PARTNER

Google Security Operations (Chronicle Compatibility)

Google | SIEM

Integration Use Cases

mystery

Get Evidence

Retrieves the evidence for an investigation.

feature_search

Get Investigation

Retrieves an investigation by ID.

troubleshoot

Patch Investigation

Updates an investigation by ID.

event_note

Post Events

Writes a batch of `Event` objects to the SIEM configured with the token used for authentication.

notifications_active

Query Alerts

Queries alerts from the SIEM configured with the token used for authentication.

event_list

Query Events

Queries events from the SIEM configured with the token used for authentication.

mystery

Query Investigations

Queries investigations

data_alert

Query Log Providers

Queries available log providers in the source SIEM

Integration Resources