First

How should I secure my Google Kubernetes Engine endpoints?

Istio

Istio "tries to provide a comprehensive security solution to solve [the following] issues:
• "To defend against the man-in-the-middle attack, traffic encryption.
• "To provide flexible service access control, mutual TLS and fine-grained access policies.
• "To audit who did what at what time, auditing tools."