Managing operations1 / 5
In Security Command Center, after remediating a threat finding, what happens to the finding's state?
CorrectIncorrect
Alex
After remediation, SCC threat findings remain ACTIVE until you manually set them to INACTIVE. Unlike vulnerability findings (which auto-resolve when the misconfiguration is fixed), threats are dynamic and SCC cannot verify full remediation. The docs state: 'Security Command Center does not automatically set the state of the finding to INACTIVE.' Why not other options? 'RESOLVED' is not a valid SCC finding state. Auto-INACTIVE only applies to vulnerability/misconfiguration findings from Security Health Analytics. Auto-delete after 30 days is fabricated — findings persist indefinitely. Ref: docs.cloud.google.com/security-command-center/docs/finding-states
Sourcecloud.google.com
Follow-up answers are available in the app. Create a free account — no credit card required.
Question 1 of 5
Create a free account