Benchmark: GCP CIS v1.2.0
To obtain the latest version of the official guide, please visit http://benchmarks.cisecurity.org.
Overview
The CIS Google Cloud Platform Foundations Security Benchmark covers foundational elements of Google Cloud Platform.
Profiles
Level 1
Items in this profile intend to:
- be practical and prudent;
 - provide a clear security benefit; and
 - not inhibit the utility of the technology beyond acceptable means.
 
Level 2 (extends Level 1)
This profile extends the "Level 1" profile. Items in this profile exhibit one or more of the following characteristics:
- are intended for environments or use cases where security is paramount
 - acts as defense in depth measure
 - may negatively inhibit the utility or performance of the technology.
 
Usage
Install the mod:
mkdir dashboardscd dashboardspowerpipe mod initpowerpipe mod install github.com/turbot/steampipe-mod-gcp-complianceStart the Powerpipe server:
steampipe service startpowerpipe serverOpen http://localhost:9033 in your browser and select GCP CIS v1.2.0.
Run this benchmark in your terminal:
powerpipe benchmark run gcp_compliance.benchmark.cis_v120Snapshot and share results via Turbot Pipes:
powerpipe benchmark run gcp_compliance.benchmark.cis_v120 --shareBenchmarks
- 1 Identity and Access Management
 - 2 Logging and Monitoring
 - 3 Networking
 - 4 Virtual Machines
 - 5 Storage
 - 6 Cloud SQL Database Services
 - 7 BigQuery