Skip to main content
Solved

How to embed data source from chronicle SIEM to Google Looker.

  • June 13, 2024
  • 2 replies
  • 25 views

Forum|alt.badge.img+7

Hi All,

I wanted to know if we can embed chronicle SIEM data source to Google Looker so that it helps us to create dashboards and reports in chronicle SIEM.

Thanks,

Neha.H

Best answer by manthavish

See https://cloud.google.com/chronicle/docs/reports/overview-chronicle-bigquery 

Basically, Google SecOps exports some data (UDM events, entity graph, ingestion metrics, detections) to BQ and this can power Looker or other BI needs. 

2 replies

Forum|alt.badge.img+4
  • Staff
  • Answer
  • July 11, 2024

See https://cloud.google.com/chronicle/docs/reports/overview-chronicle-bigquery 

Basically, Google SecOps exports some data (UDM events, entity graph, ingestion metrics, detections) to BQ and this can power Looker or other BI needs. 


Forum|alt.badge.img+7
  • Author
  • Bronze 3
  • July 12, 2024

See https://cloud.google.com/chronicle/docs/reports/overview-chronicle-bigquery 

Basically, Google SecOps exports some data (UDM events, entity graph, ingestion metrics, detections) to BQ and this can power Looker or other BI needs. 


Hi @manthavish ,

Thank you for the update, i will refer the link provided by you.

Thanks,

Neha.H