GCP Policy Intelligence Capability Group

All Mappings

Capability ID Capability Description Category Value ATT&CK ID ATT&CK Name
policy_intelligence Policy Intelligence protect partial T1087.004 Cloud Account
policy_intelligence Policy Intelligence protect minimal T1580 Cloud Infrastructure Discovery
policy_intelligence Policy Intelligence protect partial T1530 Data from Cloud Storage Object
policy_intelligence Policy Intelligence detect minimal T1530 Data from Cloud Storage Object
policy_intelligence Policy Intelligence protect partial T1538 Cloud Service Dashboard
policy_intelligence Policy Intelligence protect partial T1578 Modify Cloud Compute Infrastructure
policy_intelligence Policy Intelligence protect partial T1548.002 Bypass User Account Control
policy_intelligence Policy Intelligence protect partial T1068 Exploitation for Privilege Escalation
policy_intelligence Policy Intelligence protect partial T1562 Impair Defenses
policy_intelligence Policy Intelligence protect partial T1078.004 Cloud Accounts
policy_intelligence Policy Intelligence detect minimal T1078.004 Cloud Accounts
policy_intelligence Policy Intelligence detect minimal T1562.008 Disable Cloud Logs
policy_intelligence Policy Intelligence protect partial T1212 Exploitation for Credential Access
policy_intelligence Policy Intelligence protect partial T1078 Valid Accounts
policy_intelligence Policy Intelligence protect partial T1087 Account Discovery
policy_intelligence Policy Intelligence protect partial T1098.001 Additional Cloud Credentials
policy_intelligence Policy Intelligence protect partial T1098 Account Manipulation
policy_intelligence Policy Intelligence protect partial T1222 File and Directory Permissions Modification

Capabilities

Capability ID Capability Name Number of Mappings
policy_intelligence Policy Intelligence 18