Skip to content

Commit a5a5332

Browse files
author
David Curwin
committed
GCP CSPM
1 parent 7fa0ef8 commit a5a5332

File tree

2 files changed

+30
-4
lines changed

2 files changed

+30
-4
lines changed
58.1 KB
Loading

articles/defender-for-cloud/quickstart-onboard-gcp.md

Lines changed: 30 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -76,14 +76,14 @@ In this section of the wizard, you select the Defender for Cloud plans that you
7676

7777
:::image type="content" source="media/quickstart-onboard-gcp/add-gcp-project-configure-access.png" alt-text="Screenshot that shows deployment options and instructions for configuring access.":::
7878

79-
1. Follow the on-screen instructions for the selected deployment method to complete the required dependencies on GCP.
79+
1. Follow the on-screen instructions for the selected deployment method to complete the required dependencies on GCP.
8080

8181
1. Select **Next: Review and generate**.
8282

8383
1. Select **Create**.
8484

8585
> [!NOTE]
86-
> The following APIs must be enabled in order to discover your GCP resources and allow the authentication process to occur:
86+
> The following APIs must be enabled in order to discover your GCP resources and allow the authentication process to occur:
8787
> - `iam.googleapis.com`
8888
> - `sts.googleapis.com`
8989
> - `cloudresourcemanager.googleapis.com`
@@ -200,6 +200,32 @@ To configure the Defender for Containers plan:
200200

201201
1. Continue from step 8 of the [Connect your GCP project](#connect-your-gcp-project) instructions.
202202

203+
### Configure the Defender CSPM plan
204+
205+
If you choose the Microsoft Defender CSPM plan, you need:
206+
207+
- a Microsoft Azure subscription. If you don't have an Azure subscription, you can [sign up for a free subscription](https://azure.microsoft.com/pricing/free-trial/).
208+
- You must [enable Microsoft Defender for Cloud](get-started.md#enable-defender-for-cloud-on-your-azure-subscription) on your Azure subscription.
209+
- In order to gain access to all of the features available from the CSPM plan, the plan must be enabled by the **Subscription Owner**.
210+
211+
Learn more about how to [enable Defender CSPM](tutorial-enable-cspm-plan.md).
212+
213+
To configure the Defender CSPM plan:
214+
215+
1. Follow the [steps to connect your GCP project](#connect-your-gcp-project).
216+
217+
1. On the **Select plans** tab, select **Configure**.
218+
219+
:::image type="content" source="media/quickstart-onboard-gcp/view-configuration.png" alt-text="Screenshot that shows the link for configuring the Defender CSPM plan.":::
220+
221+
1. On the **Plan configuration** pane, turn the toggles to **On** or **Off**, depending on your need.
222+
223+
:::image type="content" source="media/quickstart-onboard-gcp/cspm-configuration.png" alt-text="Screenshot that shows toggles for Defender CSPM.":::
224+
225+
1. Select **Save**.
226+
227+
1. Continue from step 8 of the [Connect your GCP project](#connect-your-gcp-project) instructions.
228+
203229
## Monitor your GCP resources
204230

205231
The security recommendations page in Defender for Cloud displays your GCP resources together with your Azure and AWS resources for a true multicloud view.
@@ -212,7 +238,7 @@ To view all the active recommendations for your resources by resource type, use
212238

213239
When you enable Defender for Cloud, Defender for Cloud's alerts are automatically integrated into the Microsoft Defender Portal. No further steps are needed.
214240

215-
The integration between Microsoft Defender for Cloud and Microsoft Defender XDR brings your cloud environments into Microsoft Defender XDR. With Defender for Cloud's alerts and cloud correlations integrated into Microsoft Defender XDR, SOC teams can now access all security information from a single interface.
241+
The integration between Microsoft Defender for Cloud and Microsoft Defender XDR brings your cloud environments into Microsoft Defender XDR. With Defender for Cloud's alerts and cloud correlations integrated into Microsoft Defender XDR, SOC teams can now access all security information from a single interface.
216242

217243
Learn more about Defender for Cloud's [alerts in Microsoft Defender XDR](concept-integration-365.md).
218244

@@ -223,4 +249,4 @@ Connecting your GCP project is part of the multicloud experience available in Mi
223249
- [Protect all of your resources with Defender for Cloud](enable-all-plans.md).
224250
- Set up your [on-premises machines](quickstart-onboard-machines.md) and [AWS account](quickstart-onboard-aws.md).
225251
- [Troubleshoot your multicloud connectors](troubleshooting-guide.md#troubleshooting-the-native-multicloud-connector).
226-
- Get answers to [common questions](faq-general.yml) about connecting your GCP project.
252+
- Get answers to [common questions](faq-general.yml) about connecting your GCP project.

0 commit comments

Comments
 (0)