flâneur — a map of the web's best reading

New to Chronicle: Community Rules

chronicle.security · 993 words · saved by 1 readers

"New to Chronicle" is a deep-dive series by Google Cloud Principal Security Strategist John Stoner which provides practical guidance for security teams that are either new to Security Operations Platforms or replacing their Security Operations Platforms with Chronicle. You can view the entire series here. As we reach the end of the year and approach the winter holiday season, I wanted to release one more blog in our series to put a bow on this year. CWIDT? Today, we are going to focus on a common question that we get when users start digging into Chronicle. Where can I find rules that I can start using immediately? Now, Chronicle provides curated detections which provide admins the ability to toggle on rule packs to address specific categories of concern, like info stealer or initial access or anomalous PowerShell, to name a few. That’s a good start. However, for analysts who want to build their own rules, where can they find templates of rules to leverage as they get started? Addition

New to Google SecOps: Community Rules | Community Skip to main content Create topic Login Home Knowledge base overview Resource Center Community Blog New to Google SecOps: Community Rules +24 jstoner Community Manager "New to Google SecOps" is a deep-dive series by Google Cloud Principal Security Strategist John Stoner which provides practical guidance for security teams that are either new to Security Operations Platforms or replacing their Security Operations Platforms with Google SecOps. As we reach the end of the year and approach the winter holiday season, I wanted to release one more blo

Explore this link on the map →

related reading