November 17, 2020

Sharing is Caring - Useful GCP Tools and Resources

So what have we covered so far? We’ve had posts about K8S, AWS, and Azure. So it’s definitely the time to give some respect to GCP too!

At 7% market share, Google Cloud also maintained its momentum around its target industries.  At Lightspin, we don’t only see more startups and data companies using GCP, but we also see more and more multi-cloud organizations using Google cloud for their testing environment.

Here are some GCP useful resources:

GoogleCloudPlatform/professional-services - Identity, Identity, Identity! This article uses GCP's IAM recommender to explore how to address common pain points we see in identity access + enforcing least privilege at scale.

image-wa748

 

Image scanning for Google Cloud Build- This is a great article where we learn how to add inline image scanning to a Google Cloud Build pipeline.

Image scanning for Google Cloud Build

 

CloudSecDocs is a fantastic resource! Another website collecting technical notes, how-tos, and cheat sheets related to CSP. Just for you, the link will forward to GCP section.

CloudSecDocs 

 

Firebase: Google Cloud's Evil Twin - An excellent whitepaper from SANS about Firebase and its security flaws.

SANS whitepaper about Firebase

 

-----------------------------------

About Lightspin

Lightspin’s context-based cloud security empowers cloud and security teams to eliminate risks and maximize productivity by proactively and automatically detecting all security risks, smartly prioritizing the most critical issues, and easily fixing them. For more information, visit https://www.lightspin.io/