More Info:

Ensure that Bigtable cluster Backups are encrypted.

Risk Level

Critical

Address

Security

Compliance Standards

SOC2, NIST, GDPR, ISO27001, HIPAA, HITRUST, NISTCSF, PCIDSS

Triage and Remediation

Remediation

To remediate the issue of unencrypted Bigtable Cluster backups in GCP, you can follow these steps:

  1. Open the Google Cloud Console and navigate to the Bigtable Cluster backups page.

  2. Select the Bigtable cluster for which you want to enable backup encryption.

  3. Click on the “Edit” button located at the top of the page.

  4. Scroll down to the “Backup Encryption” section and select “Enabled”.

  5. Choose the key version you want to use for encryption and click on “Save”.

  6. Once the backup encryption is enabled, all new backups for the selected Bigtable cluster will be encrypted using the specified key version.

  7. You can also verify the encryption status of existing backups by checking the “Encryption” column in the backups table.

It is important to note that enabling backup encryption may increase the cost of backups due to the additional resources required for encryption. However, it is a necessary step to ensure the security of your data.

Additional Reading: