GCP
Cloud Security Posture Management (CSPM) for GCP
Overview
Cloud Security Posture Management (CSPM) is the process of securing multi-cloud environments through enhanced visibility, risk and misconfiguration identification, posture assessment, and compliance protocols. CodeAnt AI continuously monitor cloud infrastructure—such as Infrastructure as a Service (IaaS), Platform as a Service (PaaS), and Software as a Service (SaaS)—for gaps in security policy enforcement.
Key Features
- Multi-Cloud Support: Currently supports AWS, GCP and Azure.
- Seamless Integration: Connect seamlessly with any cloud provider and continuously monitor for security vulnerabilities, misconfigurations, and compliance issues.
How It Works
-
Permissions
-
Create a dedicated service account in each project.
-
Grant the minimum roles:
These roles cover the required
cloudasset.assets.exportResource
andcloudasset.assets.exportIamPolicy
permissions. -
Enable the Cloud Asset Inventory API (one-time per project):
-
Generate and download a JSON key—keep it out of version control:
-
-
Settings
- In the CodeAnt UI navigate to Settings -> Cloud Security Settings -> GCP.
- Write project id, paste the JSON key and hit save.
-
Start a Scan
- Go to Cloud Security -> Start a New Scan and pick your GCP connection.
- Within 15-20 minutes, the scan will be completed, and you will see the results.
Demo
For a detailed use case and step-by-step guide on how to utilize the cloud security feature, check out our demo. The demo provides a comprehensive walkthrough, showing you how to configure settings, start a scan, and interpret the results effectively.