You are part of a cybersecurity team at a large multinational corporation that uses Google Security
Operations (SecOps). You have been tasked with identifying unknown command and control nodes
(C2s) that are potentially active in your organization's environment. You need to generate a list of
potential matches for the unknown C2s within the next 24 hours. What should you do?
Your Google Security Operations (SecOps) case queue contains a case with IP address entities. You
need to determine whether the entities are internal or external assets and ensure that internal IP
address entities are marked accordingly upon ingestion into Google SecOps SOAR. What should you
do?
You are responsible for monitoring the ingestion of critical Windows server logs to Google Security
Operations (SecOps) by using the Bindplane agent. You want to receive an immediate notification
when no logs have been ingested for over 30 minutes. You want to use the most efficient notification
solution. What should you do?
You are responsible for monitoring the ingestion of critical Windows server logs to Google Security
Operations (SecOps) by using the Bindplane agent. You want to receive an immediate notification
when no logs have been ingested for over 30 minutes. You want to use the most efficient notification
solution. What should you do?
Your Google Security Operations (SecOps) case queue contains a case with IP address entities. You
need to determine whether the entities are internal or external assets and ensure that internal IP
address entities are marked accordingly upon ingestion into Google SecOps SOAR. What should you
do?