Skip to main content
Solved

Mandiant Alerts Into Secops

  • January 8, 2025
  • 2 replies
  • 39 views

SkyZen
Forum|alt.badge.img+1

Hello,

Is it possible to get mandiant, digital threat monitoring alerts into google secops? I have been trying to leverage the api with the following website: https://gtidocs.virustotal.com/reference/get-alerts

I am trying to find a more streamlined way to get these alerts live in secops that does not involve a script.

Thanks.

Best answer by vincelec

If you are using Secops can I recommend you to ingest your alerts directly in the SOAR module by using the DTM integration? https://cloud.google.com/chronicle/docs/soar/marketplace-integrations/mandiant-dtm#mandiant_dtm_alerts_connector

2 replies

vincelec
Staff
Forum|alt.badge.img+1
  • Staff
  • Answer
  • January 9, 2025

If you are using Secops can I recommend you to ingest your alerts directly in the SOAR module by using the DTM integration? https://cloud.google.com/chronicle/docs/soar/marketplace-integrations/mandiant-dtm#mandiant_dtm_alerts_connector


SkyZen
Forum|alt.badge.img+1
  • Author
  • New Member
  • January 9, 2025

If you are using Secops can I recommend you to ingest your alerts directly in the SOAR module by using the DTM integration? https://cloud.google.com/chronicle/docs/soar/marketplace-integrations/mandiant-dtm#mandiant_dtm_alerts_connector


Thank you so much for pointing me in the right direction! This is exactly what I am looking for.