QuestionQ124
Data managementYou are responsible for selecting and prioritizing potential data sources to integrate with Google Security Operations (SecOps). Your company has recently begun using several Google Cloud services to strengthen security in its Google Cloud organization. You need to identify which logs should be ingested into Google SecOps to reduce the effort needed to write detections. What should you do?
- A Ingest Google Cloud Armor logs by using Cloud Logging.
- B Deploy a Bindplane agent to ingest event logs from Compute Engine VMs that provide endpoint visibility.
- C Integrate Security Command Center (SCC) into Google SecOps to ingest logs originating from the Google Cloud services.
- D Use Google Threat Intelligence to gain insight about threat group behavior and support threat hunting activities.
Community Discussion