[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Hard to understand","hardToUnderstand","thumb-down"],["Incorrect information or sample code","incorrectInformationOrSampleCode","thumb-down"],["Missing the information/samples I need","missingTheInformationSamplesINeed","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2025-09-04 UTC."],[[["\u003cp\u003eStealthwatch V6.10, now known as Cisco Secure Network Analytics, can be integrated with Google Security Operations SOAR using integration version 4.0.\u003c/p\u003e\n"],["\u003cp\u003eThe integration offers a "Ping" action to test connectivity, which runs on all entities and requires no parameters.\u003c/p\u003e\n"],["\u003cp\u003eThe "Search Events" action allows users to retrieve security events from a host within a specified time frame, operating on the IP Address entity.\u003c/p\u003e\n"],["\u003cp\u003eThe "Search Flows" action enables retrieval of network flows associated with an IP address for a defined period, including options to limit results, and operates on the IP Address entity.\u003c/p\u003e\n"]]],[],null,["# Stealthwatch V6.10\n==================\n\nIntegration version: 4.0\n| **Important:** Stealthwatch was acquired by Cisco and became Cisco Secure Network Analytics. This integration specifically refers to version 6.10 of the product.\n\nConfigure Stealthwatch V6.10 integration in Google Security Operations\n----------------------------------------------------------------------\n\nFor detailed instructions on how to configure an integration in\nGoogle SecOps, see [Configure\nintegrations](/chronicle/docs/soar/respond/integrations-setup/configure-integrations).\n\nActions\n-------\n\n### Ping\n\n#### Description\n\nTest Connectivity.\n\n#### Parameters\n\nN/A\n\n#### Run On\n\nThis action runs on all entities.\n\n#### Action Results\n\n##### Entity Enrichment\n\nN/A\n\n##### Insights\n\nN/A\n\n##### Script Result\n\n##### JSON Result\n\n N/A\n\n### Search Events\n\n#### Description\n\nGet the security events from a host for a given time frame.\n\n#### Parameters\n\n#### Run On\n\nThis action runs on the IP Address entity.\n\n#### Action Results\n\n##### Entity Enrichment\n\nN/A\n\n##### Insights\n\nN/A\n\n##### Script Result\n\n##### JSON Result\n\n N/A\n\n### Search Flows\n\n#### Description\n\nGet flows by an IP address for a given time frame.\n\n#### Parameters\n\n#### Run On\n\nThis action runs on the IP Address entity.\n\n#### Action Results\n\n##### Entity Enrichment\n\nN/A\n\n##### Insights\n\nN/A\n\n##### Script Result\n\n##### JSON Result\n\n N/A\n\n**Need more help?** [Get answers from Community members and Google SecOps professionals.](https://security.googlecloudcommunity.com/google-security-operations-2)"]]