Google Security Operations 文档
Google Security Operations 是一种云服务,作为核心 Google 基础架构之上的专用层构建,可让安全团队集中存储和分析安全数据,并检测、调查和应对威胁。
获享 $300 免费赠金开始概念验证
-
体验 Gemini 2.0 Flash Thinking
-
免费使用热门产品(包括 AI API 和 BigQuery)的每月用量
-
不会自动收费,无需承诺
继续探索 20 多种提供“始终免费”用量的产品
使用适用于常见应用场景(包括 AI API、虚拟机、数据仓库等)的 20 多种免费产品。
Google Security Operations 指南
如未另行说明,那么本页面中的内容已根据知识共享署名 4.0 许可获得了许可,并且代码示例已根据 Apache 2.0 许可获得了许可。有关详情,请参阅 Google 开发者网站政策。Java 是 Oracle 和/或其关联公司的注册商标。
最后更新时间 (UTC):2025-08-21。
[[["易于理解","easyToUnderstand","thumb-up"],["解决了我的问题","solvedMyProblem","thumb-up"],["其他","otherUp","thumb-up"]],[["很难理解","hardToUnderstand","thumb-down"],["信息或示例代码不正确","incorrectInformationOrSampleCode","thumb-down"],["没有我需要的信息/示例","missingTheInformationSamplesINeed","thumb-down"],["翻译问题","translationIssue","thumb-down"],["其他","otherDown","thumb-down"]],["最后更新时间 (UTC):2025-08-21。"],[[["\u003cp\u003eGoogle Security Operations is a cloud service that allows security teams to centralize the storage and analysis of their security data.\u003c/p\u003e\n"],["\u003cp\u003eThe service helps security teams with threat detection, investigation, and response.\u003c/p\u003e\n"],["\u003cp\u003eComprehensive documentation, including guides for searching events, working with cases, alerts, and playbooks, is available.\u003c/p\u003e\n"],["\u003cp\u003eVarious API references, such as Search, Detection Engine, Ingestion, and SOAR, are provided for Google Security Operations.\u003c/p\u003e\n"],["\u003cp\u003eAdditional resources include release notes, sample rules on GitHub, a community forum, and information on the Technology Partner program.\u003c/p\u003e\n"]]],[],null,["# Google Security Operations documentation\n========================================\n\n[Read product documentation](/chronicle/docs/secops/secops-overview)\nGoogle Security Operations is a cloud service, built as a specialized layer on top of core Google\ninfrastructure that enables security teams to store and analyze their security data in one place\nand to detect, investigate, and respond to threats.\n[Get started for free](https://console.cloud.google.com/freetrial) \n\n#### Start your proof of concept with $300 in free credit\n\n- Get access to Gemini 2.0 Flash Thinking\n- Free monthly usage of popular products, including AI APIs and BigQuery\n- No automatic charges, no commitment \n[View free product offers](/free/docs/free-cloud-features#free-tier) \n\n#### Keep exploring with 20+ always-free products\n\n\nAccess 20+ free products for common use cases, including AI APIs, VMs, data warehouses,\nand more.\n\nDocumentation resources\n-----------------------\n\nFind quickstarts and guides, review key references, and get help with common issues. \ninfo\n\n### Google Security Operations guides\n\n-\n\n [Google Security Operations overview](/chronicle/docs/secops/secops-overview)\n\n-\n\n [Searching events using Google Security Operations](/chronicle/docs/investigation/udm-search)\n\n-\n\n [Working with cases](/chronicle/docs/soar/investigate/working-with-cases/cases-overview)\n\n-\n\n [Working with alerts](/chronicle/docs/soar/investigate/working-with-alerts/whats-on-the-alert-overview-tab)\n\n-\n\n [Working with playbooks](/chronicle/docs/soar/respond/working-with-playbooks/whats-on-the-playbooks-screen)\n\n-\n\n [Google Threat Intelligence](https://gtidocs.virustotal.com)\n\nfind_in_page\n\n### Reference\n\n-\n\n [Google SecOps Search API](/chronicle/docs/reference/search-api)\n\n-\n\n [Google SecOps Detection Engine API](/chronicle/docs/reference/detection-engine-api)\n\n-\n\n [Google SecOps Ingestion API](/chronicle/docs/reference/ingestion-api)\n\n-\n\n [Google SecOps SOAR API](/chronicle/docs/soar/reference/working-with-chronicle-soar-apis)\n\n-\n\n [Google SecOps response Integrations](/chronicle/docs/soar/marketplace-integrations)\n\ninfo\n\n### Resources\n\n-\n\n [Release notes](/chronicle/docs/secops/release-notes)\n\n-\n\n [GitHub: sample Detection Engine rules](https://github.com/chronicle/detection-rules)\n\n-\n\n [GitHub: Python samples for Google SecOps APIs.](https://github.com/chronicle/api-samples-python)\n\n-\n\n [Google SecOps Community](https://www.googlecloudcommunity.com/gc/Google-Cloud-Security/ct-p/googlecloud-security?utm_source=cloud_sfdc&utm_medium=email &utm_campaign=dcs_cloudsecurity_product_documentation_secops_resources_page&utm_content=gcs_community&utm_term=-)\n\n-\n\n [Google SecOps Support](/chronicle/docs/getting-support)\n\n-\n\n [Become a Google SecOps Technology Partner](/chronicle/docs/technology-partner-program)"]]