Skip to main content
Hi Team,
I need to ingest SOAR audit logs into our SecOps SIEM and would appreciate your guidance on the process. If we are already ingesting these logs, could you please provide the steps or documentation on how it is done?

I have reviewed the relevant documentation but was unable to complete the process successfully.
https://cloud.google.com/chronicle/docs/soar/investigate/collecting-soar-logs

Thanks,

Manoj

Hi manoj610,


Which steps are you having issues with? You might validate that you have the correct GCP project selected when walking through the steps.


This offering is not GA yet. You would need to work with your account team to have this enabled.


Thank you for your response.


Reply