Google GCP | Dropzone AI Documentation

Integration Overview

To enable these integrations you will perform the following actions:

Determine Dropzone Visibilty Scope

Dropzone requires some IAM access to query your GCP environment.

You will later be granting the Dropzone service account access to a portion of your GCP environment, at either a folder level or for the whole organization.

For example, in the screenshot below, if you were to grant access via the production folder then Dropzone would have access to the Project FreezeRay project, and any other folders or projects you add to production in the future. However, it would not be available to alligator-apples. If you grant access via the top level org, example.net then it would apply to all folders and projects going forward.

Resource Selection

When enabling the integration you will be supplying the ID of the top level folder or organization, and Dropzone will recurse through all objects thereunder when making Data Source queries.

When you've chosen your folder or org, record the ID value for use later in the Dropzone UI where it is called "Parent Resource."

Identify your service account email address

To obtain the email address of your Dropzone service account, do the following:

Integrations Dropdown

Click Available

The GCP Tile

SERVICE ACCOUNT EMAIL

Grant GCP Access to Dropzone Service Account

Project Dropdown

Resource Selection

IAM & Admin Menu

Input the email address from the Dropzone UI Service Account Email

Role Name Purpose Used By
Security Center Admin Viewer View GCP entity details and configurations Alert Source Integration
Browser View GCP resources Data Source Integration
Cloud Asset Viewer View cloud assets Data Source Integration
Compute Viewer View compute resources Data Source Integration
Folder Viewer View folders Data Source Integration
Logs Viewer View GCP logs Data Source Integration
Organization Role Viewer* View organization roles Data Source Integration
Organization Viewer* View organization resources Data Source Integration
Private Logs Viewer View private logs Data Source Integration
Security Reviewer Review security configurations Data Source Integration
Storage Object Viewer View storage objects Data Source Integration
Tag Viewer View tags Data Source Integration

Add another role

Enable GCP

The Data source integration allows Dropzone AI to interact with your GCP environment to gather information for use in investigation analysis and interactive chat.

You'll need the following information:

To enable the Data Source integration, do the following:

Integrations Dropdown

Click Available

The GCP Tile

The GCP Data Source configuration

If you have any errors engage your Dropzone AI support representative.