Stay Informed
Recently active
To help you learn and develop your skills with Chronicle SIEM and SOAR, we invite you to join us for SecOps Community office hours! The first session is on December 15th at 10AM ET and will focus on Chronicle SOAR "user types." Register Today
Hi community!As you become more familiar with Chronicle SIEM and SOAR, we can see your desire to learn more.To give you an edge and help you learn, we have decided to offer you one more tool.It is with great pleasure that we announce the SecOps community office hours!Exactly how does it work?1. A date and topic will be posted here.2. You can register for the session and even submit questions regarding the topics we will discuss by clicking the link in the post.3. We will send you an invitation for a 30 minute session that will include a demonstration and time for questions.4. We will share the recording of the session with you if you are not able to attend.Do you like the idea? Here we go...We will host a Chronicle SOAR "User Types" office hour on December 15th at 10am ET.Don't miss out on this opportunity. Register now.https://forms.gle/FtC9zuKRxiaSahM16
Hello Cloud Security Champions,Coinciding with Google Cloud Next '22, Chronicle made some big news. We unveiled Chronicle Security Operations, a modern, cloud-born software suite that unifies SIEM, SOAR and threat intelligence to better enable cybersecurity teams to detect, investigate, and respond to threats with the speed, scale and intelligence of Google.Read all about this game-changing news and what it means for you here.SecOps Community SpotlightThis week we unveiled the community's updated brand and design, and we are inviting you to unpack it with us. Check out the new designs, Slack, LinkedIn and the free edition of Chronicle SOAR. Find out what's new, what you already know, and tell us what you think! Please ALSO allow us to take this moment to welcome you, old and new community members, to the Google Cloud SecOps community. We are excited to embark on this journey with you all and are eager to know what else we can offer.Chronicle SIEM UpdatesChronicle has been
At Google Cloud, we’re on a mission to accelerate security outcomes for every organization. Today, we are leveling up the analyst experience, and enabling faster security operations with our new search and investigative experience. What are we announcing? We are thrilled to announce the general availability of our new investigative and search experience as part of our Chronicle Security Operations suite. We are fulfilling our security-analyst first vision with a reimagined investigative experience, backed by improved search performance. With these new innovations in Chronicle Security Operations, customers can: Drive faster threat understanding with an interactive event results timeline that streams results as they are processed to quickly begin threat analysis Use enhanced context and operationalize relevant data for threat analysis with one-click filter-to-query conversion, and accelerate threat hunting Improve analyst experience with saved search and search histor
This post was originally sent by Tom Fridman Hi Community! Our marketplace now offers another integration developed by our community! Say "hi" to the brand-new Cybersixgill integration. Cybersixgill Actionable Alerts integration allows monitoring of activity in all Cybersixgill sources regarding key company assets and provides real-time alerts on incoming threats, to create dedicated playbooks. The latest edition includes the ability to consume alerts for MSSPs and multi-tenant organizations. View files in slack
Hello Cloud Security Champions, Coinciding with Google Cloud Next '22, Chronicle made some big news. We unveiled Chronicle Security Operations, a modern, cloud-born software suite that unifies SIEM, SOAR and threat intelligence to better enable cybersecurity teams to detect, investigate, and respond to threats with the speed, scale and intelligence of Google. Read all about this game-changing news and what it means for you here. SecOps Community Spotlight Last week we unveiled the community's updated brand and design, and we are inviting you to unpack it with us. Check out the new designs, Slack, LinkedIn and the free edition of Chronicle SOAR. Find out what's new, what you already know, and tell us what you think! Please ALSO allow us to take this moment to welcome you, old and new community members, to the Google Cloud SecOps community. We are excited to embark on this journey with you all and are eager to know what else we can offer. Chronicle SIEM
As more and more businesses migrate to the cloud, it’s vital that you take every step possible to protect your organization. Get the latest security insights and best practices from Google Cloud experts and your peers by joining us for a live customer meetup on December 6th at 11AM PT. For this first meetup, we'll be focusing on detecting security threats and vulnerabilities with Chronicle, Google’s cloud-based security platform. There will also be time for you to ask questions and receive answers live from Googlers and your peers. With the first of this series of live customer meetups, we aim to provide a safe space for you to meet with other practitioners and Googlers, to share best practices, ask questions, learn from each other, and connect with others who are going through or went through a similar journey. Please complete this form to register for the event and ask any questions you have in
Hi CommunityIt is incredibly rewarding for us when we can share with you new integrations available in the marketplace that have been developed by community members. Now is one of those moments.So welcome Arcanna.ai integration into the marketplace. A bit about the integrationArcanna.ai is augmenting SOC analysts’ decisions on top of existing SOC tools (SIEM, SOAR, etc) solving the FATIGUE and CAPACITY problems in cybersecurity. It integrates with Siemplify SOAR and Google Chronicle natively and uses AI to mimic the human decision-making process learning from the playbook data using NLP (Natural language Processing), deep learning and continuous feedback loop for adapting to the specifics of the team and context, no code.SOC teams using Arcanna.ai on top of Siemplify SOAR, benefit from simplified and more adaptable playbooks for addressing today's and tomorrow’s attack volumes. You can check it out by visiting your marketplace.
At Google Cloud, we’re on a mission to accelerate security outcomes for every organization. Today, we are excited by what our friends at Mandiant have delivered with Mandiant Breach Analytics for Chronicle. What is Mandiant Breach Analytics for Chronicle? To help organizations—regardless of size, industry, geography, or security controls deployed in the cloud, on-premises or in a hybrid model—automatically detect a breach faster, Mandiant has built a pipeline to frontline insight and expertise available as detections. Mandiant Breach Analytics answers questions like: Are we compromised? Who's targeting us? What are they after? and find Indicators of Compromise (IOC) in real time based on breach intelligence. It continuously monitors historical and real-time security events data for IOCs as Mandiant finds and qualifies them in Mandiant’s proprietary Intel grid™.. With Breach Analytics, a security analyst can pick a “high priority” event to focus on, check its “IC-Score”; Man
Here is our monthly newsletter that comes with a fresh design and is loaded with events and practical links.Quick look is recommended :)https://www.googlecloudcommunity.com/gc/Security/Security-Customer-Newsletter-September-2022/m-p/474756#M479
Community Spotlight Curated detections are now available in Chronicle With this latest release, customers are provided high quality, actionable, out-of-the-box detections, content curated and built by Google Cloud Threat Intelligence (GCTI) researchers. These rule sets cover threats in Windows including ransomware, remote-access tools (RAT), infostealers etc. Learn more and engage with customers and product experts in security-driven discussions by joining the community. Siemplify Community Member Discusses the Operational Realities of SOAR Cyrus Robinson, SOC Director and IR Team Lead at Ingalls Information Security, discusses how to build and train a SOAR team, what SOAR playbooks to start with, and much more on the Google Cloud Security Podcast. Listen to the Episode and join the Siemplify Community. ____________________________________________________________________________ New Product Features Chronicle release notes Curated Detections - Delivers out-of-the-box d
Mandiant is now part of Google Cloud. Read the blog to learn more." Google + Mandiant: Transforming Security Operations and Incident Response
Want to hear about something cool?In short: Another community challenge is coming up!In more detail: Now that we have reached 5000 members (wow!) we have no doubt that our community is our most valuable knowledge base.We would like to create an eBook containing all of your tips, tricks, and best practices about Siemplify Platform.How can you participate? Send your tips, tricks, or comments regarding Siemplify to the General Slack channel. Comment and react to the most insightful tip you see on the channel, and the most popular post will win a 200$ Amazon gift card.Are you ready? You have two weeks.
Hello Security Champs, Don't miss out on receiving all the latest updates on New Product Features, Product Tips, Events and Training, as well as Community News! Get your copy sent directly to your email by opting in today. Sign Up Here to receive the newsletter.
Hello Security Professional, Welcome to the first joint newsletter with Chronicle and Siemplify! We are excited to bring you a solution oriented customer newsletter with all the most up to date information for both products. Please read on to learn about our communities, new product features, events, and much more! Happy reading! Community Spotlight The Chronicle Community Has New Training & Enablement Our Chronicle Community is continuing to evolve and that includes our enablement and training content! In This Video , Customer Success Manager Nick Troutini, provides Chronicle users the information and resources you need to quickly gain cloud security confidence with Chronicle, stay up-to-date with the latest product updates, and find support when you need it. Join The Community! The Siemplify Community is now in the cloud! With one click of a button, you can sign up and log into your very own cloud instance of the Siemplify SOAR platform. With the Siempli
There is a new newsletter waiting for you to read. Check it out!
Our community is on fire!! A new community integration was already posted this week, and here is another. Get familiar with the Lacework integration developed by Gaurav Jaisinghani! Do you want to know what it has to offer?Lacework provides visibility into your account security through the continued monitoring and analysis of CloudTrail. It generates alerts based on out-of-the-box rules and custom ones that can be created by customers.Integration includes:Lacework ConnectorManagers:LaceworkManagerconstantsIt is exciting to see Siemplify being improved and extended by our wonderful community! Please don't be shy about sharing your feedback with us.
Siemplify's Marketplace has a new Integration published by a user in the community for the community. What do you think about that?One of our amazing community members from Loginsoft developed a Siemplify integration for IPQualityScore (IPQS).What is this integration used for?IPQS Fraud and Risk Scoring provides enterprise grade fraud prevention, risk analysis, and threat detection. You can analyze IP addresses, email addresses, and URLs or domains to identify sophisticated bad actors and high risk behavior.Which actions are available in this integration?Enrich PhoneEnrich EmailEnrich URLEnrich IPPingEnrich DomainDid you use it and find it relevant to your needs? Something missing?Write us some feedback and help make our community stronger!
Hello Security Champs, Would you like to receive the bi-monthly Customer Newsletter? We feature events and training, new product features, blog posts, and other stay in the know items! Sign Up Here to receive the newsletter.
Have you seen the Siemplify monthly newsletter yet?New courses are available in the Siemplify learning portal, the Threat Detection and Response Workshop, and our community SOC playlists are all explained there. Spend two minutes reading and see if you can learn anything worthwhile.
Hello Chronicle Experts, Welcome to the first edition of our Security customer newsletter. We will be posting this newsletter bi-monthly, giving you access to new updates on new product features, training, events and best practices. Would you and your co-workers like to have this delivered to your inbox? Click here to sign up! Community Spotlight: Join the Google Cloud Security Community The Google Cloud Security Community is a place to engage with peers and learn about the latest Google Cloud Security product news and upcoming events. Register now to join the community. Once you've registered, you can access the community. Events and Training RSA Conference 2022, June 6-9 Join us, in person or digitally, to learn about the latest products announcements and insights from experts across Google Cloud. Learn more Threat Detection & Response Workshop, May - July Discover the power of Google Cloud's Security Operations Suite by attending one of our
Hacking a computer game to gain unlimited health and ammo was how he began his Cyber Security career. For the first time, he realized what can go wrong when the end user is given more control than is necessary.He is on the protective side of the information now, and he is doing a pretty good job.We want you to get to know Sidhartha, one of our most special community members. Read his interview to learn about his life and security philosophy.Sid, thanks for sharing with us and making our community better!
In a time when cyberattacks are rapidly growing in both frequency and sophistication, organizations are focused on addressing potential threats in a smarter, faster, and more cost-effective manner. Chronicle is Google’s cloud-based security platform capable of ingesting massive amounts of data with built-in intelligence to quickly analyze and identify threat signals. In the video below, Customer Success Manager Nick Troutini, provides Chronicle users the information and resources you need to quickly gain cloud security confidence with Chronicle, stay up-to-date with the latest product updates, and find support when you need it. You can use the timestamp links to quickly navigate to topics in the video that you’re interested in learning more about: 01:09 Where to find self-service support resources: documentation, events, and community 02:10 How to get help with your technical questions or issues: reaching the support team, using the support portal 03:52 What's
It is clear from his questions that he works hard, is creative, and innovatively solves problems. As a result, we weren't surprised to learn what gets him up in the morning, what makes his heart pound, and which movies he enjoys.We enjoyed Miguel's interview; he made us smile. We are thrilled to move the spotlight to Miguel since he is a key contributor to the SOAR community.
Already have an account? Login
No account yet? Create an account
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.