GCP cloud_data_loss_prevention Mappings

Cloud DLP provides tools to classify, mask, tokenize, and transform sensitive elements to help you better manage the data that you collect, store, or use for business or analytics.

Mappings

Capability ID Capability Description Category Value ATT&CK ID ATT&CK Name Notes
cloud_data_loss_prevention Cloud Data Loss Prevention protect partial T1530 Data from Cloud Storage Object
Comments
This control is able to scan cloud storage objects for sensitive data and transform that data into a secure or nonsensitive form. It is able to scan for a variety of common sensitive data types, such as API keys, credentials, or credit card numbers. This control is able to be scheduled daily, weekly, etc and can scan new changes to data. This control is able to scan Google Cloud Storage, BigQuery tables, and Datastore.
References