Watch our latest fireside chat with Doug Cahill: Cybersecurity Integrations: The ROI Black Hole

PARTNER

Google Security Operations (Chronicle Compatibility)

Google | SIEM

About Google

Google is a global technology leader whose cloud security, identity, and threat intelligence capabilities are trusted by enterprises and governments worldwide to protect their most critical operations. Through Google Cloud's comprehensive portfolio of security services—spanning threat detection, data protection, identity, and security operations—Google is a foundational partner in modern enterprise security programs. Teams looking to integrate with Google or build a Google Cloud security integration can use Synqly to connect Google's security services and data streams with their broader security operations platform through a unified API layer.

About the Google Security Operations (Chronicle Compatibility) Integration

Google Security Operations (Chronicle Compatibility) provides the Chronicle-compatible Sink ingestion path for Google Security Operations, allowing security teams to stream security event data into Google’s platform using the established Chronicle ingestion API format. As Synqly’s Sink provider in Chronicle compatibility mode, this integration enables teams with existing Chronicle-based pipelines to continue routing security event data into Google Security Operations without rebuilding ingestion workflows. Integrate with Google Security Operations (Chronicle Compatibility) as a Sink to preserve existing Chronicle log ingestion investments while transitioning to Google Security Operations.

Integration Use Cases

add_alert

Get Alert

Retrieves an alert by ID.

mystery

Get Evidence

Retrieves the evidence for an investigation.

feature_search

Get Investigation

Retrieves an investigation by ID.

event_note

Post Events

Writes a batch of `Event` objects to the SIEM configured with the token used for authentication.

notifications_active

Query Alerts

Queries alerts from the SIEM configured with the token used for authentication.

event_list

Query Events

Queries events from the SIEM configured with the token used for authentication.

mystery

Query Investigations

Queries investigations

data_alert

Query Log Providers

Queries available log providers in the source SIEM

Integration Resources