From the course: Introduction to SecOps on Google Distributed Cloud (GDC) by Google
Unlock this course with a free trial
Join today to access over 25,400 courses taught by industry experts.
Baseline metrics - Google Cloud Platform Tutorial
From the course: Introduction to SecOps on Google Distributed Cloud (GDC) by Google
Baseline metrics
- [Instructor] Each GDC service aims to publish the following set of baseline metrics. Let's briefly explore each one. Note that custom metrics can also be provided. The request latency is the time it takes for a system to respond to a request. This metric is useful for the SOC to monitor the responsiveness of systems. Abnormal increases may indicate performance issues or potential security incidents. This aids in the early detection of threats. Traffic is the volume of data or requests transmitted over a network. Traffic helps us security analysts determine the overall load on the network. Sudden spikes or anomalies may suggest a network-based attack or abnormal activity. Requests per second are the number of requests processed by a system in one second. This metric indicates the workload on systems. Rapid increases in system workload may signal a potential denial of service or DOS attack, or unusual user behavior.…
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.
Contents
-
-
-
-
-
-
-
(Locked)
Module overview1m 14s
-
(Locked)
Log types in the GDC SOC2m 24s
-
(Locked)
Audit logs5m 51s
-
(Locked)
Audit logs at Cymbal Federal1m 36s
-
(Locked)
Security logs51s
-
(Locked)
Operational logs1m 36s
-
(Locked)
Operational logs at Cymbal Federal46s
-
(Locked)
Review: Logs in Splunk1m 19s
-
(Locked)
Metrics in Splunk1m 27s
-
(Locked)
Baseline metrics4m 34s
-
(Locked)
Security-specific metrics in Splunk1m 47s
-
(Locked)
Using Splunk metrics1m 57s
-
(Locked)
Splunk metrics at Cymbal Federal1m 30s
-
(Locked)
Splunk dashboards5m 32s
-
(Locked)
Alerts in Splunk1m 19s
-
(Locked)
Alerts at Cymbal Federal1m
-
(Locked)
Alert rules1m 55s
-
(Locked)
The alert inventory2m 4s
-
(Locked)
Module review59s
-
(Locked)