Skip to main content

Curated Rule pack details

  • May 5, 2025
  • 2 replies
  • 25 views

Forum|alt.badge.img+1

Can you please list of curated packs that would be available based on type of chronicle secops subscription. Like 

Enterprise contains only few curated packs versus enterprise plus would have more packs. Need pack names.

 

Thanks you.

2 replies

a_aleinikov
Forum|alt.badge.img+4
  • Bronze 1
  • May 6, 2025

Hi @ganeshsunkari ,

Here’s a general list:

  • Chronicle Enterprise:
    Includes core curated rule packs like MITRE ATT&CK, basic threat detection, and compliance-focused packs.

  • Chronicle Enterprise Plus:
    Includes everything in Enterprise plus additional curated packs such as:

    • VirusTotal Intelligence

    • GCTI feeds (SPUR, Remote Access Tools, Relationships)

    • Advanced threat detection

    • Customizable detection packs

    • Industry-specific packs (for finance, healthcare, etc.)

For the exact and up-to-date list, I recommend contacting your Google Cloud account rep or checking the official Chronicle documentation portal.


a_aleinikov
Forum|alt.badge.img+4
  • Bronze 1
  • May 6, 2025

Hi @ganeshsunkari ,

Here’s a general list:

  • Chronicle Enterprise:
    Includes core curated rule packs like MITRE ATT&CK, basic threat detection, and compliance-focused packs.

  • Chronicle Enterprise Plus:
    Includes everything in Enterprise plus additional curated packs such as:

    • VirusTotal Intelligence

    • GCTI feeds (SPUR, Remote Access Tools, Relationships)

    • Advanced threat detection

    • Customizable detection packs

    • Industry-specific packs (for finance, healthcare, etc.)

For the exact and up-to-date list, I recommend contacting your Google Cloud account rep or checking the official Chronicle documentation portal.