PipelineAtlas

GCP Security Audit

Build a custom security scan across your Google Cloud project. Pick only the services you run, and we bundle them into one combined audit report aligned to CIS GCP Benchmarks.

FullService Coverage
DeepSecurity Checks
CISBenchmark Aligned
← Back to Cloud Providers
How to create credentials Create a Service Account in your GCP project with the Security Reviewer and Viewer roles. Generate a JSON key file and paste the contents below. Your credentials are used only to run the audit and are never stored.
Found in the GCP Console header or under IAM and Admin : Settings
Paste the full contents of your downloaded service account JSON key file
Receive the full HTML report by email when the audit completes
Pick the scanners you want Select the Google Cloud services you run from the scanners below. When you build your package, every scanner you tick runs against your project and the results are combined into a single prioritised report. Choose all of them, or just the services you actually run.
20 of 20 scanners selected
Storage and Data
Compute and Serverless
Security and Identity
Networking and Edge
Messaging and Cache
Logging and Monitoring
Extended Service Coverage

These extended scanners cover the long tail of Google Cloud services. They are optional and unchecked by default to keep a standard audit fast. Tick only what you run.

Extended Data and Databases
Extended Analytics and AI
Extended Compute and Serverless
Extended Networking and Edge
Extended Security and Identity
Extended DevOps and Operations
Extended Observability
20 scanners in your package Combined into one prioritised GCP audit report