More Info:

Ensure that kubernetes node pools have Integrity Monitoring enabled

Risk Level

Medium

Address

Performance Efficiency, Operational Excellence, Reliability, Security

Compliance Standards

HITRUST, SOC2, NISTCSF

Triage and Remediation

Remediation

Sure, here are the step-by-step instructions to remediate the misconfiguration “Integrity Monitoring Should Be Enabled For Kubernetes Node Pools” for GCP using GCP console:

  1. Go to the GCP Console and select the project where the Kubernetes node pool is located.
  2. In the left navigation menu, select “Kubernetes Engine” and then select “Node pools”.
  3. From the list of node pools, select the node pool that you want to enable Integrity Monitoring for.
  4. Click on the “Edit” button at the top of the page.
  5. Scroll down to the “Security” section and click on “Show”.
  6. Find the option for “Integrity monitoring” and toggle it to “On”.
  7. Click on the “Save” button at the bottom of the page to save your changes.

After completing these steps, Integrity Monitoring will be enabled for the selected Kubernetes node pool on GCP.

Additional Reading: