How to use BigQuery Data Exfiltration

preview_player
Показать описание

Security Command Center can help enterprises keep their data safe against unauthorized access and data exfiltration. In this episode of Getting Started with Security Command Center, we show you how to set up and use the BigQuery Data Exfiltration detector - an Event Threat Detection module that alerts you when an unauthorized actor tries to access your data. Watch to learn how to use BigQuery Data Exfiltration, VPC Service Controls, and respond to an SCC finding from it.

Timestamps:
0:00 - Intro
0:47 - BigQuery Exfiltration finding
1:17 - Malicious actor attempt pt. 1
1:56 - ETD finding exploration: BigQuery Data Exfiltration
2:34 - Set up a VPC Service Perimeter
3:25 - Malicious actor attempt pt. 2
3:40 - ETD finding exploration: VPC violation

Getting Started with Security Command Center Playlist

#GettingStartedwithSecurityCommandCenter

Product: Security Command Center, Data Loss Prevention; fullname: Stephanie Wong;
Рекомендации по теме
Комментарии
Автор

Hi Stephanie. Is the same exfiltration control exist for GCS?
Because, if the financial data are exported to GCS inside the same ORG, and then exfiltrated by a simple gsutil copy, the bad actor is still under the radar, right?

guillaumeblaquiere