Security Command Center를 사용하면 Google Cloud 및 기타 클라우드 제공업체 전반에서 보안 위험을 예방, 감지, 대응할 수 있습니다. Security Command Center를 사용 설정하면 Google Cloud 콘솔을 사용하여 Compute Engine 리소스에 영향을 미치는 우선순위가 가장 높은 보안 위험을 확인할 수 있습니다.
이 문서에서는 Security Command Center를 활성화하고 Compute Engine 리소스에 제공하는 대시보드를 보는 방법을 설명합니다.
Security Command Center 활성화
Security Command Center로 Compute Engine 리소스를 분석하려면 Security Command Center를 활성화해야 합니다.
이 섹션에서는 Security Command Center에서 제공하는 서비스 등급과 프로젝트에서 표준 또는 프리미엄 등급을 활성화하는 방법을 설명합니다.
서비스 등급
Security Command Center를 활성화할 때 활성화할 서비스 등급을 선택합니다.
Standard. 위험 및 구성 오류에 대한 기본 스캔을 사용 설정합니다. Google Cloud 리소스에 적용됩니다.
프리미엄 위험, 취약점, 구성 오류에 대한 향상된 스캔은 물론 보안 상황 관리, 공격 경로, 위협 감지, 규정 준수 모니터링을 제공합니다. Google Cloud 리소스에 적용됩니다.
엔터프라이즈 자동화된 케이스 관리 및 해결 플레이북을 비롯한 완전한 클라우드 네이티브 애플리케이션 보호 플랫폼(CNAPP) 솔루션을 제공합니다. Google Cloud 리소스와 다른 클라우드 제공업체에서 호스팅하는 리소스에 적용됩니다.
[[["이해하기 쉬움","easyToUnderstand","thumb-up"],["문제가 해결됨","solvedMyProblem","thumb-up"],["기타","otherUp","thumb-up"]],[["이해하기 어려움","hardToUnderstand","thumb-down"],["잘못된 정보 또는 샘플 코드","incorrectInformationOrSampleCode","thumb-down"],["필요한 정보/샘플이 없음","missingTheInformationSamplesINeed","thumb-down"],["번역 문제","translationIssue","thumb-down"],["기타","otherDown","thumb-down"]],["최종 업데이트: 2025-09-03(UTC)"],[],[],null,["# Monitor security risks with Security Command Center\n\n[Security Command Center](/security-command-center/docs/security-command-center-overview)\nhelps you prevent, detect, and respond to security risks across Google Cloud and other cloud\nproviders. When you enable Security Command Center, you can use the Google Cloud console to view the\nhighest-priority security risks that affect your\nCompute Engine resources.\n\n\nThis document explains how to activate Security Command Center and view the dashboard that it\nprovides for your Compute Engine resources.\n\nActivate Security Command Center\n--------------------------------\n\n\nTo analyze your Compute Engine resources with Security Command Center, you must\n[activate Security Command Center](/security-command-center/docs/activate-scc-overview).\nThis section explains the service tiers that Security Command Center offers and explains how to\nactivate the Standard or Premium tier in your project.\n\n### Service tiers\n\n\nWhen you activate Security Command Center, you choose which\n[service tier](/security-command-center/docs/service-tiers) to activate:\n\n- **Standard**. Enables basic scanning for risks and misconfigurations. Applies to your Google Cloud resources.\n- **Premium**. Provides enhanced scanning for risks, vulnerabilities, and misconfigurations, as well as security posture management, attack paths, threat detection, and compliance monitoring. Applies to your Google Cloud resources.\n- **Enterprise**. Offers a complete cloud-native application protection platform (CNAPP) solution, including automated case management and remediation playbooks. Applies to your Google Cloud resources, as well as resources hosted by other cloud providers.\n\n\nYou can use the Standard tier at no additional charge. To learn about pricing for the Premium\nand Enterprise tiers, see [Security Command Center\npricing](/security-command-center/pricing).\n| **Note** : This page explains how to activate the Standard or Premium service tier for your project. Some Security Command Center features require you to [activate the Enterprise\n| tier](/security-command-center/docs/activate-enterprise-tier) or [activate the Standard\n| or Premium tier](/security-command-center/docs/activate-scc-for-an-organization) for your entire organization.\n\n### Activate Security Command Center in your project\n\n\nTo activate the Security Command Center Standard or Premium tier in your project, do the following:\n\n1. In the Google Cloud console, go to **Compute Engine Overview**.\n\n [Go to Compute Engine Overview](https://console.cloud.google.com/projectselector2/compute/overview?supportedpurview=project)\n2.\n Look for a pane titled **Sample security findings**.\n\n\n This pane shows examples of the types of security findings that you might see after you\n enable Security Command Center. These examples don't represent actual security issues in your\n project.\n\n\n If you see a pane titled **Top security findings**, then\n Security Command Center is already activated. You can skip the remaining steps.\n3. In the **Sample security findings** pane, click **Turn on security scanning for\n free**. The activation pane opens.\n4. Optional: To choose a different service tier, find the service tier that you want to enable, and then click **Select** for that tier.\n5. Click **Enable**.\n\n\nAfter you activate Security Command Center, it starts to analyze, or scan, your resources for\nCompute Engine and other Google Cloud services. This initial scan is\n[usually\ncomplete within minutes or hours](/security-command-center/docs/concepts-scan-latency-overview#scan_latency).\n\nReview high-priority security risks\n-----------------------------------\n\n\nAfter Security Command Center\n[completes\nan initial scan](/security-command-center/docs/concepts-scan-latency-overview#scan_latency) of your Compute Engine resources, you can review high-priority\n*findings* for your resources in the Google Cloud console. Each finding represents a\nsecurity risk.\n\n\nTo review high-priority findings for your Compute Engine resources, do the following:\n\n1.\n In the Google Cloud console, go to **Compute Engine Overview**.\n\n [Go to Compute Engine Overview](https://console.cloud.google.com/projectselector2/compute/overview?supportedpurview=project)\n2.\n Find the **Top security findings** pane. This pane lists the most important types of\n findings that affect your Compute Engine resources.\n\n - To view the high-priority findings in each category, click the name of the category.\n - To view all of your findings, click arrow_forward **View all findings**.\n\nGet an overview of other risks\n------------------------------\n\n\nIn addition to an [overview of high-priority risks](#high-priority-risks), you can\nuse the Google Cloud console to view other types of security risks that affect your\nCompute Engine resources.\n\n\nTo get an overview of these additional risks, in the Google Cloud console, go to\n**Security Risk Overview**.\n\n[Go to Security Risk Overview](https://console.cloud.google.com/projectselector2/compute/security?supportedpurview=project)\n\n\nThis page shows the following information:\n\nTop security findings\n\n:\n This table lists the most important types of findings that affect your Compute Engine resources.\n\nAll vulnerability findings over time\n\n:\n This chart shows the total number of Security Command Center findings over time for your Compute Engine instances. Findings are categorized by severity.\n\n\n To change the date range, click the list, and then select a new value.\n\nTop CVE findings on your virtual machines\n\n:\n This heatmap shows the number of Common Vulnerabilities and Exposures (CVEs) that affect your Compute Engine instances, grouped by the potential impact and exploitability of each CVE.\n\nTop CVE findings\n\n:\n This table lists the most severe CVEs that affect your Compute Engine instances, including the exploitability and impact of each CVE.\n\nBoost your security knowledge\n\n:\n This pane provides links to more information about Security Command Center and strategies for mitigating vulnerabilities.\n\n\nTo get more details, click the links in each pane.\n\nWhat's next\n-----------\n\n- [Security Command Center\n overview](/security-command-center/docs/security-command-center-overview)\n- [Security Command Center service tiers](/security-command-center/docs/service-tiers)\n- [Security Command Center pricing](/security-command-center/pricing)"]]