shouldiuse.io

Report

Should I Use Google Threat Intelligence?

gtidocs.virustotal.com·Analyzed 9 hours ago··Based on 13 sources

Depends

Depends

Buy it if you run a serious SOC — ideally already on Google SecOps/Chronicle — and want Mandiant plus VirusTotal intel in one platform.

Enterprise threat intel uniting VirusTotal + Mandiant. Overkill without a SOC; pricing and packaging are unclear.

Confidence: Medium

4.5/5

G2 rating

735 reviews

$20.00

Starting price

G2 listed; upper range truncated in sources

Available

Enterprise tier

via Google SecOps packaging docs

Feature depth5

Unifies VirusTotal, Mandiant, Google data; many use cases

Pros

  • Unifies VirusTotal, Mandiant, and Google threat data in one platform¹
  • 4.5/5 across 735 G2 reviews²
  • Prebuilt integrations: Elastic, ServiceNow, XSOAR, ThreatConnect
  • Documented playbooks for incident response, vulnerability management, dark web monitoring
  • Backed by Google Threat Intelligence Group's original research and reporting10

Cons

  • Buyers confused whether it's standalone or a Chronicle/SecOps add-on³
  • Mandiant's best content reportedly not fully included at base access
  • Intel only pays off if your team feeds it into a SIEM
  • Product docs security page returns no content

Gotchas

  • highOften sold alongside Google SecOps/Chronicle; confirm standalone availability before purchase³
  • mediumReal SOC deployment cost is quote-based; the $20 G2 figure won't reflect enterprise tiers
  • lowIDC business-value report is vendor-commissioned; validate ROI independently12
  • lowDocs security page currently empty; request compliance details from Google directly

Best for

  • SOCs already on Google SecOps/Chronicle
  • Threat intel teams wanting Mandiant + VirusTotal together
  • Enterprise vulnerability-management programs
  • MDR providers building on the Google stack

Not for

  • Small teams with no dedicated SOC or analysts
  • Buyers needing transparent, self-serve pricing
  • Orgs outside the Google security stack — expect bundle confusion
  • Anyone who just needs file/URL reputation lookups

Companies that use it

  • Deepwatch11

Pricing

G2 listed

from $20.00

  • Entry price per G2 listing; full range not shown in sources

Enterprise

Quote-based

  • Packaged within Google SecOps tiers
  • Bundling vs standalone unclear per buyer questions

Security

No known public vulnerabilities found in the sources reviewed.

What users say

Users rate it 4.5/5 on G2 (735 reviews), but Reddit threads show real confusion over how it's packaged with Chronicle/SecOps.

Can I get it as a seperate platform
Reddit, r/cybersecurity

Alternatives

Compare Google Threat Intelligence with each alternative.

Recorded Future

Most-compared rival in Reddit threat-intel discussions

Full analysis

Based on 30+ public sources; pricing and support evidence is thin.

Sources

  1. review
  2. review
  3. review
  4. review
  5. review
  6. official
  7. official
  8. Google SecOps packages overviewdocs.cloud.google.com
    official
  9. official
  10. news
  11. official
  12. official
  13. official

Rate this review

Anonymous. You can change your vote.

Loading votes…

Ask a follow-up

Ask if a use case fits. Answers stay inside this report and its sources.

    Comments

    One queue. No replies. Give a display name first. Limit: 7 comments per day.

    Save a name to write a comment.

    No comments yet.