GCP Resources Collected

Secberus will utilize the following GCP API's in order to collect all the data it needs from your GCP project:

  • API Gateway
  • Batch
  • Certificate Manager
  • Cloud Domains
  • Cloud DNS
  • Cloud Functions
  • Cloud Key Management Service (KMS)
  • Cloud Resource Manager
  • Cloud Scheduler
  • Cloud SQL Admin
  • Compute Engine
  • Google Cloud Memorystore for Redis
  • Identity and Access Management (IAM)
  • Kubernetes Engine
  • OS Config
  • Secret Manager
  • Serverless VPC Access
  • Workflows

⚠️

If any of the API's are not enabled in your GCP project, you will see error messages in the Activity Log stating the scan for that particular resource could not be completed.

The following resources are actively monitored in the Secberus platform. If you need coverage for additional resources, please reach out to support@secberus.com.

GCP Resources
AI PlatformBatch Prediction Jobs
Custom Jobs
Data Labeling Jobs
Dataset Locations
Datasets
Endpoint Locations
Endpoints
Featurestore Locations
Featurestores
Hyperparameter Tuning Jobs
Index Endpoints
Index Locations
Indexendpoint Locations
Indexes
Job Locations
Metadata Locations
Metadata Stores
Model Deployment Monitoring Jobs
Model Locations
Models
Operations
Pipeline Jobs
Pipeline Locations
Specialist Pools
Specialist Pool Locations
Studies
TensorBoard Locations
TensorBoards
Training Pipelines
Vizier Locations
API GatewayAPIs
Gateways
API KeysKeys
App EngineApps
Authorized Certificates
Authorized Domains
Domain Mappings
Firewall Ingress Rules
Instances
Services
Versions
Artifact RegistryDocker Images
Files
Locations
Packages
Repositories
Tags
Versions
Bare Metal SolutionInstances
Networks
NFS Shares
Volume Luns
Volumes
BatchJobs
Task Groups
Tasks
Beyond CorpApp Connections
App Connectors
App Gateways
Client Connector Services
Client Gateways
BigQueryDatasets
Tables
Bigtable AdminApp Profiles
Backups
Clusters
Instances
Tables
BillingBilling Accounts
Budgets
Services
Binary AuthorizationAssertors
Certificate ManagerCertificate Issuance Configs
Certificate Map Entries
Certificate Maps
Certificates
DNS Authorizations
Cloud DeployDelivery Pipelines
Job Runs
Releases
Rollouts
Targets
Cloud Error ReportingError Events
Error Group Stats
Cloud IOTDevice Configs
Device Registries
Device States
Devices
Cloud Resource ManagerOrganizations
Cloud SchedulerJobs
Locations
Cloud SupportCases
ComputeAddresses
Autoscalers
Backend Services
Disk Types
Disks
Firewalls
Forwarding Rules
Images
Instance Groups
Instances
Interconnects
Machine Types
Networks
Osconfig Inventories
Projects
Router NAT Mapping Infos
Routers
Routes
SSL Certificates
SSL Policies
Subnetworks
Target HTTP Proxies
Target SSL Proxies
URL Maps
VPN Gateways
Zones
ContainerClusters
Container AnalysisOccurrences
DNSManaged Zones
Policies
Resource Record Sets
DomainsRegistrations
FunctionsFunctions
IAMDeny Policies
Roles
Service Account Keys
Service Accounts
KMSCrypto Key Versions
Crypto Keys
Ekm Connections
Import Jobs
Key Rings
Locations
Live StreamChannels
Inputs
LoggingMetrics
Sinks
MonitoringAlert Policies
Projects
RedisInstances
Resource ManagerFolders
Organization Tag Keys
Organization Tag Values
Project Policies
Project Tag Bindings
Project Tag Keys
Project Tag Values
Projects
Subfolders
RunLocations
Services
Secret ManagerSecrets
Security CenterFolder Findings
Organization Findings
Project Findings
Service UsageServices
SQLInstances
Users
StorageBucket Policies
Buckets
TranslateGlossaries
Video TranscoderJob Templates
Jobs
VisionProduct Reference Images
Products
VM MigrationGroups
Source Datacenter Connectors
Source Migrating VM Clone Jobs
Source Migrating VM Cutover Jobs
Source Migrating VMs
Source Utilization Reports
Sources
Target Projects
VPC AccessConnectors
Locations
Web security ScannerScan Config Scan Run Crawled Urls
Scan Config Scan Run Findings
Scan Config Scan Runs
Scan Configs
WorkflowsWorkflows