Hello Folks, I am running a google secops POC, so till now i have installed bindplane agent on Windows endpoints and connected their feed to google secops. The issue im facing is that im unable to collect the correct telemetry and also unable to collect the powershell telemetry data. I have these logs forwarded to google secops SIEM, but im unable to create a CASE which is basically SOAR. Ive tried using the chronicle connector but unable to push these alerts to soar and create a case.
If possible please help me out to the earliest.
Thank you
Question
Google secops Integration setup
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.
