Threat Perception: Accelerating Security Outcomes with New Chronicle Detection Capabilities

At Google Cloud, we’re on a mission to accelerate security outcomes for every organization. Today, we’re thrilled to announce incredible progress towards this mission with Threat Perception.

What is Threat Perception? 

Threat Perception is a major milestone for Chronicle, Google’s cloud-native SIEM, with Entity Graph and Internal Rules now Generally Available, as well as IAM Analyzer Integration and Cloud DLP Integration now available in public preview. 

Entity Graph and Internal Rules (now Generally Available): Enable alert prioritization with risk scores by organizing security data, using machine-assisted reasoning, and providing contextual information around entities and their relationships. 

IAM Analyzer Integration (Public Preview): Integrate Cloud Asset Inventory data into Chronicle, enabling additional context in threat investigations. 

Cloud DLP Integration (Public Preview, starting March 1, 22’): Detect and mitigate risks around sensitive data by building complex rules and dashboards on Table Data Profiles generated by the DLP API. 

What does this mean for you? 

Facing an overwhelming number of security alerts? Lacking bandwidth or resources to keep up? Enter, Threat Perception.

 

Security Challenge

Now with Threat Perception 

“There are too many alerts.”

Leverage intelligent filtering to reduce volume.

“We don’t have enough analysts to keep up.” 

Use contextual risk prioritization to focus analyst attention on what matters most.

“We keep missing critical threats.” 

Take advantage of faster, easier correlation to construct the larger picture from incomplete data to improve analyst productivity.

 

Ultimately, Threat Perception is a way to help accelerate your detection and response capabilities and more easily and efficiently address core SIEM workloads. 

What’s next? 

We’ve already seen tremendous success with customers leveraging Entity Graph in preview, and now you can too. Learn more about Entity Graph and how to get started with your organization here

IAM Analyzer Integration and DLP Integration are now available in public preview, and will generally be available later this year. 

 

Have questions or feedback? Please drop a comment below - we’d love to hear what you have to say. We’ll make every effort to listen to you - our valuable members - and seek opportunities to add more value where we can. Thank you! 

5 0 462
0 REPLIES 0