Overview of context-aware analytics | Google Security Operations | Google Cloud
Google Security Operations enables you to view telemetry, entity context, relationships, and vulnerabilities as a single detection within your Google Security Operations account. It provides entity contextualization to enable you to understand both the behavioral patterns in telemetry and the context of those impacted entities from those patterns. Examples: Customers can use this contextualization for detection filtering, heuristic alert prioritization, triage, and investigation. Security analysts and detection engineers typically work to craft a detection on a basic pattern of event telemetry (an outbound network connection), creating numerous detections for their analysts to triage. The analysts attempt to stitch together an understanding of what happened to trigger the alert and how significant the threat is. Context-aware analytics incorporates advanced enrichment capabilities earlier in the detection authoring and execution workflow, enabling you to provide the following additiona
Google Security Operations enables you to view telemetry, entity context, relationships, and vulnerabilities as a single detection within your Google Security Operations account. It provides entity contextualization to enable you to understand both the behavioral patterns in telemetry and the context of those impacted entities from those patterns. Examples: Customers can use this contextualization for detection filtering, heuristic alert prioritization, triage, and investigation. Security analysts and detection engineers typically work to craft a detection on a basic pattern of event telemetry
Explore this link on the map →