hi, maybe someone know if exist some tool / terraform provider / other solution which allow configure whole chronicle as a code instead of clickops?
If you are talking about SIEM, We are experimenting with Detection as Code. We are using the https://cloud.google.com/chronicle/docs/reference/detection-engine-api in github action to go through end-to-end deployment of a rule lifecycle. We will work harder over the next quarter on this and hopefully open source with the detections.
Hello !
Maybe the GitSync integration for Chronicle SOAR ?
You may wish to check out this Terraform provider which has just been open sourced by Form3tech
https://github.com/form3tech-oss/terraform-provider-chronicle