More Info:

Confidential Computing enables customers’ sensitive code and other data encrypted in memory during processing. Google does not have access to the encryption keys. Confidential VM can help alleviate concerns about risk related to either dependency on Google infrastructure or Google insiders’ access to customer data in the clear.

Risk Level

High

Address

Security

Compliance Standards

CISGCP, CBP

Triage and Remediation

Remediation

To remediate the misconfiguration “Ensure That Compute Instances Have Confidential Computing Enabled” for Google Cloud Platform (GCP) using GCP console, follow the below steps:

  1. Open the GCP Console and navigate to the Compute Engine page.
  2. Select the instance(s) for which you want to enable Confidential Computing.
  3. Click on the “Edit” button at the top of the page.
  4. Scroll down to the “Confidential Computing” section and select the checkbox next to “Enable Confidential VMs”.
  5. Click on the “Save” button at the bottom of the page to save the changes.

Once you have completed the above steps, Confidential Computing will be enabled for the selected instance(s) in GCP.

Additional Reading: