From the course: Introduction to SecOps on Google Distributed Cloud (GDC) by Google

Unlock this course with a free trial

Join today to access over 25,500 courses taught by industry experts.

Module overview

Module overview

- [Instructor] Welcome to SOC Tools for Google Distributed Cloud (GDC) Air-Gapped. In this module, you'll be introduced to the security operations SecOps tools that you, as a security analyst, use to defend the GDC platform. First, you'll learn how Google aligns with the MITRE ATTACK framework, and you will revisit the support offered by Mandiant for the GDC Security Operations Center, or SOC, tooling setup. Then you'll look at SOC tooling from a high level perspective in order to discover where the tools reside in the GDC architecture. Next, you'll explore each tool in detail. Note that you will focus on Splunk security information and event management, or SIEM, as a core SOC tool, Grafana as a general infrastructure observability tool, and ServiceNow as a management tool. Please note that the purpose of this module is to introduce high level concepts. You will dive further into the tools introduced here in course…

Contents