More Info:

DATA_READ, DATA_WRITE and ADMIN_READ logs should be enabled on Cloud Bigtable Instances

Risk Level

Medium

Address

Operational Maturity, Security

Compliance Standards

HITRUST

Triage and Remediation

Remediation

To remediate the “Bigtable Instances Should Have Audit Logging Enabled” misconfiguration in GCP using the GCP console, you can follow the below steps:

  1. Open the Google Cloud Console and select the project in which the Bigtable instance is created.
  2. In the left navigation menu, select “Bigtable” under the “Storage” section.
  3. Select the Bigtable instance for which you want to enable audit logging.
  4. In the Bigtable instance details page, click on the “Edit” button at the top of the page.
  5. Scroll down to the “Cloud Audit Logs” section and click on the “Add logging” button.
  6. In the “Add logging” dialog box, select the logs that you want to enable for the Bigtable instance. You can select from the following logs:
    • Admin Activity
    • Data Access
    • System Event
  7. Once you have selected the logs, click on the “Save” button to enable audit logging for the Bigtable instance.

By following the above steps, you can enable audit logging for the Bigtable instance in GCP using the GCP console.

Additional Reading: