cis-gcp-foundations-1.16
Ensure Essential Contacts is Configured for Organization
Browse reusable Agent Skills, each with a clear purpose and practical guidance.
Ensure Essential Contacts is Configured for Organization
Ensure Secrets are Not Stored in Cloud Functions Environment Variables by Using Secret Manager
Ensure That Multi-Factor Authentication is Enabled for All Non-Service Accounts
Ensure That Security Key Enforcement is Enabled for All Admin Accounts
Ensure That There Are Only GCP-Managed Service Account Keys for Each Service Account
Ensure That Service Account Has No Admin Privileges
Ensure That IAM Users Are Not Assigned the Service Account User or Service Account Token Creator Roles at Project Level
Ensure User-Managed/External Keys for Service Accounts Are Rotated Every 90 Days or Fewer
Ensure That Separation of Duties Is Enforced While Assigning Service Account Related Roles to Users
Ensure That Cloud KMS Cryptokeys Are Not Anonymously or Publicly Accessible