Google SecOps enhances data processing with Unroll processor and threat intelligence operations
Google SecOps introduces the Unroll processor, enabling users to automatically expand log arrays into discrete events for more granular pre-parsing data ingestion. This enhancement requires structured data inputs and a preceding Transform processor for raw string payloads. Additionally, the Emerging Threats Center now supports Operations, providing focused, localized threat insights derived from frontline investigations to complement global campaigns. These updates improve visibility into specific adversary activities and holistic threat mapping.
- →Unroll Processor for Data Processing Pipelines
- →[Spotlight Feature] Operations in Emerging Threats Center
Features (2) ›
- Google SecOps Unroll Processor for Data Processing Pipelines
Unroll Processor for Data Processing Pipelines Google SecOps data processing pipelines now support the Unroll processor (event breaking). This processor allows you to split log entries containing arrays or slices of events into multiple individual log events prior to parsing and ingestion. Key details: Event Breaking Capability: Automatically expands log arrays into discrete log events. Pre-parsing Requirement: The Unroll processor requires structured data inputs. Raw string payloads must first be parsed using a Transform processor (e.g., set(body, ParseJSON(body)) ) positioned prior to the Un
- Google SecOps [Spotlight Feature] Operations in Emerging Threats Center
[Spotlight Feature] Operations in Emerging Threats Center Google SecOps now supports Operations in the Emerging Threats Center feed to provide rapid visibility into threat activity details involving the targeting of a single organization. Operations complement global Campaigns by providing granular threat intelligence derived from frontline investigations, such as Managed Threat Defense (MTD) engagements. For more information, see Operations in Emerging Threats . Key capabilities include: Focused threat insights : Zero in on localized adversary activity and personalized attack vectors specific
https://docs.cloud.google.com/release-notes#August_24_2026
Related releases
- Bringing gVisor Sandboxes to Distributed Ray Clusters on Google Cloud Google Cloud Blog ·
- Introducing Gemini Enterprise for Financial Services Google Cloud Blog ·
- Google Cloud Introduces Gemini Enterprise for Legal AI Solution Google Cloud Blog ·
- Anthos Config Management gets security updates and monitoring controls Google Cloud release notes ·
- Google SecOps SIEM Adds Unroll Processor for Data Processing Pipelines Google Cloud release notes ·
- Container Optimized OS Updates Address Linux Kernel Vulnerabilities and Package Upgrades Google Cloud release notes ·