Monitoring Splunk

Issue with Security Command Center Logs Not Appearing in Splunk

AL3Z
Builder

Hi,


We set up Security Command Center to send alerts to Splunk for detecting mining activity. However, I've observed that we're not receiving SCC logs in Splunk at the moment. What steps can we take to resolve this issue?

Thanks

0 Karma
1 Solution

richgalloway
SplunkTrust
SplunkTrust

How are you getting SCC events into Splunk?  Are you using the add-on (https://splunkbase.splunk.com/app/6426)?

Have you seen the docs at https://cloud.google.com/security-command-center/docs/how-to-configure-scc-splunk?

---
If this reply helps you, Karma would be appreciated.

View solution in original post

richgalloway
SplunkTrust
SplunkTrust

How are you getting SCC events into Splunk?  Are you using the add-on (https://splunkbase.splunk.com/app/6426)?

Have you seen the docs at https://cloud.google.com/security-command-center/docs/how-to-configure-scc-splunk?

---
If this reply helps you, Karma would be appreciated.
Get Updates on the Splunk Community!

Splunk Observability Cloud’s AI Assistant in Action Series: Analyzing and ...

This is the second post in our Splunk Observability Cloud’s AI Assistant in Action series, in which we look at ...

Elevate Your Organization with Splunk’s Next Platform Evolution

 Thursday, July 10, 2025  |  11AM PDT / 2PM EDT Whether you're managing complex deployments or looking to ...

Splunk Answers Content Calendar, June Edition

Get ready for this week’s post dedicated to Splunk Dashboards! We're celebrating the power of community by ...