Skip to main content


hi, maybe someone know if exist some tool / terraform provider / other solution which allow configure whole chronicle as a code instead of clickops?


If you are talking about SIEM, We are experimenting with Detection as Code. We are using the
https://cloud.google.com/chronicle/docs/reference/detection-engine-api
in github action to go through end-to-end deployment of a rule lifecycle. We will work harder over the next quarter on this and hopefully open source with the detections.



Hello !


Maybe the GitSync integration for Chronicle SOAR ?


You may wish to check out this Terraform provider which has just been open sourced by Form3tech

https://github.com/form3tech-oss/terraform-provider-chronicle


Reply