QuestionQ16

Ensuring data protection

A company uses Google Kubernetes Engine (GKE) with container images for a mission-critical application. The company wants to scan these images for known security vulnerabilities and securely share the report with the security team without exposing it outside Google Cloud.

What should you do?

Explanation

Artifact Analysis provides automatic vulnerability scanning for container images in Artifact Registry. After automatic scanning is enabled, new images pushed to Artifact Registry are scanned and their vulnerability results can be viewed within Google Cloud. Container Threat Detection instead monitors runtime activity in containers for attacks; it is not the image-vulnerability scanning service.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!