More Info:

Ensure that Bigtable cluster Backups are encrypted with CMK.

Risk Level

High

Address

Security

Compliance Standards

SOC2, NIST, GDPR, ISO27001, HIPAA, HITRUST

Triage and Remediation

Remediation

To remediate the misconfiguration “Bigtable Cluster Backups Should Be Encrypted With Customer Managed Keys” for GCP using GCP console, follow these steps:

  1. Open the Google Cloud Console and select the project where your Bigtable cluster is located.

  2. Go to the Cloud Bigtable section of the console and select your Bigtable instance.

  3. Click on the “Backups” tab and select the backup that you want to encrypt with a customer-managed key.

  4. Click on the “Edit” button next to the backup.

  5. In the “Encryption” section, select “Customer-managed key” from the drop-down menu.

  6. Click on the “Select a key” button and choose the customer-managed key that you want to use to encrypt the backup.

  7. Click on the “Save” button to save the changes.

  8. Repeat steps 3-7 for all the backups associated with your Bigtable cluster.

By following these steps, you will remediate the misconfiguration by encrypting your Bigtable cluster backups with customer-managed keys.

Additional Reading: