Skip to content

Commit d5b58b1

Browse files
authored
Refine CMEK description for Datastream streams
Updated the description for CMEK in Datastream streams to remove redundant information.
1 parent e4d5fc8 commit d5b58b1

1 file changed

Lines changed: 1 addition & 1 deletion

File tree

articles/defender-for-cloud/recommendations-reference-data.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -789,7 +789,7 @@ Configure a private endpoint connection to enable access to traffic coming only
789789

790790
### Customer-managed encryption keys should be enabled for Datastream streams
791791

792-
**Description**: Defender for Cloud identified Datastream streams that are not using Customer-Managed Encryption Keys (CMEK). This assessment evaluates whether your Datastream streams have CMEK enabled, a control that allows direct key rotation and access policy management. Without CMEK, the automatic encryption provided by Google Cloud may not meet the stringent requirements for sensitive data, leaving your workload more exposed to potential key compromise or unauthorized access. Learn more: https://cloud.google.com/datastream/docs/cmek
792+
**Description**: Defender for Cloud identified Datastream streams that are not using Customer-Managed Encryption Keys (CMEK). This assessment evaluates whether your Datastream streams have CMEK enabled, a control that allows direct key rotation and access policy management. Without CMEK, the automatic encryption provided by Google Cloud may not meet the stringent requirements for sensitive data, leaving your workload more exposed to potential key compromise or unauthorized access. Learn more: https://cloud.google.com/datastream/docs
793793

794794
**Severity**: Low
795795

0 commit comments

Comments
 (0)