SecOps Customer Newsletter - October 2023

Lesleymustari_0-1696606845056.png

Hello SecOps Community,

Stay up to date with everything going on in Chronicle Security Operations by reading the SecOps Customer Newsletter! Updated every other month, you can find a summary of major Product Updates, Learning and Training, Community Announcements, Best Practices, and Upcoming Events.

Chronicle Security Operations Updates

Introducing the unified Security Operations platform

The newest version of Chronicle Security Operations introduces a modern, cloud-native, AI-powered platform that can help you stay ahead of modern threats with a focus on outcomes, a unified experience that puts proactive and reactive context at your fingertips, and practical application of AI to reduce daily toil.

Hereโ€™s the highlights:

  • Unified security operations experience. With our new consolidated experience for Chronicle SIEM and Chronicle SOAR, we can better provide rich context and easy pivoting between alerts, cases, investigations, and playbooks in a single console, for a more streamlined and integrated TDIR experience. Every alert in Chronicle is now grouped into a case to consolidate related alerts and provide access to relevant enrichment to help security teams make quicker decisions.

     

    Lesleymustari_3-1696606939919.png

 

  • Proactively detect external exposures.  Our integration with Mandiant Attack Surface Management (ASM), now generally available, can enable customers to continuously identify and validate exploitable entry points into their organization. ASM integration can help correlate and enrich investigations with context and an understanding of business risk, and allows the SecOps team to prioritize investigation and remediation efforts based on the exposures that have the most potential impact.

 

Lesleymustari_8-1696607499013.png

  • Detect more threats with applied threat intel. Our new Applied Threat Intelligence, available in preview, leverages Chronicleโ€™s scalability to automatically enrich and contextualize every event with the latest, market-leading threat intelligence from Google Cloud, Mandiant, and VirusTotal, to help eliminate blindspots and ultimately detect more threats. In addition, every relevant event in Chronicle that matches a threat indicator will be instantly enriched with threat actor, threat campaign, or malware family associations that can be used for custom searches or detections.

 

Lesleymustari_6-1696607055336.png

  • AI augmented productivity.  With Duet AI, Chronicle can automatically provide a clear summary of whatโ€™s happening in cases, give context and guidance on important threats, and offer recommendations for how to respond. Duet AI also powers Chronicleโ€™s new natural language search. Defenders can enter questions in natural language, and Chronicle will generate the query from their statement, present a fully mapped syntax for search, and make it possible for you to quickly refine and iterate on results.

 

Lesleymustari_7-1696607089132.png

Interested in learning more? Join us at the upcoming Security Talks on October 25, 2023 or read the blog.

New service for Chronicle customers: Mandiant Hunt

At Next โ€˜23, we introduced Mandiant Hunt for Chronicle Security Operations to better help defenders protect their digital assets from persistent threats. Available now in preview, this new managed threat hunting service integrates Mandiantโ€™s frontline intelligence and expertise with Google Cloud technology to proactively search for undetected attacks.

Managed hunting within their Chronicle data helps customers: 

  • Close the skills gap by gaining elite-level, speciality security skills without the burden of hiring, tooling, and training;
  • Confidently defend against the latest threats with the help they need to find novel or hidden attacks, as well as the insight they needed to improve their security controls;
  • And the context they need to make informed decisions with the necessary tools in Chronicle Security Operations to quickly respond.

To learn more about threat hunting with Chronicle, you can read the Mandiant Hunt documentation, and check out our Next โ€˜23 session.

SecOps Community Spotlight

Weโ€™re thrilled to share that the new Cloud Security Community site is now live! 

We believe that a strong community is essential for both your success and ours and we want to ensure we provide you with the support, content, and space to allow you to connect and learn from each other. The new community ensures long-term durability and sustainability of this community and its programs. 

If you haven't created a Community account yet, please go here to learn how to create one. If youโ€™re a member of the legacy SecOps Community, youโ€™ll log into the new community space using the same email address associated with your existing account.  To learn more about the Community and how to use it, be sure to visit our Community Resources area to learn more!

We outline frequently asked questions about your new Google Cloud Security Community home and provide answers to help make the transition as seamless as possible. 

If you still have a question, please donโ€™t hesitate to reach out to the Community team directly at gc-customer-community@google.com and weโ€™d be happy to help.

SecOps Events, Training, and Content

October 11  

For a live tour of Chronicleโ€™s latest release, which unifies our SIEM and SOAR solutions, integrates Mandiantโ€™s attack surface management technology, and offers more robust application of threat intelligence.

October 25

For our next Google Cloud Security Talks virtual event to explore threat intel trends, a blueprint for modern security operations, and all of our latest product innovations.

October 25 

Security, Privacy, and Risk in a Gen AI world: Top 5 strategies to win the new cat and mouse game Everyone is riding the generative AI wave. Hallucinations, prompt hacking, global AI regulations, responsible AI principlesโ€ฆ so many topics that weren't on the radar last year are now dominating our conversations. 

Join this session to:

  • Understand Google's approach to security, privacy, and risk in a Gen AI world
  • Learn how Google Cloud can help you get ahead securely and distinguish your business in the market
  • Have the opportunity to ask questions and receive answers live from the experts

We hope to see you there!

 

 

2 0 1,092
0 REPLIES 0