Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊
Triggers an incident whenever a GTI Relevance System Alert with priority level HIGH or CRITICAL is ingested. These alerts indicate threats that Google Threat Intelligence has assessed as requiring immediate attention based on relevance, severity, and potential business impact. Each unique Alert ID is grouped into a single incident.
| Attribute | Value |
|---|---|
| Type | Analytic Rule |
| Solution | Google Threat Intelligence |
| ID | b2c3d4e5-f6a7-8901-bcde-f12345678902 |
| Severity | High |
| Status | Available |
| Kind | Scheduled |
| Tactics | InitialAccess, Impact, CredentialAccess, Exfiltration |
| Techniques | T1566, T1078, T1552, T1486, T1567 |
| Required Connectors | GoogleThreatIntelligenceRelevanceSystemAlertsAPI |
| Source | View on GitHub |
This content item queries data from the following tables:
| Table | Transformations | Ingestion API | Lake-Only |
|---|---|---|---|
RelevanceSystemAlerts_CL |
? | ✓ | ? |
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊
↑ Back to Analytic Rules · Back to Google Threat Intelligence