GCP Security Hardening & Logs
Budget: ₹750 – ₹1,250 INR
I run my workload on a single Compute Engine instance and I’m urgently looking to tighten security after a recent unauthorized-access event. The immediate priorities are:
• Lock down the instance: review and update firewall rules, service accounts, IAM roles, OS-level settings, and any exposed ports. I expect clear recommendations (e.g., Cloud Armor policies, VPC Firewall tweaks, OS patching) and implementation where feasible.
• Trace the breach: pull the relevant Cloud Logging records, VPC flow logs, and any SSH / RDP audit data to build a timeline showing when the intrusion occurred, the source IPs, and actions performed. Deliver the raw export plus a concise report so I can hand it to management.
• Prevent recurrence: enable or improve ongoing monitoring—Security Command Center, Cloud Monitoring alerts, multi-factor authentication, key rotation—so I’ll be notified instantly if another attempt happens.
Turnaround is ASAP. I’ll grant temporary IAM access and expect an actionable checklist, the exported logs in JSON or CSV, and a short write-up of changes made and next steps. Let me know your availability; I’m ready to start immediately.
• Lock down the instance: review and update firewall rules, service accounts, IAM roles, OS-level settings, and any exposed ports. I expect clear recommendations (e.g., Cloud Armor policies, VPC Firewall tweaks, OS patching) and implementation where feasible.
• Trace the breach: pull the relevant Cloud Logging records, VPC flow logs, and any SSH / RDP audit data to build a timeline showing when the intrusion occurred, the source IPs, and actions performed. Deliver the raw export plus a concise report so I can hand it to management.
• Prevent recurrence: enable or improve ongoing monitoring—Security Command Center, Cloud Monitoring alerts, multi-factor authentication, key rotation—so I’ll be notified instantly if another attempt happens.
Turnaround is ASAP. I’ll grant temporary IAM access and expect an actionable checklist, the exported logs in JSON or CSV, and a short write-up of changes made and next steps. Let me know your availability; I’m ready to start immediately.