🔍

Google Cloud Professional Security Operations Engineer PSOE — Question 4

Topic 1 · Question 4 of 38

Topic 1 · Question 4

You are implementing Google Security Operations (SecOps) at your organization. You discover that the current detection rules are too noisy. Due to the high volume of alerts, some true positives might be missed. You want to ingest additional context sources to reduce false positives in your security detections and to improve the overall positive ratio of the alerts. What should you do?