Security
Security is a process, not a product.
Google core principles include defense in depth, at scale, and by default. In Google Cloud, data and systems are protected through multiple layered defenses using policies and controls that are configured across IAM, encryption, networking, detection, logging, and monitoring.
Google Cloud comes with many security controls that you can build on, such as the following:
Secure options for data in transit, and default encryption for data at rest.
Built-in security features for Google Cloud products and services.
A global infrastructure that's designed for geo-redundancy, with security controls throughout the information processing lifecycle.
Automation capabilities that use infrastructure as code (IaC) and configuration guardrails.
At Astrafy we tackle security with a holistic approach and start by making sure we are all aligned on security principles while being on Google Cloud. We get this done by reviewing with you the following sections:
We then discuss with you the following security design topics:
The aforementioned is an exhaustive list we usually take an approach of starting small with mandatory security topics and then expand along your cloud journey.
Last updated