Google + Mandiant: Transforming Security Operations and Incident Response
![https://storage.googleapis.com/gweb-cloudblog-publish/images/cloud_x_mandiant.max-2600x2600.jpg](https://storage.googleapis.com/gweb-cloudblog-publish/images/cloud_x_mandiant.max-2600x2600.jpg)
Thomas Kurian
CEO, Google Cloud
Over the past two decades, Google has innovated to build some of the largest and most secure computing systems in the world. This scale requires us to deliver pioneering approaches to cloud security, which we pass on to our Google Cloud customers. We are committed to solving hard security problems like only Google can, as the tip of the spear of innovation and threat intelligence.
Today weâre excited to share the next step in this journey with the completion of our acquisition of Mandiant, a leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant shares our cybersecurity vision and will join Google Cloud to help organizations improve their threat, incident and exposure management.
Combining Google Cloudâs existing security portfolio with Mandiantâs leading cyber threat intelligence will allow us to deliver a security operations suite to help enterprises globally stay protected at every stage of the security lifecycle. With the scale of Googleâs data processing, novel analytics approaches with AI and machine learning, and a focus on eliminating entire classes of threats, Google Cloud and Mandiant will help organizations reinvent security to meet the requirements of our rapidly changing world.
We will retain the Mandiant brand and continue Mandiantâs mission to make every organization secure from cyber threats and confident in their readiness.
![https://storage.googleapis.com/gweb-cloudblog-publish/images/1_cloud_x_man.max-2000x2000.jpg](https://storage.googleapis.com/gweb-cloudblog-publish/images/1_cloud_x_man.max-2000x2000.jpg)
![https://storage.googleapis.com/gweb-cloudblog-publish/images/1_cloud_x_man.max-2000x2000.jpg](https://storage.googleapis.com/gweb-cloudblog-publish/images/1_cloud_x_man.max-2000x2000.jpg)
Context and threat intelligence from the frontlines
Our goal is to democratize security operations with access to the best threat intelligence and built-in threat detections and responses. Ultimately, we hope to shift the industry to a more proactive approach focused on modernizing Security Operations workflows, personnel, and underlying technologies to achieve an autonomic state of existence â where threat management functions can scale as customersâ needs change and as threats evolve.
Today Google Cloud security customers use our cloud infrastructure to ingest, analyze and retain all their security telemetry across multicloud and on-premise environments. By leveraging our sub-second search across petabytes of information combined with security orchestration, automation and response capabilities, our customers can spend more time defending their organizations.Â
The addition of Mandiant Threat Intelligenceâwhich is compiled by their team of security and intelligence individuals spread across 22 countries, who serve customers located in 80 countriesâwill give security practitioners greater visibility and expertise from the frontlines. Mandiantâs experience detecting and responding to sophisticated cyber threat actors will offer Google Cloud customers actionable insights into the threats that matter to their businesses right now. We will continue to share groundbreaking Mandiant threat research to help support organizations, even for those who donât run on Google Cloud.
![https://storage.googleapis.com/gweb-cloudblog-publish/images/2_cloud_x_man.max-2000x2000.jpg](https://storage.googleapis.com/gweb-cloudblog-publish/images/2_cloud_x_man.max-2000x2000.jpg)
![https://storage.googleapis.com/gweb-cloudblog-publish/images/2_cloud_x_man.max-2000x2000.jpg](https://storage.googleapis.com/gweb-cloudblog-publish/images/2_cloud_x_man.max-2000x2000.jpg)
Advancing shared fate for security operations
Google Cloud operates in a shared fate model, taking an active stake in the security posture of our customers. For security operations that means helping organizations find and validate potential security issues before they become an incident.Â
Detecting, investigating and responding to threats is only part of better cyber risk management. Itâs also crucial to understand what an organization looks like from an attacker's perspective and if an organization's cybersecurity controls are as effective as expected.Â
By adding Mandiantâs attack surface management capabilities to Google Cloudâs portfolio, organizations will be able to continually monitor assets for exposures, enabling intelligence and red teams to move security programs from reactive to proactive to understand whatâs vulnerable, misconfigured and exposed.Â
Once an organizationâs attack surface is understood, validating existing security controls is critical. With Mandiant Security Validation, organizations will be able to continuously validate and measure the effectiveness of their cybersecurity controls across cloud and on-premise environments.
![https://storage.googleapis.com/gweb-cloudblog-publish/images/3_cloud_x_man.max-2000x2000.jpg](https://storage.googleapis.com/gweb-cloudblog-publish/images/3_cloud_x_man.max-2000x2000.jpg)
![https://storage.googleapis.com/gweb-cloudblog-publish/images/3_cloud_x_man.max-2000x2000.jpg](https://storage.googleapis.com/gweb-cloudblog-publish/images/3_cloud_x_man.max-2000x2000.jpg)
Transforming security operations and incident responseÂ
Security leaders and their teams often lack the resources and expertise required to keep pace with todayâs ever changing threats. Organizations already harness Googleâs security tools, expert advice and rich partner ecosystem to evolve their security program. Googleâs Autonomic Security Operations also serves as a prescriptive solution to guide our customers through this modernization journey.Â
With the addition of Mandiant to the Google Cloud family, we can now offer proven global expertise in comprehensive incident response, strategic readiness and technical assurance to help organizations mitigate threats and reduce business risk before, during and after an incident.
In addition, Google Cloudâs security operations suite will continue to provide a central point of intelligence, analysis and operations across on-premise environments, Google Cloud and other cloud providers. Google Cloud is also deeply committed to supporting our technology and solution partners, and this acquisition will enable system integrators, resellers and managed security service providers to offer broader solutions to customers.
Comments on the news
âThe power of stronger partnerships across the cybersecurity ecosystem is critical to driving value for clients and protecting industries around the globe. The combination of Google Cloud and Mandiant and their commitment to multicloud will further support increased collaboration, driving innovation across the cybersecurity industry and augmenting threat research capabilities. We look forward to working with them on this mission.â - Paolo Dal Cin, Global Lead, Accenture Security
âGoogle's acquisition of Mandiant, a leader in security advisory, consulting and incident response services will allow Google Cloud to deliver an end-to-end security operations suite with even greater capabilities and services to support customers in their security transformation across cloud and on-premise environments." - Craig Robinson, Research VP, Security Services, IDCÂ
âBringing together Mandiant and Google Cloud, two long-time cybersecurity leaders, will advance how companies identify and defend against threats. We look forward to the impact of this acquisition, both for the security industry and the protection of our customers.â - Andy Schworer, Director, Cyber Defense Engineering, Uber
We welcome Mandiant to the Google Cloud team, and together we look forward to helping security teams achieve so much more in defense of their organizations. You can read our release and Kevin Mandiaâs blog for more on this exciting news.