Home > Data Protection > Data Protection (general) > DDVE In-cloud Retention Lock Compliance: Best Practices to Secure In-cloud Deployments > GCP-specific
Follow the deployment guidelines described in the Installation and Administrator guide for Google Cloud. Deployment scripts can be developed in Bison. There is currently no deployment script available for APEX Protection Storage deployments on Google Cloud.
The Security Command Center is Google Cloud's centralized vulnerability and threat reporting service. Policies can be defined and assigned to APEX Protection Cloud resources running on GCP.
GCP Cloud Armor provides the ability to define security policies dedicated to blocking traffic before it reaches your load-balanced backend services or backend buckets. Each security policy is made up of a set of rules that filter traffic based on a series of conditions, including incoming request IP address, IP range, region code, or request headers.