Let's start by discussing what we get directly by virtue of using the GCP. This section is all about the platform; these are security protections that we very likely would not be able to engineer for ourselves. The big cloud providers, including Google, have a lot of time, money, and resources to pour into getting these little details right.
Let's go through some of the many layers of security provided by the GCP.
- Data center physical security: Only a small fraction of Google employees ever get to visit a GCP data center. Those data centers, the zones that we have been talking so much about, probably would seem out of a Bond film to those that did—security lasers, biometric detectors, alarms, cameras, and all of that cloak-and-dagger stuff.
- Custom hardware and trusted booting: A specific form of security attacks named...