Google Cloud Platform is a suite of cloud computing services. Alongside a set of management tools, it provides a series of modular cloud services including computing, data storage, data analytics and machine learning. Google Cloud Platform provides infrastructure as a service, platform as a service, and serverless computing environments. In April 2008, Google announced App Engine, a platform for developing and hosting web applications in Google-managed data centers. Since the announcement of App Engine, Google added multiple cloud services to the platform. Google Cloud Platform is a part of Google Cloud, which includes the Google Cloud Platform public cloud infrastructure, as well as Google Workspace (G Suite), enterprise versions of Android and ChromeOS, and application programming interfaces (APIs) for machine learning and enterprise mapping services.
Getting data in
We recommend starting with Selecting the best method for Google data ingestion and then looking in more detail at options for the source types listed below.
| Source | Add-ons and Apps | Guidance |
|---|---|---|
ChromeGoogle Chrome is a widely used web browser developed by Google. Chrome offers a streamlined browsing experience with features such as tabbed browsing, synchronization across devices, integrated Google services, and advanced security protections. It supports a vast ecosystem of extensions and web applications, enabling users to customize their browsing experience, improve productivity, and enhance security. |
Splunk platform |
Configuration |
Cloud PlatformGoogle Cloud Platform is a suite of public cloud computing services offered by Google. The platform includes a range of hosted services for for compute, storage, networking, big data, machine learning and IoT, as well as cloud management, security and developer tools, with a variety of different products available. |
Splunk platform |
Configuration
Use Cases |
Kubernetes EngineGoogle Kubernetes Engine (GKE) provides a managed environment for deploying, managing, and scaling your containerized applications using Google infrastructure. The GKE environment consists of multiple machines (specifically, Compute Engine instances) grouped together to form a cluster. |
Splunk Observability Cloud |
Configuration |
Pub/SubGoogle Pub/Sub is used for streaming analytics and data integration pipelines to ingest and distribute data. It enables the user to create systems of event producers and consumers, called publishers and subscribers. Publishers communicate with subscribers asynchronously by broadcasting events to the Pub/Sub service. Pub/Sub then delivers events to all services that need to react to them. In the Common Information Model, Google Pub/Sub data can be mapped to the Authentication data model. |
|
External Resources Configuration Use Cases |
WorkspaceGoogle Workspace, formerly GSuite, provides custom email for businesses and include collaboration tools like Gmail, Calendar, Meet, Chat, Drive, Docs, Sheets, Slides, Forms, Sites, and more. The Splunk Add-on for Google Workspace allows a Splunk administrator to collect Google Workspace event data using Google Workspace APIs. You can then analyze the data in the Splunk platform. |
Splunk platform Splunk SOAR |
Configuration
Use Cases External Resources |
BigQueryBigQuery is Google Cloud's fully managed and completely serverless enterprise data warehouse. BigQuery supports all data types, works across clouds, and has built-in machine learning and business intelligence, all within a unified platform. |
Splunk SOAR |
Configuration |

