Group findings by state change

Demonstrates how to group active findings by state change

Code sample

Java

static ImmutableList<GroupResult> groupActiveFindingsWithSourceAndCompareDuration(
    SourceName sourceName, Duration duration) {
  try (SecurityCenterClient client = SecurityCenterClient.create()) {
    // SourceName sourceName = SourceName.of(/*organization=*/"123234324",/*source=*/
    // "423432321");

    GroupFindingsRequest.Builder request =
        GroupFindingsRequest.newBuilder()
            .setParent(sourceName.toString())
            .setGroupBy("state_change")
            .setFilter("state=\"ACTIVE\"");
    request
        .getCompareDurationBuilder()
        .setSeconds(duration.getSeconds())
        .setNanos(duration.getNano());

    // Call the API.
    GroupFindingsPagedResponse response = client.groupFindings(request.build());

    // This creates one list for all findings.  If your organization has a large number of
    // findings
    // this can cause out of memory issues.  You can process them batches by returning
    // the Iterable returned response.iterateAll() directly.
    ImmutableList<GroupResult> results = ImmutableList.copyOf(response.iterateAll());
    System.out.println("Findings:");
    System.out.println(results);
    return results;
  } catch (IOException e) {
    throw new RuntimeException("Couldn't create client.", e);
  }
}

What's next

To search and filter code samples for other Google Cloud products, see the Google Cloud sample browser.