Git Product home page Git Product logo

chronicle-soar-job-gcp-metrics's Introduction

Google SecOps SOAR Job - Google Cloud Metrics Loader for SIEM

Overview

With the announcement of auto-JSON parsing in Google SecOps, organizations can now leverage JSON data without the need to build a parser to make the data available. This example job can pull Google Cloud Monitoring metrics in to Google SecOps.

Pre-requisites

  • Google Cloud Project - Metrics are retrieved at a project-level.
  • Service Account JSON Key - To retrieve metrics, a service account credential must be created with the monitoring.timeSeries.list permission.

Installation

  1. Navigate to Releases in this repo and download the .zip package.
  2. In Chronicle SOAR/Security Operations, install the integration by opening the IDE and importing the package.
  3. Set up a job via the Job Scheduler, providing the project name, service account JSON, and the metric you wish to retrieve.
  4. You'll also need to provide your ingestion API credential (JSON format) and your SecOps cutomer ID

Example

In this example, we're retrieving network utilization metrics for GCE workloads.

Metrics

chronicle-soar-job-gcp-metrics's People

Contributors

pilot006 avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.