gcp Google Cloud release notes ·

Google SecOps Updates Default Parsers and Enhances Prebuilt Parser View

securityawsazuregcppreviewengineer
feature patch

Google SecOps has updated its extensive list of supported default parsers, enhancing its ability to ingest and analyze security logs from a wider array of products and platforms, including AWS, Azure, and various firewalls. These updates expand Google's unified security operations platform for improved threat detection and incident response for security operations teams. Additionally, users can now view prebuilt parser preview content even when a custom parser is active for the same log type, aiding in understanding parser logic. The parser changes are being rolled out gradually across regions over one to four days.

  • View prebuilt parser version content
Features (1)
  • Google SecOps View prebuilt parser version content

    View prebuilt parser version content You can now view the prebuilt parser preview version content even if you are using a custom parser for the same log type. Although the prebuilt parser version is inactive, you can still see the content of the new preview version for this parser.

Enhancements (1)
  • Google SecOps

    Google SecOps has updated the list of supported default parsers . Parsers are updated gradually, so it might take one to four days before you see the changes reflected in your region. The following supported default parsers have been updated. Each parser is listed by product name and log_type value, where applicable. This list includes both released default parsers and pending parser updates. Airlock Digital Application Allowlisting ( AIRLOCK_DIGITAL ) AIX system ( AIX_SYSTEM ) Akamai DataStream 2 ( AKAMAI_DATASTREAM_2 ) Akamai SIEM Connector ( AKAMAI_SIEM_CONNECTOR ) Apache ( APACHE ) Arcsigh

Read the original announcement →

https://docs.cloud.google.com/release-notes#July_29_2026

Related releases