View on GitHub

cloud-guardrails

Minimum guardrails for GC's cloud operationalization framework.

Logging and Monitoring

Objective

Enable logging for the cloud environment and for cloud-based workloads.

Key Considerations

Note: You may need to configure your solution to send the audit log records to a centralized logging facility, if one is available, where existing auditing mechanisms will be applied.

Validation

Applicable Service Models

References

  1. SPIN 2017-01, subsection 6.3.1
  2. CSE Top 10 #1, 5, 8
  3. Refer to GC Event Logging Guidance
  4. Related security controls: AU‑2, AU‑3, AU‑6, AU‑8, AU‑9, AU‑9(4), AU‑12, SI-4