I feel like the gke-gcloud-auth-plugin cloud do something very similar.
[1]: https://github.com/GoogleCloudPlatform/cloudsql-proxy
[2]: https://github.com/GoogleCloudPlatform/cloud-sql-jdbc-socket...
Managed VPN services have their own costs and worries. Don't want to accidentally pay for tunneled Netflix or YouTube? More configuration and maintenance.
What kind of attacks from the Internet need to be worried about here? Basically just zero-days? But that's true for any bastion or VPN as well, and again, Google is managing the control plane so they're empowered to roll out the patch faster than a small customer could.
If there aren't any DNS entries pointing to my bastion host(s), then I'd find it unlikely that a DDoS would ever specifically be directed to them. Pretty easy to recreate them in another region, and/or put them behind something like Cloudflare.