Certifications and security for Gemini for Google Cloud

This document outlines the certifications and security-related features for Gemini for Google Cloud.

Certifications

The following table shows certifications for Gemini for Google Cloud:

Certification Compliant?
BSI C5:2020 Yes
CSA STAR Yes
FINMA Yes
HITRUST CSF Yes
ISO 27001, ISO 27017, ISO 27018, ISO 27701 Yes
ISO 42001 Yes
Multi-tiered Cloud Computing Security Management System (MTCS) Yes
OSPAR Yes
PCI 3D Secure (PCI 3DS) v1.0 Yes
PCI-DSS v4.0.1 Yes
SOC1 Yes
SOC2 Yes
SOC3 Yes

Security features

The following table shows the security-related features for Gemini for Google Cloud:

Security feature Supported?
VPC Service Controls (for Gemini Code Assist in VS Code, JetBrains IDEs, and Cloud Workstations) Yes
Access Transparency (for Gemini Code Assist and Gemini Cloud Assist) Yes
Customer-managed encryption keys (CMEK) (for Gemini Code Assist and Gemini Cloud Assist) Yes
Data residency at rest (for Gemini Code Assist and Gemini Cloud Assist) Yes

Gemini Cloud Assist Investigations

The Gemini Cloud Assist Investigations feature creates an investigation resource, which includes within it annotations and observations. This information can be stored in any Google Cloud data center. Additionally, the feature does not support using VPC Service Controls, Access Transparency, or customer-managed encryption keys on an investigation resource.

What's next