Skip to main content

Where to find API list for SIEM

  • November 19, 2024
  • 4 replies
  • 44 views

Forum|alt.badge.img+8

I am trying to find API list for SIEM but unable to get it.

I have SOAR Swagger API, but not able to find SIEM. Please let me know if anyone has any idea.

4 replies

mikewilusz
Staff
Forum|alt.badge.img+10
  • Staff
  • November 19, 2024

Details on the APIs available for the SIEM are here: https://cloud.google.com/chronicle/docs/reference/backstory-api-quotas

If you'd like to see an example of them implemented, I highly recommend the SecOps CLI: https://github.com/chronicle/cli

-mike


Ben_T
Staff
Forum|alt.badge.img+4
  • Staff
  • November 19, 2024

Forum|alt.badge.img+2
  • Bronze 1
  • November 22, 2024

Oh also take a look at https://cloud.google.com/chronicle/docs/reference/rest

It has a lot of API calls that are not in the normal ones that the google staff posted! GL!


danielforberg

But especially the payload for some of the rest endpoints does not work cause documentation is NOT correct. Where can the swagger be found, like for the soar api, it might be somewhere hidden?