Skip to main content

Chronicle SIEM is the foundation of your SecOps platform. SIEM will aggregate incoming data in the form of logs, alerts, and raw data, enrich it with additional context, normalize it, and then index it for rapid search. 

This provides the platform for security event correlation which can then be enhanced through various Google threat-intelligence feeds, security tools, and SecOps SOAR which provides simple orchestration and automation for security response in the form of customizable playbooks.

The first step in adopting your Google SecOps platform is this onboarding journey.

Journey

110598i4E8D65E459FAEFCE.png

Actions

In the SecOps SIEM Journey you will navigate through four main tasks of implementation:

  1. Onboarding
  2. Data Ingest
  3. Rules
  4. Custom Dashboards

 

Next Steps: Security Operations SIEM: Step 1 - OnBoarding

Be the first to reply!

Reply