 2025

Feature

Security Command Center Risk Engine supports Cloud Run attack paths for the following high-value resources:

  • run.googleapis.com/Job
  • run.googleapis.com/Service

November 03, 2025

Feature

Compliance Manager supports the Security Command Center Premium tier at the organization level.

October 30, 2025

Feature

In addition to the Enterprise service tier, Issues are available on the Security Command Center Premium service tier at the organization level. This update includes capabilities such as Toxic Combinations, Chokepoints, and Graph Search (Preview). The console navigation has been updated to reflect an Issues page for Premium tier users.

October 21, 2025

Change

The release note for Security Command Center and attack path simulations, published on October 16, 2025, was updated to clarify that attack path simulations use Compute Engine and Google Kubernetes Engine OS and software vulnerability findings to detect toxic combinations and chokepoints.

October 20, 2025

October 17, 2025

Feature

Customers with an organization-level activation of Security Command Center Premium have an organization-level discovery subscription at no charge from Sensitive Data Protection. For more information, see Sensitive data discovery in Security Command Center Premium.

October 16, 2025

Change

Security Command Center and attack path simulations use Compute Engine and Google Kubernetes Engine operating system and software vulnerabilities to detect toxic combinations and chokepoints.

UPDATE: Attack path simulations analyze OS and software vulnerability findings for Compute Engine and Google Kubernetes Engine resources to detect toxic combinations and chokepoints.

October 15, 2025

Change

The following features in Compliance Manager are available in General Availability:

October 10, 2025

Feature

Correlated Threats is available in Preview. This feature combines related threat findings together by using the security graph, helping you to prioritize and respond to active threats.

October 09, 2025

Feature

Data Security Posture Management (available in Preview) lets you deploy frameworks with advanced data security cloud controls to app-enabled folders. For more information, see Deploy advanced data security cloud controls.

October 07, 2025

Change

Google Cloud console pages for all Security Command Center tiers have been enhanced.

  • The following changes were made to all service tiers—Standard, Premium, and Enterprise:

    • You can refresh findings in the Finding query results panel.
    • The JSON tab on the detail pane of the Findings page displays the raw findings JSON object, making it compatible with APIs.
    • Autocompletion of a query in the Findings page query editor is improved.
    • The Findings > Quick filters panel shows default values if there is an error fetching results.
    • The Findings > Quick filters panel shows separate State and Mute filter sections.
  • The following changes were made to the Enterprise service tier:

    • Added support for the Vulnerabilities page.
    • Added support for security marks.
    • Added support for the Threats dashboard on the Risk overview page.
    • The finding detail panel on the Issues page is updated. Open the panel using the View details button when viewing a toxic combination issue type.
    • Additional query operators and query functions are available.
    • The opt-out banner is no longer available.

September 27, 2025

Feature

Model Armor limits the maximum input size for files and text to 4 MB, automatically skipping any content that exceeds this threshold.

September 23, 2025

Change

The upgraded model for the prompt injection and jailbreak detection filter is available in EU multi-region. This model has improved detection rates across several attack vectors, including the following:

  • Do Anything Now prompts
  • System instruction manipulation
  • Unauthorized action execution
  • Sensitive information retrieval
Feature

Bulk export findings to BigQuery is available in General Availability. Bulk exports are supported for organizations, projects, and folders.

September 22, 2025

Feature

Graph search lets you explore the security graph using custom queries. This product is available in Preview in the Security Command Center Enterprise tier.

September 16, 2025

Feature

Model Armor is integrated with Google Agentspace to provide greater insights and enhanced security of your agent interactions by default. For more information, see Integration with Google Agentspace.

September 15, 2025

Change

The Findings page in Security Command Center has been improved.

  • With Security Command Center Premium and Enterprise, the page includes the following predefined filter views that return a specific category of findings.

    • Premium service tier: All Findings, Vulnerabilities, Identity, and Threats.
    • Enterprise service tier: All Findings, Vulnerabilities, Identity, Data, and Code.
  • With Security Command Center Enterprise, the page includes a selector to filter by cloud provider: Google Cloud, Amazon Web Service (AWS), and Microsoft Azure.

For more information, see Review and manage findings.

September 12, 2025

Change

Security Command Center has improved the automatic selection of resources when running attack path simulations using the default high-value resource set.

Risk Engine uses heuristics to identify resources used for non-production purposes. To help ensure that you have information about the most important assets, Risk Engine calculates the attack exposure score for all other resources in the default high-value resource set before calculating the attack exposure score for these non-production resources.

To customize the high-value resource set, see Define and manage your high-value resource set. For information about Risk Engine, see Attack exposure scores and attack paths.

Change

Security Command Center changed how Google Cloud subnets are handled when running attack path simulations. The result is that attack paths are more accurate in relation to networking. Certain customers with specific Google Cloud subnet configurations, for example, when a VPC connector accesses a subnetwork, may see significant changes to toxic combinations, chokepoints, and attack exposure scores.

September 11, 2025

Feature

Assured Open Source Software (Assured OSS) now supports Go packages. For more information, see Download Go packages using direct repository access.

September 10, 2025

September 08, 2025

Feature

The Model Armor monitoring dashboard provides a centralized view to track interactions and violations within your projects. This feature is available in Preview. For more information, see View the monitoring dashboard.

Change

Multiple pages in Security Command Center Premium have been improved:

  • The Risk overview page is enhanced to provide a view of threats, vulnerabilities, and misconfigurations.
  • The Findings page includes predefined filter views for vulnerabilities and identity findings.
  • Information previously on the Threats page is available in the Threats dashboard on the Risk overview page.
  • Information previously on the Vulnerabilities page is now available on the Vulnerabilities dashboard on the Risk overview page.

September 02, 2025

Feature

Vulnerability assessment for Google Cloud supports scanning disks configured with customer-managed encryption keys (CMEK) for projects that are outside of VPC Service Controls perimeters. For more information about how to scan disks configured with CMEK, see Run Vulnerability Scans for CMEK disks.

August 27, 2025

Change

Compliance Manager (available in Preview) now lets you remove resources from deployed frameworks.

August 20, 2025

August 15, 2025

Feature

AI Protection helps you manage the security posture of your AI workloads by detecting threats and helping you to mitigate risks to your AI asset inventory. This product is available in Preview to the Security Command Center Enterprise tier.

August 14, 2025

Feature

You can use customer-managed encryption keys (CMEKs) to protect data at rest in Security Command Center. This feature is available in General Availability. For more information, see Enable CMEK for Security Command Center.

August 12, 2025

Feature

Data Security Posture Management (DSPM) lets you define, deploy, monitor, and audit data security postures for your Google Cloud environment. This product is available in Preview to the Security Command Center Enterprise tier.

August 07, 2025

Feature

The following Container Threat Detection detectors have been released to General Availability:

  • Execution: Possible Arbitrary Command Execution through CUPS (CVE-2024-47177)
  • Execution: Socat Reverse Shell Detected
  • Privilege Escalation: Abuse of Sudo For Privilege Escalation (CVE-2019-14287)
  • Privilege Escalation: Polkit Local Privilege Escalation Vulnerability (CVE-2021-4034)
  • Privilege Escalation: Sudo Potential Privilege Escalation (CVE-2021-3156)
Feature

Risk reports generated and downloaded from Security Command Center include a system attack exposure page that shows the organization's exposure risk over time and lists the projects and resources that have the highest risk.

August 04, 2025

Change

Model Armor supports the asia-southeast1 location. For information about supported locations, see Locations for the Model Armor API.

August 01, 2025

Feature

Compliance Manager helps ensure that your Google Cloud infrastructure, workloads, and data meet the security and regulatory requirements of your organization. This product is available in Preview to the Security Command Center Enterprise tier.

July 29, 2025

Feature

Model Armor and Gemini Enterprise Agent Platform integration

Model Armor integrates with Gemini Enterprise Agent Platform, providing a default security configuration for all new prediction endpoints. This feature is in Preview. For more information, see Integration with Gemini Enterprise Agent Platform.

Feature

You can send a bulk export of Security Command Center findings to a BigQuery dataset. This feature is available in Preview. For more information, see Bulk export findings to BigQuery.

Feature

You can use Terraform to manage Model Armor floor settings and templates. This helps reduce manual overhead with Model Armor deployments. For more information, see Terraform resources for Security Command Center.

July 28, 2025

Change

Model Armor filter updates

  • The prompt injection and jailbreak detection filter now supports 10,000 tokens.
  • For the Sensitive Data Protection filter, SKIP_DETECTION is returned if the prompt or response exceeds the token limit.
  • For all other filters, if the prompt or response exceeds the token limit, MATCH_FOUND is returned if malicious content is found, and SKIP_DETECTION is returned if no malicious content is found.

July 25, 2025

Change

Cloud Infrastructure Entitlement Management (CIEM) has launched support for log ingestion from Microsoft Azure management groups. This capability lets users set up log ingestion and then consume findings at an Azure management group level, rather than at the subscription level. For more information, see Configure Microsoft Azure log ingestion for management groups. This capability is available in Preview.

Change

A new risk scoring algorithm is launched. As a result, you might see slight changes in attack exposure scores for resources and findings. The new algorithm better reflects attacker behavior and gives a fairer representation of the relative risk level of your organization. We will monitor the results of this change and might perform further adjustments, if necessary.

July 24, 2025

Feature

For the Enterprise service tier, Security Command Center offers data residency support in the European Union, Saudi Arabia, and United States. This feature is in General Availability.

July 22, 2025

Change

The Setup guide in Security Command Center Enterprise, used to monitor the activation progress and configure services, is now in General Availability.

Change

The Impair Defenses: Two Step Verification Disabled finding type of Event Threat Detection was renamed to Persistence: Two Step Verification Disabled. For a complete list of Event Threat Detection finding types, see Event Threat Detection overview.

July 21, 2025

Change

The Aggregations panel on the Findings page in Security Command Center Enterprise has been enhanced and is now called Quick Filters. For information about filtering results on the Findings page, see Review and manage findings.

July 17, 2025

Feature

The following Container Threat Detection detectors for file monitoring are in Preview:

  • Collection: Pam.d Modification
  • Credential Access: Access Sensitive Files on Nodes
  • Defense Evasion: Disable or modify Linux audit system
  • Defense Evasion: Root Certificate Installed
  • Execution: Suspicious Cron Modification
  • Persistence: Modify ld.so.preload
Change

The following Security Command Center Enterprise pages in the Google Cloud console now fully replace equivalent pages that you accessed previously in the Google Security Operations console.

Left navigation links in the Google SecOps console open the related Google Cloud console page. See the earlier release announcement about these pages.

July 14, 2025

Change

In the Google Kubernetes Engine (GKE) security posture dashboard, the software vulnerabilities pane is available in Preview, not General Availability.

July 11, 2025

Feature

Notebook Security Scanner is a built-in package vulnerability detection service of Security Command Center. This feature is available in Preview to the Security Command Center Premium or Enterprise tier.

You can enable and use Notebook Security Scanner to detect vulnerabilities in Python packages that are used in Colab Enterprise notebooks (files with the ipynb filename extension) and resolve those package vulnerability findings.

July 10, 2025

Change

In the Google Cloud console, the Google Kubernetes Engine (GKE) security posture dashboard shows the top software vulnerabilities that affect your GKE workloads. This feature is in General Availability.

July 01, 2025

Change

Security Command Center now supports the detection of Chokepoints for the following cloud service provider platforms:

  • Amazon Web Services (AWS)
  • Microsoft Azure

Support for Chokepoints with Microsoft Azure and AWS is in Preview.

June 30, 2025

Feature

You can download risk reports as PDFs. Risk reports help you understand the results of the attack path simulations (virtual red teaming) that Security Command Center runs. This feature is in Preview and is available for customers on the Enterprise or Premium service tiers. For more information, see Risk reports overview.

Feature

The following Virtual Machine Threat Detection detectors are in General Availability.

  • Defense Evasion: Unexpected ftrace handler
  • Defense Evasion: Unexpected interrupt handler
  • Defense Evasion: Unexpected kernel modules
  • Defense Evasion: Unexpected kernel read-only data modification
  • Defense Evasion: Unexpected kprobe handler
  • Defense Evasion: Unexpected processes in runqueue
  • Defense Evasion: Unexpected system call handler
Deprecated

The Defense Evasion: Unexpected kernel code modification detector of Virtual Machine Threat Detection is shut down. For more information, see Detector shutdowns.

June 27, 2025

Change

The following Event Threat Detection detectors have been released to GA.

  • Exfiltration: Cloud SQL Data Exfiltration
  • Credential Access: CloudDB Failed login from Anonymizing Proxy IP
  • Initial Access: CloudDB Successful login from Anonymizing Proxy IP

June 20, 2025

Change

The display name for the following Event Threat Detection rules have changed. Please update any artifacts that use these values, such as finding filters, finding queries, or mute rules.

Previous display name New display name
Defensive Evasion: Static Pod Created Defense Evasion: Static Pod Created
Data Destruction: Deleted Google Cloud Backup and DR Backup Impact: Deleted Google Cloud Backup and DR Backup
Inhibit System Recovery: Deleted Google Cloud Backup and DR host Impact: Deleted Google Cloud Backup and DR host
Inhibit System Recovery: Deleted Google Cloud Backup and DR plan association Impact: Deleted Google Cloud Backup and DR plan association
Inhibit System Recovery: Deleted Google Cloud Backup and DR Vault Impact: Deleted Google Cloud Backup and DR Vault
Inhibit System Recovery: Google Cloud Backup and DR delete policy Impact: Google Cloud Backup and DR delete policy
Inhibit System Recovery: Google Cloud Backup and DR delete profile Impact: Google Cloud Backup and DR delete profile
Inhibit System Recovery: Google Cloud Backup and DR delete storage pool Impact: Google Cloud Backup and DR delete storage pool
Inhibit System Recovery: Google Cloud Backup and DR delete template Impact: Google Cloud Backup and DR delete template
Data Destruction: Google Cloud Backup and DR expire image Impact: Google Cloud Backup and DR expire image
Data Destruction: Google Cloud Backup and DR remove appliance Impact: Google Cloud Backup and DR remove appliance
Inhibit System Recovery: Google Cloud Backup and DR remove plan Impact: Google Cloud Backup and DR remove plan
Impair Defenses: Strong Authentication Disabled Persistence: Strong Authentication Disabled
Credential Access: External Member Added To Privileged Group Privilege Escalation: External Member Added To Privileged Group
Persistence: Impersonation Role Granted For Dormant Service Account Privilege Escalation: Impersonation Role Granted For Dormant Service Account
Credential Access: Privileged Group Opened To Public Privilege Escalation: Privileged Group Opened To Public
Credential Access: Sensitive Role Granted To Hybrid Group Privilege Escalation: Sensitive Role Granted To Hybrid Group
Change

Risk Engine includes the aiplatform.googleapis.com/Model resource type in the default high-value resource set. For more information, see the list of default resource types.

June 19, 2025

Change

CVEs with no known exploitation activity are not considered in attack path simulations

Vulnerability findings in Security Command Center are enriched by Mandiant Threat Intelligence. A CVE with wide exploitation activity is more likely to be used in an attack path compared to a CVE with only anticipated exploitation activity. Vulnerabilities with no known exploitation activity are not considered in attack path simulations. For more information, see Incorporation of CVE data.

Change

The prompt injection and jailbreak detection filter in Model Armor flags more threats across various attack vectors, and offers an improved detection rate for high-confidence malicious prompts. This filter is available in us-east1.

June 18, 2025

Announcement

The Set security marks option in the new Security Command Center Enterprise Findings and Assets pages is temporarily unavailable. You can opt-out of the new Security Command Center Enterprise experience to manage security marks using the Cloud console. Or, you can manage security marks using the Security Command Center API.

June 13, 2025

Feature

The following Event Threat Detection detectors for Vertex AI have been released to Preview:

  • Persistence: New Geography for AI Service
  • Privilege Escalation: Anomalous Multistep Service Account Delegation for AI Admin Activity
  • Privilege Escalation: Anomalous Multistep Service Account Delegation for AI Data Access
  • Privilege Escalation: Anomalous Service Account Impersonator for AI Admin Activity
  • Privilege Escalation: Anomalous Service Account Impersonator for AI Data Access
  • Privilege Escalation: Anomalous Impersonation of Service Account for AI Admin Activity
  • Persistence: New AI API Method
  • Initial Access: Dormant Service Account Activity in AI Service

June 08, 2025

Feature

Multi-language support for Model Armor filters

The Responsible AI and prompt injection and jailbreak detection filters are tested in English, Spanish, French, Italian, Portuguese, German, Chinese (Mandarin), Japanese, and Korean. These filters can work in other languages, but the quality of results might vary.

For more information, see Languages supported.

Feature

Model Armor supports screening text in the following document types for malicious content.

  • DOCX, DOCM, DOTX, DOTM documents
  • PPTX, PPTM, POTX, POT presentations
  • XLSX, XLSM, XLTX, XLTM spreadsheets

June 06, 2025

Change

The Security Risk Overview dashboard for Compute Engine is in General Availability. In addition, it provides a Top CVE findings table that lists the most severe CVEs that affect your Compute Engine instances.

June 05, 2025

Change

Muted findings are no longer considered in the Security Command Center Risk Engine. As a result, they no longer get attack exposure scores.

Feature

Vulnerability Assessment for Google Cloud supports scanning on Google Kubernetes Engine (GKE) nodes and containers. This feature has been released to Preview.

June 04, 2025

Feature

Security Command Center Premium customers can now access toxic combinations, which are in General Availability, and chokepoints, which are in Preview. These are available at the organization level. For more information, see Toxic combinations and chokepoints overview.

June 03, 2025

Feature

The following Container Threat Detection detectors for Google Kubernetes Engine have been released to General Availability:

  • Credential Access: Find Google Cloud Credentials
  • Credential Access: GPG Key Reconnaissance
  • Defense Evasion: Base64 ELF File Command Line
  • Defense Evasion: Base64 Encoded Python Script Executed
  • Defense Evasion: Base64 Encoded Shell Script Executed
  • Execution: Fileless Execution in /memfd:
  • Execution: Suspicious OpenSSL Shared Object Loaded
  • Privilege Escalation: Fileless Execution in /dev/shm

May 29, 2025

Change

Domain tagging for toxic combinations and chokepoints has been improved to be more precise. The following filters are available for issues:

  • CVE Vulnerabilities
  • Identity
  • Data
  • AI Security

May 28, 2025

Change

Model Armor enhancements

May 27, 2025

Change

Enhanced data residency support in the European Union and United States is in General Availability.

May 23, 2025

Change

Starting May 26, 2025, the findings retention period for new activations of Security Command Center will change from 13 months to 90 days.

The retention period for findings for existing customers prior to May 26, 2025, remains unchanged.

For more information on retention periods, see Data retention.

May 22, 2025

Change

The Google Kubernetes Engine (GKE) security posture dashboard shows the top threats, but not the top software vulnerabilities, detected by Security Command Center.

Feature

In the Google Cloud console, the Google Kubernetes Engine (GKE) security posture dashboard shows the top threats and software vulnerabilities that affect your GKE workloads. This feature is in General Availability.

May 15, 2025

Change

The GA release of enhanced data residency support in the European Union and United States is temporarily delayed.

Feature

When you enable Security Command Center for the first time in an organization, and you enable data residency in the European Union or United States, data residency controls are enforced at rest, in use, and in transit. This feature is in General Availability.

For details, see Planning for data residency and Security Command Center regional endpoints.

Feature

Risk Engine supports the Artifact Registry service. This support lets Risk Engine consider images that are hosted in Artifact Registry when calculating attack paths. For more information, see Resources that receive attack exposure scores.

To support this change, Risk Engine includes the artifactregistry.googleapis.com/Repository resource type in the default high-value resource set. For more information, see the list of default resource types.

May 09, 2025

Feature

A Security Risk Overview dashboard for Compute Engine is available in the Google Cloud console. The dashboard, available in Preview, shows the top Security Command Center findings that affect your Compute Engine resources.

May 08, 2025

Feature

Security Command Center Enterprise uses predefined security graph rules to identify issues. This feature is in Preview.

For more information, see Predefined security graph rules.

Change

The following Security Command Center Enterprise pages that you previously accessed through the Google Security Operations console are now under Security Command Center in the Google Cloud console:

The Security Command Center Enterprise left navigation also includes links to pages in the Google Security Operations console. For information about this navigation and accessing Google Security Operations pages, see Security Command Center Enterprise console.

May 05, 2025

Feature

Web Security Scanner, a built-in service of Security Command Center, released new detectors. The following detectors, which are available with the Enterprise and Premium tiers of Security Command Center, detect misconfigurations in web applications:

  • HSTS_MISCONFIGURATION
  • CSP_MISSING
  • CSP_MISCONFIGURATION
  • COOP_MISSING
  • CLICKJACKING_PROTECTION_MISSING

For more information, see Web Security Scanner misconfiguration findings.

April 29, 2025

Feature

Vulnerability Assessment for Google Cloud has been released to Preview. This feature helps to discover critical and high severity software vulnerabilities in your Compute Engine VM instances without installing agents.

Vulnerability Assessment for Google Cloud is on by default. Customers might see an increase in findings due to vulnerabilities in existing virtual machines that weren't previously detected.

April 28, 2025

Feature

Security Command Center provides increased support for Microsoft Azure data.

Announcement

Toxic Combinations for Amazon Web Services (AWS) has been released to General Availability.

April 21, 2025

Feature

The Execution: Ingress Nightmare Vulnerability Execution detector of Container Threat Detection is in Preview.

April 18, 2025

Feature

The ability of Event Threat Detection to analyze foundational log sources is generally available (GA).

April 17, 2025

Change

The discovery findings that Sensitive Data Protection generates in Security Command Center include recommended next steps. This improvement applies to the finding categories listed in Publish data profiles to Security Command Center.

April 09, 2025

Change

IAM recommender findings are now available with project-level activations of Security Command Center.

Feature

Model Armor and GKE integration

Model Armor now enforces security policies uniformly on generative AI inference traffic using a traffic extension. This applies to all application load balancers, including Google Kubernetes Engine Inference Gateway. This feature is in Preview. For more information, see