Google Cloud Incident Response Cheat Sheet Logo

Google Cloud Incident Response Cheat Sheet

0
Free
Visit Website

Google Cloud Platform Forensics provides a comprehensive overview of incident response in GCP, including logs for threat hunting and incident response, log analysis, and admin console cloud logging. It involves understanding existing infrastructure and investigating malicious activity derived from control plane activity. The tool provides five categories of forensic data, including alerts, logs, configurations, reports, and service data, and utilizes GCP native tooling such as Security Command Center, Logs Explorer, BigQuery, Metrics Explorer, Policy Analyzer, and Asset Inventory. The tool tracks various logs, including Admin, User, OAuth, SAML, Groups, and Security logs, which can be used for threat hunting and incident response. These logs provide valuable insights into API calls, user events, and configuration changes, enabling effective incident response and threat hunting in GCP environments.

FEATURES

ALTERNATIVES

A docker container with multiple vulnerable applications for cybersecurity training.

A guide outlining security considerations for using OpenLDAP Software, including selective listening and IP firewall capabilities.

A comprehensive guide to mobile application penetration testing, covering various topics and techniques

A comprehensive guide to network security monitoring, teaching readers how to detect and respond to intrusions using open source software and vendor-neutral tools.

A comprehensive and immersive 13-week course by NYU Tandon's OSIRIS Lab introducing students to offensive security with practical applications and research projects.

Comprehensive tutorial series on ARM Assembly covering various topics.

A comprehensive guide to Python 3 syntax, features, and resources in a single image.

Connect and learn from experts and peers in the Microsoft Community Hub.

PINNED