Skip to main content

If I attempt to integrate a custom IOC threat feed from a private closed source, are those indicators kept inside my own tenant or are they used with all customers/instances of secops?

Your data is kept inside your tenant and not shared.  SecOps data is processed following the standards here: https://cloud.google.com/terms/data-processing-addendum


Reply