Press Release

Cribl Enables Granular Control of Event-Level Data with Google Security Operations Ingestion API Integration

New integration empowers security teams with enhanced event labeling and faster, more precise incident response

Date: November 13, 2025

SAN FRANCISCO, CA – November 13, 2025 – Cribl, the Data Engine for IT and Security, today announced a new integration with Google Security Operations Ingestion API. This integration establishes Cribl Stream as a high-performance pathway for routing high-volume and high-variety telemetry data into Google Security Operations. 

The new integration provides customers with a best-in-class data pipeline that offers superior scale and performance through optimized batch sizing and quadrupled throughput. Customers can now use Cribl Stream’s integration with the Ingestion API to simplify data ingestion and enable per-event labeling. This granular control over event-level data allows for faster identification of critical security events, leading to improved efficiency and a stronger security posture. 

“Security teams are drowning in data, and with this new integration, we’re giving customers per-event labeling to make it easier to quickly identify and act on critical events,” said Vlad Melnik, Vice President of Global Alliances at Cribl. “By integrating the power of Cribl Stream with  Google Security Operations Ingestion API, we’re giving customers an unprecedented level of choice, control, and flexibility. This move cuts through the data noise, accelerates the ability to triage and respond to incidents, and further establishes Cribl’s commitment to providing customers with a high-scale data pipeline across the ecosystem.”  

Unlocking Per-Event Labeling for Enhanced Security

With the introduction of per-event labeling, customers can move beyond tagging data at the batch level and can now apply high-fidelity labels and metadata to individual security events before they are routed into Google Security Operations. This granular control improves incident response times, offering several immediate benefits: 

  • Accelerated Prioritization: Security analysts can instantly filter and prioritize events based on specific, high-value labels. 

  • Streamlined Investigation: Metadata is preserved and applied at the source, reducing the time needed to categorize and investigate critical alerts. 

  • Increased Control: Customers sending data to Google Security Operations can gain additional control and efficiency. 

The new integration is available today in Cribl Stream. More information about how customers can immediately take advantage of this new integration is available here. 

About Cribl

Cribl is the AI Platform for Telemetry, purpose-built for IT and security data. Cribl's platform is a single, shared infrastructure that powers its own SIEM, observability, AI SOC, and other solutions, alongside custom applications people and AI agents build on top of it. Cribl provides a control plane to route and govern AI traffic, protect sensitive data, and monitor AI usage, cost, performance, and risk, so they can investigate issues and take action faster. Trusted by over half of the Fortune 100, Cribl gives IT and security teams the choice, control, and flexibility to build custom tools, run ready-made solutions, or route data anywhere, without paying to store it twice. Founded in 2018, Cribl is remote-first with an office in San Francisco.

Learn more: cribl.io
Try now: Cribl Sandboxes
Join us: Slack community
Follow us: LinkedIn and X

Have a Press Inquiry? Please Reach Out