Skip to main content
Cloud / Google Cloud / Products / Mandiant Hunt - Threat Hunting by Mandiant Experts

Mandiant Hunt - Threat Hunting by Mandiant Experts

Mandiant Hunt is listed in Google Cloud's security catalog for expert-led threat hunting in Google SecOps and links to Mandiant Threat Defense.

Security
Pricing Model Price on request; Google Cloud does not publish a price list
Availability Delivered natively in Google Security Operations (Google SecOps)
Data Sovereignty Per provider / see official documentation
Reliability SLA per provider / see official documentation SLA

Mandiant Hunt is listed in Google Cloud’s security catalog for expert-led threat hunting that takes place directly in Google Security Operations.

What Is Mandiant Hunt?

Google Cloud lists Mandiant Hunt in its official security catalog under Security operations with the description of uncovering hidden attacks with elite threat hunters by your side. The catalog names identifying detection and visibility gaps, reducing attacker dwell time, and hunting on 12 months of hot data directly within Google SecOps as its characteristics.

The catalog entry points to a product page currently titled Mandiant Threat Defense. There, Google Cloud describes comprehensive active threat detection across the full security stack, efficient prioritization of critical security cases, expert-led rapid response, and AI-assisted threat hunting — delivered natively in Google Security Operations and supported by a designated Mandiant expert.

Core Features

  • Intelligence-led hunting: Based on up-to-the-minute intelligence from Mandiant incident response engagements and vast telemetry from Google Threat Intelligence
  • Human-led hunting: Mandiant experts have exposed a wide range of threat actors, from insiders to financially motivated to state-sponsored
  • AI assistance: Security models trained on Google Threat Intelligence and observed attacker behavior automatically create and execute threat hunts
  • Prioritization: A proprietary case prioritization model supports efficient investigation and response for high severity cases
  • Response: Expert-led investigations and scaled SOAR playbooks, with Gemini for enhanced remediation recommendations

Typical Use Cases

Uncover Hidden Attacks

Continuous threat hunting on 12 months of hot data directly within Google SecOps.

Close Detection Gaps

Mandiant experts provide targeted tuning recommendations, working side by side with your security team or MSSP.

Handover to Incident Response

When an incident is confirmed, the investigation escalates seamlessly to Mandiant Incident Response.

Benefits

  • Native to Google SecOps: No separate tool stack required for hunting and investigation
  • Human plus AI: Expert knowledge complemented by security models trained on attacker behavior
  • Traceable results: Investigation results mapped to MITRE ATT&CK
  • Reporting for decision makers: Native Google SecOps dashboards for executive-level reporting

Integration with innFactory

As a certified Google Cloud partner, innFactory supports you with Mandiant Hunt: assessing the right scope of service, preparing your Google SecOps environment, and implementing tuning and remediation recommendations.

Typical Use Cases

Uncovering hidden attacks with threat hunters
Identifying detection and visibility gaps
Reducing attacker dwell time

Technical Specifications

Ai support Security models trained on Google Threat Intelligence and observed attacker behavior
Data basis Hunt on 12 months of hot data directly within Google SecOps
Intelligence Mandiant incident response and Google Threat Intelligence
Platform Google Security Operations (Google SecOps)

Frequently Asked Questions

What is Mandiant Hunt?

Mandiant Hunt is listed in Google Cloud's official security catalog with the description of uncovering hidden attacks with elite threat hunters by your side. Google Cloud lists identifying detection and visibility gaps, reducing attacker dwell time, and hunting on 12 months of hot data directly within Google SecOps as its characteristics.

Where does the catalog entry for Mandiant Hunt point?

The security catalog entry links to the product page at cloud.google.com/security/products/mandiant-managed-threat-hunting. That page is currently titled Mandiant Threat Defense and describes comprehensive active threat detection, threat hunting, and rapid response by Mandiant experts, delivered natively in Google Security Operations.

How do the threat hunters work?

Google Cloud describes the approach as intelligence-led, human-led, and AI-assisted. Hunting is defined by up-to-the-minute intelligence from Mandiant incident response engagements and telemetry from Google Threat Intelligence. Mandiant experts also leverage security models trained on Google Threat Intelligence and attacker behavior observed in incident response engagements to automatically create and execute threat hunts.

How are results presented?

According to Google Cloud, investigation results are mapped to MITRE ATT&CK. Executive-level security reporting is available through native dashboards in Google SecOps.

What happens when an incident is confirmed?

Google Cloud states that investigations escalate seamlessly to Mandiant Incident Response for rapid incident resolution.

Note: All product information on this page has been compiled with care, but is provided without guarantee and may be outdated or incomplete. Cloud services evolve rapidly — features, pricing, SLAs, and availability change frequently. Authoritative and up-to-date information can only be found on the official product page of Google Cloud (official documentation). This page does not represent an offer by Google Cloud.

Google Cloud Partner

innFactory is a certified Google Cloud Partner. We provide expert consulting, implementation, and managed services.

Google Cloud Partner

Similar Products from Other Clouds

Other cloud providers offer comparable services in this category. As a multi-cloud partner, we help you choose the right solution.

AWS

AWS Continuum: AI-Driven Security Platform

AWS Continuum discovers, prioritises, validates, and remediates security risks across the software lifecycle, with …

Pricing No official pricing page published yet
SLA Per provider / see official documentation
Compare →
AWS

AWS European Sovereign Cloud: Sovereign AWS Partition in the EU

AWS European Sovereign Cloud: an independent AWS partition with its first Region in Brandenburg, generally available …

Pricing Billed per service used, see official …
SLA Per provider / see official documentation
Compare →
AWS

AWS Payment Cryptography - Managed Payment HSM

AWS Payment Cryptography provides payment cryptographic operations and key management as a managed service, without …

Pricing Per active key per month plus per API …
SLA As stated by the provider; see official documentation
Compare →
AWS

AWS Private Certificate Authority: Managed Private PKI

AWS Private CA creates private certificate authority hierarchies and issues X.509 certificates for internal resources, …

Pricing Monthly price per private CA …
SLA Per provider / see official documentation
Compare →
AWS

AWS Security Incident Response: Managed Incident Response

AWS Security Incident Response automatically triages security findings and gives you 24/7 access to AWS security …

Pricing Billed by the number of security …
SLA Per provider / see official documentation
Compare →
AWS

AWS Signer - Managed Code Signing

AWS Signer signs Lambda packages, container images and IoT firmware from a central signing environment and manages the …

Pricing No additional charge when used with …
SLA As stated by the provider; see official documentation
Compare →

56 comparable products found across other clouds.

Ready to start with Mandiant Hunt - Threat Hunting by Mandiant Experts?

Our certified Google Cloud experts help you with architecture, integration, and optimization.

Schedule Consultation