Skip to main content
Question

How to Onboard data Streamed to GCP cloud storage, can transformed and sent into SecOps?

  • February 19, 2025
  • 4 replies
  • 35 views

AlbakerPearson
Forum|alt.badge.img+1

I am trying to work out how to get Akamai Log Stream of events into SecOps and have some option to Filter out events along the way.
Akamai have provided a recipe to get to GCP Cloud Storage, but not one to get the SecOps.
I see many other of the big names.
Does anyone have any hints on options.

<URL Removed by Staff>

4 replies

kentphelps
Staff
Forum|alt.badge.img+11
  • Staff
  • February 20, 2025

AlbakerPearson
Forum|alt.badge.img+1
  • Author
  • New Member
  • February 25, 2025

There are a couple of docs that discuss ingestion of Akamai:

And this doc discusses how to set up feeds from GCS:
https://cloud.google.com/chronicle/docs/administration/feed-management


Thank you for the reply I was hoping someone had tried it and engineered it as a direct feed. I have got it working using a AKAMAI -> AWS S3 -> SecOps, but found it expensive to operate. So I was hoping to go direct and tune out unwanted data from AKAMAI events sent AKAMAI -> SecOps.


PJ06
  • New Member
  • September 15, 2025

@AlbakerPearson Did you find any solution to bring Akamai logs directly to Sec Ops? I am currently working on the same and the option i am going with is using Cloud Run calling an Akamai SIEM API and run it on scheduled. I will let you know if this works.


Forum|alt.badge.img+1
  • New Member
  • November 20, 2025

Hello I can see that docs is now recommending a Bindplane architecture, do you think that previous method with Datastream and Cloud Storage still work?