ServicesGoogle CloudGoogle SecOps

Google SecOps

46 updates from Google Cloud.

Get Google SecOps updates weekly
Google SecOpsannouncementNew

New parser documentation now available

New parser documentation now available New parser documentation is available to help you ingest and normalize logs from the following sources: • <a…

Google SecOpsannouncement

New parser documentation now available

New parser documentation now available New parser documentation is available to help you ingest and normalize logs from the following sources: • <a…

Google SecOpsannouncement

Unified and upgraded Chronicle API

Unified and upgraded Chronicle API <a href="https://docs.cloud.google.com/chronicle/docs/reference/rest?rep_location=africa-south1">Chronicle API</a> has been unified with API resources from <a…

Google SecOpsannouncement

Emerging Threats Center general availability

Emerging Threats Center general availability The Emerging Threats Center is now in General Availability (GA) and includes the following new features and enhancements: • Expanded campaign filtering:…

Google SecOpschange

Search query editor enhancements

Search query editor enhancements Google SecOps has enhanced the search query editor to provide intelligent auto-suggestions and improved error handling. • Auto-suggestions: The query editor now…

Google SecOpsfeature

Health Hub

Health Hub This feature is currently in Preview. The Health Hub is the central location in Google Security Operations for you to monitor the status and health of all configured data sources. The…

Google SecOpsdeprecated

v1 Cloud Storage Feed Types (GCS, S3, SQS, Azure)

v1 Cloud Storage Feed Types (GCS, S3, SQS, Azure) The v1 feed types for GOOGLE_CLOUD_STORAGE, AMAZON_S3, AMAZON_SQS, and AZURE_BLOBSTORE are deprecated and will be discontinued on March 15, 2027.…

Google SecOpsfeature

Multi-stage queries in YARA-L

Multi-stage queries in YARA-L The Multi-stage queries feature is now GA. This feature lets you feed the output of one query stage into the input of another, providing more granular data…

Google SecOpsannouncement

New parser documentation now available

New parser documentation now available New parser documentation is available to help you ingest and normalize logs from the following sources: • <a…

Google SecOpsfeature

Agentic Automation

Agentic Automation This feature is in Public Preview. You can now use Agentic Automation to embed AI Agents directly into your workflows. This feature lets you integrate AI-driven capabilities into…

Google SecOpsannouncement

Manage parser versions

Manage parser versions The <a href="https://docs.cloud.google.com/chronicle/docs/secops/release-notes#October_07_2025">Manage parser versions</a> feature is in Public Preview for all customers.

Google SecOpsfeature

Set up and manage data processing pipelines

Set up and manage data processing pipelines This feature is currently in Preview. You can now use the Data Processing pipelines to filter, transform, and redact Google SecOps data before ingestion.…

Google SecOpsannouncement

Google Agentic SOC Trial

Google Agentic SOC Trial There will be a no-cost trial for the Google SecOps Triage Investigative Agent (TIN) from April 1, 2026 to June 30, 2026. TIN is an agentic AI feature for Google SecOps…

Google SecOpsannouncement

Manage parser versions

Manage parser versions The <a href="https://docs.cloud.google.com/chronicle/docs/secops/release-notes#October_07_2025">Manage parser versions</a> feature is now in General Availability. For more…

Google SecOpsfeature

New Unified rules interface

New Unified rules interface This feature is currently in Preview. Google Secops has launched a unified rules interface that brings custom and curated rule management into a single, cohesive…

Google SecOpsfeature

New: cross joins in multi-stage queries

New: cross joins in multi-stage queries You can now use cross joins in YARA-L 2.0 multi-stage queries let you compare individual UDM event data against aggregated statistics calculated in previous…

Google SecOpsfeature

RBAC for ingestion metrics

RBAC for ingestion metrics Administrators can now use RBAC for ingestion metrics to restrict visibility of system health data, such as ingestion volume, errors, and throughput, based on a user's…

Google SecOpsannouncement

New parser documentation now available

New parser documentation now available New parser documentation is available to help you ingest and normalize logs from the following sources: • <a…

Google SecOpsfeature

New capabilities in Feeds page

New capabilities in Feeds page The following options have been added to the Feeds page: • Search • Filtering (using feed attributes) • Pagination • Last Refreshed Time • Feed Metadata Export to CSV

Google SecOpsfeature

Advanced Joins in Search

Advanced Joins in Search Google SecOps now supports expanded capabilities for correlating data across multiple sources. These join operations are also supported in multistage queries. Joins without…