logo

NJP

G

Google SecOps for Security Incident Response

by Crest Data Systems

Automated cloud-based threat detection, investigation and remediation.

0 installs 0 reviews v3.0.0 Scoped Application Free (integration tables[25] not counted) 25 tables

Install Trend

First tracked: 2024-10-30 Latest: 2026-09-09 (0 installs)
View Install Data
Date Install Count Change
2026-09-09 0 -
134 days of no change
2026-04-27 25 -25
15 days of no change
2026-04-11 26 -1
3 days of no change
2026-04-07 27 -1
2026-04-06 28 -1
3 days of no change
2026-04-02 29 -1
61 days of no change
2026-01-30 32 -3
1 days of no change
2026-01-28 33 -1
2 days of no change
2026-01-25 34 -1
13 days of no change
2026-01-11 35 -1
4 days of no change
2026-01-06 36 -1
24 days of no change
2025-12-12 35 +1
7 days of no change
2025-12-04 34 +1
38 days of no change
2025-10-26 33 +1
73 days of no change
2025-08-13 32 +1
132 days of no change
2025-04-02 31 +1
43 days of no change
2025-02-17 30 +1
37 days of no change
2025-01-10 29 +1
71 days of no change
2024-10-30 27 +2

About

Quickly respond to security incidents by integrating Google SecOps threat detection and investigation with ServiceNow Security Operations. 

Google SecOps, part of Google Cloud, is a security analytics platform for threat detection, investigation and hunting. With Google SecOps, enterprises can ingest all their security telemetry at a fixed cost into a private cloud container and retain it for a full year. Google SecOps enriches raw security events with correlated information on users, assets and threat indicators. 

Using the Google SecOps app, you can send security incidents to ServiceNow Security Operations to simplify incident response. When IOCs, alerts related to enterprise assets/users or malicious domains are detected, incidents are generated in Security Operations for immediate follow-up.

Key Features

- Ability to create Security Incidents from Google SecOps Alerts, IoC Matches, Detection Alerts and Curated Detection Alerts
- Automatically assign Security Incidents to ServiceNow groups based on the specified criteria
- Create filters to get fine grain control over deciding which alerts and matches are converted into Security Incidents
- Manage reference list.
- Perform UDM Query search.
- Manage Data table.

Version History (2)
v3.0.0 2026-04-10 04:55:53
Zurich version compatibility Support for api version V1Alpha.  Support for Data tables: Create a data table Fetch a data table Update a data...
v2.2.0 2025-10-08 08:33:55
Added "UDM Search" UI action for SIR Admins to run custom queries from incidents. Enabled creation of observables directly from alerts. Expanded s...
ID: e572b374db719490223ef5361d961986 · Published: Apr 2026 · Updated: Sep 09, 2026