You are responsible for monitoring the ingestion of critical Windows server logs to Google Security
Operations (SecOps) by using the Bindplane agent. You want to receive an immediate notification
when no logs have been ingested for over 30 minutes. You want to use the most efficient notification
solution. What should you do?
Your organization's Google Security Operations (SecOps) tenant is ingesting a vendor's firewall logs in
its default JSON format using the Google-provided parser for that log. The vendor recently released a
patch that introduces a new field and renames an existing field in the logs. The parser does not
recognize these two fields and they remain available only in the raw logs, while the rest of the log is
parsed normally. You need to resolve this logging issue as soon as possible while minimizing the
overall change management impact. What should you do?
Your organization's Google Security Operations (SecOps) tenant is ingesting a vendor's firewall logs in
its default JSON format using the Google-provided parser for that log. The vendor recently released a
patch that introduces a new field and renames an existing field in the logs. The parser does not
recognize these two fields and they remain available only in the raw logs, while the rest of the log is
parsed normally. You need to resolve this logging issue as soon as possible while minimizing the
overall change management impact. What should you do?
Your Google Security Operations (SecOps) case queue contains a case with IP address entities. You
need to determine whether the entities are internal or external assets and ensure that internal IP
address entities are marked accordingly upon ingestion into Google SecOps SOAR. What should you
do?
You are responsible for monitoring the ingestion of critical Windows server logs to Google Security
Operations (SecOps) by using the Bindplane agent. You want to receive an immediate notification
when no logs have been ingested for over 30 minutes. You want to use the most efficient notification
solution. What should you do?