Detecting vulnerabilities and malicious activity
The detective controls are the various platform telemetry tools used to detect vulnerabilities and potentially malicious activities in the cloud environment. Many enterprises include a security system in their security tooling, which centralizes many, if not all, of the detective functions. On GCP, you can use the Security Command Center for that purpose. As either an alternative or in addition to it, you can also use a SIEM product inside or outside of Google Cloud.
Security operations on GCP with Security Command Center
Security Command Center offers a single platform to aggregate and manage security findings on GCP. It was designed by Google to provide both visibility into how resources are configured as well as the ability to reliably detect threats in real time. Security misconfigurations are often in and of themselves a vulnerability for your systems. Therefore, monitoring for misconfigurations is one of its core capabilities...