| 1.1 · Enterprise identities |
01 IAM, Service Accounts and Data Security, 08 Enterprise Identity and Privilege Boundaries |
| 1.2 · Service identities |
01 IAM, Service Accounts and Data Security, 08 Enterprise Identity and Privilege Boundaries |
| 1.3 · Authentication |
08 Enterprise Identity and Privilege Boundaries |
| 1.4 · Authorization |
01 IAM, Service Accounts and Data Security, 08 Enterprise Identity and Privilege Boundaries |
| 1.5 · Hierarchy and policy |
08 Enterprise Identity and Privilege Boundaries |
| 2.1 · Network defenses |
02 VPCs, Subnets and Private Access, 03 Load Balancing, Hybrid Connectivity and DNS, 09 Service Perimeters, Key Control and Data Protection |
| 2.2 · Private boundaries |
09 Service Perimeters, Key Control and Data Protection |
| 2.3 · Private connectivity |
02 VPCs, Subnets and Private Access, 03 Load Balancing, Hybrid Connectivity and DNS, 09 Service Perimeters, Key Control and Data Protection |
| 3.1 · Sensitive data |
04 Governance, Sharing and AI-Ready Data, 09 Service Perimeters, Key Control and Data Protection |
| 3.2 · Encryption |
09 Service Perimeters, Key Control and Data Protection |
| 3.3 · AI security |
05 AI Platforms, Agents and Responsible Architecture, 09 Service Perimeters, Key Control and Data Protection |
| 4.1 · Secure workloads and delivery |
06 Secure Build, Release and Platform Automation, 10 Detection, Incident Evidence and Compliance |
| 4.2 · Monitoring and detection |
07 Telemetry, Incident Diagnosis and FinOps, 10 Detection, Incident Evidence and Compliance |
| 5.1 · Compliance |
10 Detection, Incident Evidence and Compliance |