Skip to main content
Question

Is there any secure and effective way to implement OAuth authentication with refresh token logic in Google SecOps SOAR integrations?

  • November 12, 2025
  • 1 reply
  • 41 views

jaymin
Forum|alt.badge.img+6

Hi community,

I’m looking for best practices or supported mechanisms for handling OAuth token refresh securely within SecOps SOAR — especially for integrations where access tokens expire periodically. Does SecOps provide any native method, or do we need to manage the token lifecycle externally ?
 

1 reply

vaskenh
Staff
Forum|alt.badge.img+13
  • Staff
  • November 19, 2025

Hi ​@jaymin.  Are you using WIF (Workforce Identity Federation) to control access to SecOps, or some other implementation?  In WIF, there is a specific configuration value that controls the session duration and it’s the closest configuration item that I can think of here.  On the SecOps side of things this is not a configurable value.

 

https://docs.cloud.google.com/iam/docs/configuring-workforce-identity-federation