Exabeam brings New-Scale Analytics to Google Security Operations, extending Google Security Operations with Behavior Intelligence for faster insider threat detection, investigation, and response (TDIR). Built on Google Cloud for cloud-scale security analytics, Exabeam connects directly with Google Security Operations data, so teams work from one integrated view.
As a Google Unified Security Recommended designated partner, Exabeam extends behavioral analytics and agent-powered workflow automation to Google Security Operations. Security teams gain deeper visibility into insider threats and risky activity across human and AI identities, helping them prioritize investigations, reduce complexity, and accelerate TDIR workflows.
ماذا نفعل مع جوجل كلاود
Exabeam applies New-Scale Analytics directly to Google Security Operations data, giving security teams behavioral context for users, entities, service accounts, and AI agents. This integrated approach identifies insider threats earlier, prioritizes risky activity, and reduces the operational overhead of maintaining a separate analytics system.
New-Scale Analytics uses behavioral analytics, AI-driven operations, automated workflows, and outcomes-based visibility to analyze activity before threats escalate.
Google Security Operations and New-Scale Analytics
Google Security Operations provides a cloud-scale foundation to centralize and correlate security telemetry. New-Scale Analytics extends this foundation with behavioral analytics that learns normal activity for users, entities, devices, service accounts, and AI agents.
Through integrated data sharing, security teams can apply Exabeam Behavior Intelligence to data already in Google Security Operations. This sharpens detection of high-risk activity sooner, reduce false positives, and prioritize investigations across human and non-human identities.
فوائد التكامل
- Detect insider risk across human and AI identities
- Prioritize risky activity with behavioral context and dynamic risk scoring
- Accelerate TDIR workflows with agent-powered automation and investigation context
- Reduce complexity by applying Behavior Intelligence to data already in Google Security Operations
- Procure through Google Cloud Marketplace and apply eligible purchases toward existing Google Cloud spend commitments
Securing AI Agents With Gemini Enterprise Agent Platform and Model Armor
AI agents increasingly act across applications, tools, data sources, and workflows with a level of autonomy that can resemble a privileged insider. As agents move from task execution to delegated business outcomes, security teams need visibility into agent behavior, orchestration, tool use, and governance signals, not just traditional user activity.
Exabeam integrates with Gemini Enterprise and Model Armor to give security teams the same level of oversight to human and non-human identities:
- Gemini Enterprise Agent Platform provides a unified foundation to build, scale, govern, orchestrate, secure, and optimize enterprise AI agents, including agent development, integration, runtime, DevOps, and governance capabilities.
- Model Armor captures detailed activity data for large language model (LLM) prompts and responses.
Because the platform is designed to deliver agents through the Gemini Enterprise app while remaining integrated with IT operations, it creates a new set of behavioral signals security teams can analyze to understand how agents act, what systems they access, and where risk may emerge.
Exabeam analyzes this activity in New-Scale Fusion alongside user behavior. New-Scale Analytics baselines both human and agent activity, applies dynamic risk scoring, and surfaces high-risk behavior for investigation.
Exabeam Nova cybersecurity agents operationalize this intelligence with agent-powered TDIR workflows, helping analysts interpret behavioral context, prioritize response, and reduce insider risk from human and AI identities.
التكاملات
جوجل وورك سبيس
| نقطة النهاية | مصدر التدقيق: واجهة برمجة التطبيقات (API) | الأحداث المضمنة | مصدر إضافي: واجهة برمجة التطبيقات (API) |
|---|---|---|---|
| تسجيل الدخول | واجهة برمجة التطبيقات للتقارير | نشاط تدقيق تسجيل الدخول | أنشطة الإدارة في Stackdriver |
| مدير | نشاط المسؤول | ||
| قيادة | نشاط تدقيق القيادة | ||
| رمز | نشاط الرموز | ||
| متحرك | نشاط التدقيق المتنقل | ||
| تقويم | نشاط تدقيق التقويم | ||
| مجموعات | نشاط تدقيق المجموعات | ||
| جي بلس | نشاط تدقيق Google+ | ||
| قواعد | نشاط تدقيق القواعد | ||
| سامل | نشاط تدقيق SAML | ||
| سجلات جيميل | سجلات جيميل في بيغ كويري | تتبع الرسائل |
منصة جوجل السحابية
| الخدمة أو الوحدة المغطاة | الحدث مشمول |
|---|---|
| محرك التطبيقات | الأحداث المتعلقة بأنشطة الإدارة في خدمة App Engine PaaS. |
| استعلام كبير | الأحداث المتعلقة بأنشطة الإدارة في خدمة BigQuery |
| تدفق البيانات السحابي | الأحداث المتعلقة بأنشطة الإدارة في خدمة Cloud Dataflow |
| معالجة البيانات السحابية | الأحداث المتعلقة بأنشطة الإدارة في خدمة Cloud Dataproc. |
| نظام أسماء النطاقات السحابي | الأحداث المتعلقة بأنشطة الإدارة في خدمة DNS السحابية |
| إدارة الهوية والوصول في السحابة (IAM) | الأحداث المتعلقة بأنشطة الإدارة في خدمة إدارة الهوية والوصول السحابية |
| نظام إدارة مفاتيح السحابة (KMS) | الأحداث المتعلقة بأنشطة الإدارة في خدمة Cloud KMS |
| مدير موارد السحابة | الأحداث المتعلقة بأنشطة الإدارة في خدمة إدارة الموارد السحابية. |
| قواعد بيانات سحابية | الأحداث المتعلقة بأنشطة الإدارة في خدمة Cloud SQL |
| تخزين سحابي | الأحداث المتعلقة بأنشطة الإدارة في خدمة التخزين السحابي |
| محرك جوجل للحوسبة (Google Compute Engine) | الأحداث المتعلقة بأنشطة الإدارة في خدمة GCE |
| الوصول إلى منفذ السلسلة في محرك الحوسبة | الأحداث المتعلقة بأنشطة الإدارة في خدمة الوصول إلى المنفذ التسلسلي لمحرك الحوسبة. |
| إدارة خدمات جوجل | الأحداث المتعلقة بأنشطة الإدارة في خدمة إدارة خدمات جوجل. |
| Google Gemini Enterprise Agent Platform | Events related to agent development, deployment, orchestration, runtime activity, integrations, governance, and security controls |
| غوغل موديل أرمور | الأحداث المتعلقة بنشاط نماذج اللغة الكبيرة، والتوجيهات، والاستجابات. |
فوائد العملاء:
- Accelerate TDIR workflows: Exabeam validation testing found that organizations accelerated TDIR workflows by up to 80%.
- Detect insider risk earlier: Apply New-Scale Analytics to Google Security Operations data to identify high-risk activity across users, entities, service accounts, and AI agents.
- Reduce analytics complexity: Use integrated data sharing to apply Behavior Intelligence to data already in Google Security Operations without maintaining a separate analytics environment.
- Available on Google Cloud Marketplace: Procure Exabeam New-Scale Analytics through Google Cloud Marketplace, where eligible purchases can apply toward existing Google Cloud spend commitments.
- Secure both users and agents: Extend coverage to AI agents by analyzing Gemini Enterprise Agent Platform and Model Armor activity alongside user behavior, behavioral analytics, dynamic risk scoring, and agent-powered TDIR workflows to detect risky human and non-human identity activity.
حول جوجل كلاود
Google Cloud offers a powerful, optimized AI stack, including AI infrastructure, leading models like Gemini, data management capabilities, multicloud security solutions, developer tools and platform, as well as agents and applications, that enables organizations to transform their business for the Agentic Era. Customers in more than 200 countries and territories turn to Google Cloud as their trusted technology partner.technology — all on the cleanest cloud in the industry. Customers in more than 200 countries and territories turn to Google Cloud as their trusted partner to enable growth and solve their most critical business problems.
اتصال
الموارد ذات الصلة
Press Release: Exabeam Collaborates with Google Cloud to Give Security Teams Deeper Insider Threat Visibility in Google Security Operations
Blog: Securing the Future of Work: Agent Behavior Analytics with Google Cloud
Blog: Seeing the Invisible: Visualizing and Protecting AI-Agent Activity with Exabeam & Google
Brief: Extend Google Security Operations With Behavioral Analytics
تعلم المزيد عن إكزابييم
تعرف على منصة Exabeam ووسع معرفتك في أمن المعلومات من خلال مجموعتنا من الأوراق البيضاء، البودكاست، الندوات، والمزيد.
شاهد Exabeam في العمل
اطلب عرضًا توضيحيًا لترى كيف تساعد Exabeam فرق عمليات الأمن في تأمين المؤسسة.
ستتعلم كيف:
- مراقبة وتحليل سلوك الأفراد والوكلاء للكشف عن المخاطر
- تحقيق في التهديدات باستخدام جداول زمنية مبنية بواسطة الآلات.
- استخدم الذكاء الاصطناعي متعدد الوكلاء لتحسين عمليات الكشف والتحقيق والاستجابة.
- تطبيق كتيبات اللعب لتوجيه القرارات
- دعم متطلبات الامتثال
قائد حائز على جوائز في مجال الأمن