Google Security Command Center (SCC)
Prerequisites
Completing this setup requires certain Google Cloud Platform (GCP) IAM roles.
- Security Center Admin Viewer: This role grants access to the Security Command Center dashboard.
- Security Center Admin: This role allows the user to enable Security Command Center API notifications.
- Organization Administrator: This role allows the user to grant appropriate roles to the notifications service account or GCP tool account.
Creating the SCC Service Connector
- In ActiveEye, in the left pane, click Admin, and then click Service Connectors.
The Service Connectors page appears.

- In the upper-left corner of the page, click Add Connector.
A list of service connectors appears.

- Scroll down to the SECURITY MANAGEMENT section, and then, in the Google Cloud Security Command Center subsection, click the Add Connection button.
The Add Connector Account page appears. - In the Display Name box, enter a unique name.
- Optionally, modify the priority level in the Priority box. Raising or lowering the priority will increase or decrease the visibility of alerts related to this service connector.
- If you do not want data ingestion to begin immediately once cloud accounts have been configured, clear the Enable Account checkbox. Otherwise, leave the checkbox selected.
- Click Add.
The Google SCC service connector is created, and the page is refreshed. - Copy the values in the Event Ingestion URL (Read Only) and Event Ingestion Token (Read Only) boxes. You will use these values in a subsequent procedure.
GCP Configuration
Enabling API
Follow these steps to enable an API for a project using the console.
- Click this link to access the GCP API Library.
- From the projects list, select the project in which you want to enable this API.
- In the Search for APIs & Services box, enter Security Command Center API, and then press Enter.
Search results appear. - In the search results, select Security Command Center API.
The Product details page appears. - Click Enable.