#GOOGLE BEYONDCORP ZERO TRUST SOFTWARE#
By using and developing open-source software and integrating it with internal solutions, we reach a level of flexibility that allows us to manage fleets at scale without sacrificing customizability for our users. We scale the engineering teams who manage these devices by relying on reviewable, repeatable, and automated backend processes and minimizing GUI-based configuration tools. Google manages a fleet of several hundred thousand client devices (workstations, laptops, mobile devices) for employees who are spread across the world. Where possible, our platforms use native OS capabilities to protect against malicious software, and we extend those capabilities across our platforms with custom and commercial tooling. This allows us to determine divergence from the expected state and verify whether it is an anomaly. Independently, we observe the state of our hardware and software. We use automated configuration management systems to continuously enforce our security and compliance policies. To uphold this defensive position at scale, we centrally manage and measure various qualities of our devices, covering all layers of the platform