최신 버전의 Vertex AI 컨테이너 및 VM 이미지 사용: Vertex AI는 사전 빌드된 컨테이너 및 VM 이미지를 제공하여 서비스 사용을 간소화합니다. 취약점이 식별되면 Google에서 이러한 이미지의 새 버전을 만들어야 합니다. 개발자는 최신 버전을 사용하도록 서비스를 올바르게 구성하거나 최신 버전으로 수동으로 업그레이드해야 합니다.
[[["이해하기 쉬움","easyToUnderstand","thumb-up"],["문제가 해결됨","solvedMyProblem","thumb-up"],["기타","otherUp","thumb-up"]],[["이해하기 어려움","hardToUnderstand","thumb-down"],["잘못된 정보 또는 샘플 코드","incorrectInformationOrSampleCode","thumb-down"],["필요한 정보/샘플이 없음","missingTheInformationSamplesINeed","thumb-down"],["번역 문제","translationIssue","thumb-down"],["기타","otherDown","thumb-down"]],["최종 업데이트: 2025-09-04(UTC)"],[],[],null,["# Vertex AI shared responsibility\n\nSecurity is a shared responsibility. Vertex AI secures the scalable\ninfrastructure that you use to build, train, and deploy your own models and\nprovides you tools and security controls to protect your data, code, and models.\n\nGoogle's security and compliance responsibilities in providing\nVertex AI include the following:\n\n- **Protect the infrastructure**: Google is responsible for providing secure\n infrastructure for its services, including physical security of data centers,\n network security, and application security. This includes compliance with\n applicable industry standards and regulations.\n\n- **Secure the platform**: Google is responsible for securing its platform,\n including managing access controls, monitoring for security incidents, and\n responding to security events. Google also provides customers with tools to\n manage their own security settings and configurations.\n\n- **Maintain compliance**: Google maintains compliance with relevant data\n protection laws and regulations.\n\n - Learn more about [Google Cloud compliance](/compliance).\n\nThe customer's security responsibilities include the following:\n\n- **Use the latest versions of Vertex AI Containers and VM Images**:\n Vertex AI provides prebuilt containers and VM images to simplify the\n use of its services. Google is responsible for creating new versions of these\n images as vulnerabilities are identified. You are responsible for ensuring\n that you properly configured your services to use the latest version, or to\n manually upgrade to the latest version.\n\n - Learn more about the [Vertex AI framework support policy](/vertex-ai/docs/framework-support-policy).\n- **Manage access controls**: You are responsible for managing access\n controls to your own data and services. This includes managing user access,\n authentication, and authorization controls, and securing your own\n applications and data.\n\n - Learn more about [Vertex AI access control with IAM](/vertex-ai/docs/general/access-control).\n- **Secure applications**: You are responsible for securing your own\n applications running on the Vertex AI platform, including\n implementing secure coding practices and regularly testing for\n vulnerabilities.\n\n - Learn more about [Customer-managed encryption keys](/vertex-ai/docs/general/cmek).\n\n - Learn more about [networks](/vertex-ai/docs/general/vpc-peering) and [VPC Service Controls](/vertex-ai/docs/general/vpc-service-controls).\n\n- **Monitor for security incidents**: You are responsible for monitoring\n your own applications for security incidents, and reporting any\n incidents to Google as necessary.\n\n - Learn more about [Monitoring](/vertex-ai/docs/general/monitoring-metrics) and [Audit logging](/vertex-ai/docs/general/audit-logging).\n- **Comply with applicable laws and regulations for your use cases**: You're the\n expert in the security and regulatory requirements for your business and how\n they apply to your use of Vertex AI.\n\nWhat's next\n-----------\n\n- Learn more about [Shared responsibilities on Google Cloud](/architecture/framework/security/shared-responsibility-shared-fate)."]]