ReliaQuest’s GreyMatter agentic AI security operations platform is one of a group of cybersecurity technologies that now integrates with the Claude Compliance API, bringing Anthropic’s Claude Enterprise activity data directly into GreyMatter. Security and IT teams can now monitor, detect, investigate, and respond to Claude Enterprise activity through the same workflows they already run for every other enterprise application in their stack using GreyMatter—closing a gap that grows with every new AI deployment that sits outside those workflows.
The AI Visibility Gap Is Expanding
As enterprises deploy AI at scale, a new layer of activity is happening inside organizations that most security teams can’t see: An employee pastes API keys in a chat without realizing it. A user uploads proprietary files or creates artifacts containing sensitive data. That activity data exists, but if it isn't connected to security operations workflows, none of it gets detected or investigated.
Anthropic recognized that enterprise security and compliance teams need the same visibility into Claude usage that they have for every other tool in their stack.
The Claude Compliance API makes that possible, providing security, compliance, and IT teams access to Claude Enterprise activity data. ReliaQuest’s integration now brings that data into the GreyMatter platform for detection, investigation, and response.
A Threat Is a Threat
The way security teams defend against different threat types may differ, but the need for visibility and fast response doesn’t change. Any technology deployed at enterprise scale, including AI tools, becomes part of the attack surface. Unauthorized access, misuse, suspicious activity patterns, configuration drift—these are security problems regardless of the application they happen in.
That belief is the foundation for this integration. AI is becoming embedded in how enterprises operate, how work gets done, how decisions are made, and how data is accessed. Wherever that’s happening, security teams need to be able to see it. Not because AI is inherently dangerous, but because you simply can’t defend what you can’t see.
What the Integration Does
ReliaQuest is using the Claude Compliance API to make Claude Enterprise data available within its GreyMatter agentic AI security operations platform.
Through the integration, security teams get access to activity logs: user logins, admin actions, settings and configuration changes that GreyMatter pulls in as needed alongside data from every other tool in their environment.
With this connection, security teams can build Claude-specific detections that run directly against the API data, eliminating the need for expensive long-term data storage. GreyMatter will also automatically enrich any investigation with information from Claude Enterprise and take warranted response actions, such as deleting a project, chat, or even a chat file.
GreyMatter already connects to hundreds of security technologies, including SIEM, EDR, cloud, network, and email environments. Claude Enterprise is now part of that same fabric, so when suspicious activity surfaces in Claude, such as anomalous authentication patterns, GreyMatter can correlate that signal and execute a response across any connected tool: disabling the user in your IdP, banning a file hash in EDR, or blocking a domain at the network layer.
The connection to the Compliance API also allows GreyMatter's Agentic Teammates—role-based AI personas that autonomously execute security operations workflows—to operate against Claude Enterprise activity data. An analyst can ask a Teammate in natural language to surface authentication anomalies or configuration changes tied to a specific user; the Detection Engineer Teammate can build and validate Claude-specific detection rules; and the Threat Hunter Teammate can include Claude activity logs in hunts across the full technology stack.
AI Observability Is the Next Layer of Enterprise Defense
Every AI tool an enterprise deploys is a tool that security teams need visibility into. The organizations connecting that data to their detection and response workflows will no longer need to build it from scratch when the next AI application rolls out.
ReliaQuest GreyMatter is the platform that makes agentic defense possible at the enterprise. With this integration, Claude Enterprise data contributes to that defense, expanding visibility into one more layer that security teams need to see.

