5Supporting compliance requirements
- 5.1Regulatory requirements and the shared responsibility model
Understand determining technical needs for compute/data/network/storage, evaluating the shared responsibility model, identifying the Google Cloud environment in scope for regulatory compliance, and mapping compliance requirements to Google Cloud services and security controls (network/access segmentation, audit-log coverage).
- 5.2Compliance controls and regionalization
Understand configuring security controls that support compliance (Assured Workloads, organization policies, Access Transparency, Access Approval, regionalization of data and services) and implementing the mapping of compliance requirements to Google Cloud services/controls (network/access segmentation, audit-log coverage).

