Skip to main content
Solved

Ingesting SOAR Audit Logs to SecOps SIEM

  • November 15, 2024
  • 3 replies
  • 57 views

manoj610
Forum|alt.badge.img+4
Hi Team,
I need to ingest SOAR audit logs into our SecOps SIEM and would appreciate your guidance on the process. If we are already ingesting these logs, could you please provide the steps or documentation on how it is done?

I have reviewed the relevant documentation but was unable to complete the process successfully.
https://cloud.google.com/chronicle/docs/soar/investigate/collecting-soar-logs

Thanks,

Manoj

Best answer by cmorris

This offering is not GA yet. You would need to work with your account team to have this enabled.

3 replies

Ben_T
Staff
Forum|alt.badge.img+4
  • Staff
  • November 15, 2024

Hi manoj610,

Which steps are you having issues with? You might validate that you have the correct GCP project selected when walking through the steps.


cmorris
Staff
Forum|alt.badge.img+10
  • Staff
  • Answer
  • November 15, 2024

This offering is not GA yet. You would need to work with your account team to have this enabled.


manoj610
Forum|alt.badge.img+4
  • Author
  • New Member
  • November 17, 2024

Thank you for your response.