Join Google Cloud Security's Darren Davis as he breaks down the art of parsing in Google SecOps. In this webinar, you'll learn the methodology behind normalizing raw logs into the Unified Data Model (UDM) and how to build robust custom parsers for your unique environment.
In this video:
UDM Fundamentals: Why normalization is the key to effective detection.
Custom Parsing Logic: When and how to build your own parsers.
Live Coding Demo: Watch Darren build a parser from scratch, including handling nested JSON and debugging errors.
Pro Tips: Using state dump for troubleshooting and managing multiple log formats in a single parser.
Whether you are migrating from another SIEM or optimizing your current SecOps workflow, this session provides the technical deep dive you need to get the most out of your data.
Subscribe for more Google Cloud Security tips and "Webinar Wednesdays" updates at security.googlecloudcommunity.com