Skip to Content

Supported Sources

GreyMatter connects to the sources listed in the table below either directly or indirectly.

  • Direct Connection: GreyMatter connects directly to the source technology via API, enabling real-time data retrieval and potential response actions.
  • Indirect Connection: GreyMatter accesses the source's data via a storage solution (SIEM,Data Lake, etc.), where the data is first collected and stored before GreyMatter retrieves it.
Source TechnologiesGreyMatter Connection MethodStorage Solution Compatibility (Indirect Connection)
*nix DHCPIndirectExabeam New-Scale SIEM
*nix Operating System (OS)IndirectMicrosoft Azure Sentinel, Devo Platform, IBM QRadar, Exabeam New-Scale SIEM, Palo Alto Networks Cortex XSIAM, Cisco Splunk, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM
1Password Password ManagerIndirectCisco Splunk, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Google GCP Security Operations, IBM QRadar
Abnormal AI Email SecurityDirect & IndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk, Microsoft Azure Sentinel, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM
AbuseIPDB LLC Threat IntelligenceDirect
Akamai App & API ProtectorIndirectIBM QRadar, Cisco Splunk, The OpenSearch Project OpenSearch
Akamai GuardicoreIndirectGoogle GCP Security Operations
Amazon AWS CloudDirect
Amazon AWS CloudFrontIndirectSumo Logic Log Analytics Platform
Amazon AWS CloudTrailDirect & IndirectMicrosoft Azure Sentinel, Exabeam New-Scale SIEM, Amazon AWS Security Lake, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Sumo Logic Log Analytics Platform, Devo Platform, Google GCP Security Operations, IBM QRadar
Amazon AWS CloudWatchIndirectCisco Splunk, The OpenSearch Project OpenSearch
Amazon AWS ConfigIndirectGoogle GCP Security Operations, Devo Platform
Amazon AWS Elastic Kubernetes Service (EKS)IndirectIBM QRadar, Google GCP Security Operations, Devo Platform
Amazon AWS GuardDutyDirect & IndirectIBM QRadar, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Devo Platform, Cisco Splunk, Google GCP Security Operations
Amazon AWS OpenSearch ServiceIndirectDevo Platform, Google GCP Security Operations
Amazon AWS Route 53Direct & IndirectAmazon AWS Security Lake, Google GCP Security Operations
Amazon AWS Security HubIndirectCisco Splunk
Amazon AWS Security LakeDirect
Amazon AWS ShieldIndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform
Amazon AWS VPC Flow DataDirect & IndirectGoogle GCP Security Operations, Microsoft Azure Sentinel, Devo Platform, Cisco Splunk
Amazon AWS WAFIndirectGoogle GCP Security Operations
Apache KafkaIndirectCisco Splunk, Google GCP Security Operations
Apache TomcatIndirectExabeam New-Scale SIEM, Cisco Splunk, Datadog Cloud SIEM, SentinelOne Singularity AI SIEM, Devo Platform, Google GCP Security Operations, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM
Appgate Universal Zero Trust Network Access (ZTNA)IndirectGoogle GCP Security Operations
Apple macOSIndirectGoogle GCP Security Operations
Aqua Security Cloud Workload ProtectionDirect
Arctic Wolf Aurora Endpoint SecurityDirect & IndirectGoogle GCP Security Operations, Cisco Splunk, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, IBM QRadar, Palo Alto Networks Cortex XSIAM
Arista Networks Network Detection and Response (NDR)IndirectCisco Splunk, Google GCP Security Operations
Armis CentrixDirect
Atomicorp OSSECIndirectCisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations
Auth0 PlatformIndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform
Axonius PlatformDirect
Barracuda Cloud Gen FirewallIndirectIBM QRadar, Google GCP Security Operations
Barracuda Email ProtectionIndirectGoogle GCP Security Operations
BeyondTrust Endpoint Privilege Management (EPM)IndirectGoogle GCP Security Operations, Cisco Splunk, Exabeam New-Scale SIEM, IBM QRadar
BeyondTrust Password SafeIndirectIBM QRadar, Cisco Splunk, Google GCP Security Operations
BeyondTrust Privileged Remote AccessIndirectCisco Splunk, Exabeam New-Scale SIEM
BeyondTrust Remote SupportIndirectCisco Splunk
BitSight Security Performance ManagementIndirectCisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar
Bitdefender GravityZone Endpoint Detection and Response (EDR)Direct & IndirectIBM QRadar, Microsoft Azure Sentinel, Cisco Splunk
BlueCat Networks Integrity (Adonis)IndirectGoogle GCP Security Operations, Devo Platform, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM
Box Cloud StorageIndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk, Devo Platform
Bravura Security Bravura IdentityIndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform
Bravura Security Bravura PrivilegeIndirectCisco Splunk, Google GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform
Cato Networks Cloud PlatformIndirectGoogle GCP Security Operations, IBM QRadar, Microsoft Azure Sentinel, Devo Platform, SentinelOne Singularity AI SIEM
Cato Networks Secure Access Service Edge (SASE)Direct
Check Point CloudGuardIndirectGoogle GCP Security Operations, IBM QRadar
Check Point Data Loss Prevention (DLP)IndirectMicrosoft Azure Sentinel, Exabeam New-Scale SIEM, IBM QRadar, Google GCP Security Operations
Check Point Enterprise Cloud Email SecurityIndirectCisco Splunk
Check Point FirewallIndirectIBM QRadar, Devo Platform, Google GCP Security Operations, Exabeam New-Scale SIEM, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Cisco Splunk
Check Point Harmony Email SecurityDirect
Check Point Remote Access VPNIndirectIBM QRadar, Microsoft Azure Sentinel, Google GCP Security Operations, Exabeam New-Scale SIEM
Check Point SandBlast: Threat Extraction & EmulationIndirectGoogle GCP Security Operations, IBM QRadar
Check Point Security ManagementDirect & IndirectCisco Splunk, IBM QRadar, Google GCP Security Operations, Devo Platform
Check Point SmartDefenseIndirectCisco Splunk, IBM QRadar, Google GCP Security Operations, Microsoft Azure Sentinel, Exabeam New-Scale SIEM
Check Point URL FilteringIndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk, Microsoft Azure Sentinel, Exabeam New-Scale SIEM
Cisco Adaptive Security Appliance (ASA)Direct & IndirectCisco Splunk, Google GCP Security Operations, Devo Platform, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar, SentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel
Cisco AnyConnectIndirectDevo Platform, SentinelOne Singularity AI SIEM, Cisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar
Cisco Duo SecurityDirect & IndirectGoogle GCP Security Operations, SentinelOne Singularity AI SIEM, CrowdStrike Falcon Next-Gen SIEM, Devo Platform, Sumo Logic Log Analytics Platform, Datadog Cloud SIEM, Microsoft Azure Sentinel, IBM QRadar, Cisco Splunk
Cisco Event Streamer (eStreamer)IndirectCisco Splunk
Cisco FirePowerIndirectSentinelOne Singularity AI SIEM, Google GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM, Microsoft Azure Sentinel
Cisco Identity Services Engine (ISE)IndirectSentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM, Cisco Splunk, Devo Platform, Google GCP Security Operations, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM
Cisco MerakiDirect & IndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk, Devo Platform, Exabeam New-Scale SIEM, IBM QRadar, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM
Cisco Networking Software NX-OSIndirectCisco Splunk, SentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations
Cisco NexusIndirectCrowdStrike Falcon Next-Gen SIEM
Cisco Platform Exchange Grid (pxGrid)Direct
Cisco Secure EmailIndirectIBM QRadar
Cisco Secure EndpointDirect & IndirectGoogle GCP Security Operations, IBM QRadar, Microsoft Azure Sentinel, Cisco Splunk
Cisco Secure Firewall Management Center (FMC)Direct
Cisco Secure Network AnalyticsDirect
Cisco Secure Web ApplianceIndirectIBM QRadar
Cisco SnortIndirectIBM QRadar, Exabeam New-Scale SIEM
Cisco SplunkDirect & IndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk
Cisco Splunk Security Orchestration Automation and Response (SOAR)Direct
Cisco UmbrellaDirect & IndirectSumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, IBM QRadar, Devo Platform, Google GCP Security Operations, Cisco Splunk
Cisco Wireless LAN Controller (WLC)IndirectIBM QRadar
Citrix Netscaler Content FilteringIndirectPalo Alto Networks Cortex XSIAM
Citrix Netscaler Gateway VPNIndirectSumo Logic Log Analytics Platform, Exabeam New-Scale SIEM, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, IBM QRadar
Citrix Netscaler Web Application Firewall (WAF)IndirectSumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations
Citrix Virtual Apps and DesktopsIndirectCisco Splunk, Datadog Cloud SIEM, The OpenSearch Project OpenSearch
Claroty XDome for HealthcareDirect
Claroty xDomeDirect & IndirectGoogle GCP Security Operations
CloudFlare Content Delivery Network (CDN)IndirectIBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Cisco Splunk, Microsoft Azure Sentinel
CloudFlare DDoS ProtectionIndirectGoogle GCP Security Operations
CloudFlare DNSIndirectCisco Splunk, Google GCP Security Operations
CloudFlare Magic FirewallIndirectCisco Splunk, Google GCP Security Operations
CloudFlare Secure Web Gateway (SWG)IndirectGoogle GCP Security Operations
CloudFlare Web Application Firewall (WAF)Direct & IndirectCisco Splunk, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, IBM QRadar
CloudFlare Zero Trust Network Access (ZTNA)IndirectCisco Splunk, Google GCP Security Operations
Cofense PhishMe SAT PlatformIndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar
Cofense Triage Email AnalyticsIndirectGoogle GCP Security Operations
Corelight Open NDR PlatformIndirectCisco Splunk
Cribl Inc CriblIndirectCisco Splunk
CrowdStrike Falcon Adversary IntelligenceDirect
CrowdStrike Falcon Fusion SOARDirect
CrowdStrike Falcon Identity ProtectionDirect & IndirectDevo Platform, IBM QRadar, Cisco Splunk
CrowdStrike Falcon Insight XDRDirect & IndirectMicrosoft Azure Sentinel, CrowdStrike Falcon Long Term Repository, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Devo Platform, IBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Exabeam New-Scale SIEM
CrowdStrike Falcon LogScaleDirect
CrowdStrike Falcon Long Term RepositoryDirect
CrowdStrike Falcon MalQueryDirect
CrowdStrike Falcon Next-Gen SIEMDirect & IndirectSumo Logic Log Analytics Platform, IBM QRadar
CrowdStrike Falcon PreventDirect & IndirectMicrosoft Azure Sentinel, Sumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM, CrowdStrike Falcon Long Term Repository, Devo Platform
CrowdStrike Falcon SpotlightDirect & IndirectDevo Platform
CybeReason Endpoint Detection and Response (EDR)IndirectIBM QRadar, Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform
CybeReason Next-Generation AntivirusIndirectSumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar, Cisco Splunk
CyberArk Enterprise Password Vault (EPV)IndirectCisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM, Devo Platform
CyberArk Privileged Threat Analytics (PTA)IndirectExabeam New-Scale SIEM, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, SentinelOne Singularity AI SIEM, Cisco Splunk, IBM QRadar, Devo Platform
CyberArk Workforce IdentityDirect & IndirectGoogle GCP Security Operations, Cisco Splunk, SentinelOne Singularity AI SIEM
DOPE.SECURITY Inc Secure Web Gateway (SWG)IndirectGoogle GCP Security Operations
Darktrace ActiveAI Security PlatformDirect & IndirectIBM QRadar, Microsoft Azure Sentinel, Cisco Splunk, Google GCP Security Operations
Datadog Cloud SIEMDirect
Delinea Secret ServerIndirectMicrosoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Exabeam New-Scale SIEM, Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar
Devo PlatformDirect & IndirectDevo Platform, IBM QRadar, Microsoft Azure Sentinel
Docker BusinessIndirectGoogle GCP Security Operations
Dragos PlatformDirect
Elastic ElasticsearchDirect
Epic Electronic Medical Records (EMR)IndirectGoogle GCP Security Operations, Cisco Splunk, IBM QRadar
Exabeam Data Lake LegacyDirect & IndirectExabeam New-Scale SIEM
Exabeam LogRhythm Case ManagementDirect & IndirectCisco Splunk
Exabeam LogRhythm FIMIndirectDatadog Cloud SIEM
Exabeam LogRhythm NetMonIndirectDatadog Cloud SIEM
Exabeam LogRhythm SIEMDirect & IndirectGoogle GCP Security Operations
Exabeam New-Scale Advanced AnalyticsDirect & IndirectExabeam New-Scale SIEM
Exabeam New-Scale SIEMDirect & IndirectExabeam New-Scale SIEM
ExtraHop Reveal(X)Direct & IndirectGoogle GCP Security Operations, IBM QRadar, Exabeam New-Scale SIEM, Cisco Splunk, Devo Platform
Extreme Networks Access PointsIndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform
Extreme Networks RoutersIndirectCisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar
F5 Networks BIG-IP Access Policy Manager (APM)IndirectCisco Splunk
F5 Networks BIG-IP Application Security Manager (ASM)IndirectCisco Splunk, Google GCP Security Operations, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM
F5 Networks BIG-IP DNSIndirectCisco Splunk, Exabeam New-Scale SIEM
F5 Networks BIG-IP Local Traffic Manager (LTM)IndirectGoogle GCP Security Operations
Fastly Next-Gen WAFIndirectSumo Logic Log Analytics Platform, Cisco Splunk, Google GCP Security Operations
Fidelis Security DeceptionIndirectMicrosoft Azure Sentinel
Fidelis Security Endpoint (EDR)IndirectMicrosoft Azure Sentinel
Fidelis Security Network Data Loss PreventionIndirectMicrosoft Azure Sentinel
Fidelis Security Network NDRIndirectMicrosoft Azure Sentinel
Forcepoint Secure Web GatewayIndirectIBM QRadar, Cisco Splunk
Forcepoint V SeriesIndirectIBM QRadar
Forescout CounterActIndirectMicrosoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Cisco Splunk
Fortinet FortiEDRDirect
Fortinet FortiGate Next-Gen Firewall (NGFW)Direct & IndirectCrowdStrike Falcon Next-Gen SIEM, Devo Platform, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, Cisco Splunk, Google GCP Security Operations, IBM QRadar, Exabeam New-Scale SIEM
Fortinet FortiManagerDirect
Fortinet FortiSandboxIndirectGoogle GCP Security Operations
Fortra Agari Phishing DefenseIndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform
Fortra Globalscape Enhanced File Transfer (EFT)IndirectCisco Splunk
Fortra PowertechIndirectGoogle GCP Security Operations
GitHub EnterpriseIndirectCisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Devo Platform, SentinelOne Singularity AI SIEM
GitLab Code RepositoryIndirectDevo Platform, Cisco Splunk, Google GCP Security Operations
GoPhish Open-Source Phishing FrameworkIndirectSumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk, Google GCP Security Operations
Google GCP Apigee API ManagementIndirectGoogle GCP Security Operations
Google GCP CloudDirect
Google GCP Cloud Audit LogsDirect & IndirectDevo Platform, IBM QRadar, Cisco Splunk, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, Google GCP Security Operations
Google GCP Cloud DNSIndirectGoogle GCP Security Operations
Google GCP Cloud FirewallIndirectGoogle GCP Security Operations
Google GCP Cloud StorageDirect & IndirectGoogle GCP Security Operations
Google GCP Compute EngineDirect & IndirectGoogle GCP Security Operations
Google GCP Security Command Center (SCC)Direct & IndirectGoogle GCP Security Operations, Cisco Splunk
Google GCP Security OperationsDirect
Google GCP Security Operations SOARDirect
Google VirusTotalDirect
Google WorkspaceDirect & IndirectDevo Platform, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Cisco Splunk, IBM QRadar, Google GCP Security Operations
HPE Aruba Networking Access PointsIndirectGoogle GCP Security Operations
HPE Aruba Networking ClearPassIndirectGoogle GCP Security Operations
HPE Aruba Networking Mobility ControllerIndirectGoogle GCP Security Operations
HPE File StorageIndirectGoogle GCP Security Operations
HashiCorp VaultIndirectCisco Splunk, IBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform
IBM QRadarDirect
IBM i-SeriesIndirectGoogle GCP Security Operations
Imperva DDoS ProtectionIndirectDevo Platform, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM
Imperva Web Application FirewallIndirectDevo Platform, SentinelOne Singularity AI SIEM, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar
Imprivata Enterprise PlatformIndirectGoogle GCP Security Operations
Infoblox DDIDirect & IndirectIBM QRadar, Exabeam New-Scale SIEM, Sumo Logic Log Analytics Platform, Devo Platform, Cisco Splunk, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, Google GCP Security Operations
Infoblox IP Address Management (IPAM)IndirectGoogle GCP Security Operations
Infoblox NIOSDirect & IndirectDevo Platform, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, Cisco Splunk, Google GCP Security Operations, Exabeam New-Scale SIEM, IBM QRadar
Ironscales Email Security PlatformIndirectCisco Splunk, IBM QRadar
Island Enterprise BrowserIndirectCisco Splunk
Ivanti Connect SecureIndirectCisco Splunk, SentinelOne Singularity AI SIEM, IBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Devo Platform
Jamf ProIndirectGoogle GCP Security Operations
Jenkins CI/CDIndirectGoogle GCP Security Operations
Joe Security Joe SandboxDirect & IndirectGoogle GCP Security Operations
JumpCloud PlatformDirect & IndirectGoogle GCP Security Operations, Cisco Splunk, IBM QRadar
Juniper Junos OSIndirectCisco Splunk, IBM QRadar, Google GCP Security Operations
Juniper SRXDirect & IndirectGoogle GCP Security Operations, Cisco Splunk, IBM QRadar
Keeper Security Password ManagementIndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Cisco Splunk
KnowBe4 Enterprise Security AwarenessIndirectSumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar, Cisco Splunk
Kubernetes KubernetesIndirectIBM QRadar, Sumo Logic Log Analytics Platform, Cisco Splunk, Google GCP Security Operations
LastPass Password ManagerIndirectSumo Logic Log Analytics Platform, Cisco Splunk, Google GCP Security Operations, IBM QRadar
Malwarebytes Nebula Endpoint Detection & ResponseDirect
ManageEngine Password Manager ProIndirectGoogle GCP Security Operations
Microsoft Active DirectoryDirect & IndirectCisco Splunk, Sumo Logic Log Analytics Platform, The OpenSearch Project OpenSearch, Datadog Cloud SIEM, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM, Google GCP Security Operations, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, IBM QRadar
Microsoft Azure Application GatewayIndirectGoogle GCP Security Operations, Cisco Splunk
Microsoft Azure CloudDirect
Microsoft Azure DNSIndirectGoogle GCP Security Operations
Microsoft Azure Data ExplorerDirect
Microsoft Azure DevOpsIndirectIBM QRadar
Microsoft Azure FirewallIndirectCisco Splunk, Microsoft Azure Sentinel, Devo Platform, Google GCP Security Operations, IBM QRadar
Microsoft Azure Front DoorIndirectGoogle GCP Security Operations
Microsoft Azure Key VaultIndirectCisco Splunk
Microsoft Azure Logic AppsDirect
Microsoft Azure MonitorDirect & IndirectExabeam New-Scale SIEM, Microsoft Azure Sentinel
Microsoft Azure SQL DatabaseIndirectMicrosoft Azure Sentinel, Cisco Splunk
Microsoft Azure SentinelDirect
Microsoft Azure Subscription ActivityIndirectCisco Splunk, Devo Platform, CrowdStrike Falcon Next-Gen SIEM, Palo Alto Networks Cortex XSIAM, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations
Microsoft Azure URL FilteringIndirectGoogle GCP Security Operations
Microsoft DHCP ServerIndirectCrowdStrike Falcon Next-Gen SIEM, Datadog Cloud SIEM, Cisco Splunk, Microsoft Azure Sentinel, IBM QRadar, SentinelOne Singularity AI SIEM, Google GCP Security Operations, Sumo Logic Log Analytics Platform
Microsoft DNSIndirectMicrosoft Azure Sentinel, The OpenSearch Project OpenSearch, SentinelOne Singularity AI SIEM, Google GCP Security Operations, Datadog Cloud SIEM, IBM QRadar, Sumo Logic Log Analytics Platform, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM, Devo Platform
Microsoft Defender Vulnerability ManagementDirect
Microsoft Defender XDRDirect & IndirectExabeam New-Scale SIEM
Microsoft Defender for CloudDirect & IndirectIBM QRadar, Microsoft Azure Sentinel, Cisco Splunk, Exabeam New-Scale SIEM
Microsoft Defender for Cloud AppsDirect & IndirectMicrosoft Azure Sentinel, Cisco Splunk, Exabeam New-Scale SIEM, IBM QRadar
Microsoft Defender for EndpointDirect & IndirectSentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM, IBM QRadar, Microsoft Azure Sentinel, Cisco Splunk, Datadog Cloud SIEM, Sumo Logic Log Analytics Platform, Google GCP Security Operations
Microsoft Defender for IdentityDirect & IndirectGoogle GCP Security Operations, Cisco Splunk, Devo Platform, IBM QRadar, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, Sumo Logic Log Analytics Platform, Exabeam New-Scale SIEM
Microsoft Defender for IoTDirect
Microsoft Defender for Office 365Direct & IndirectCisco Splunk, IBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Exabeam New-Scale SIEM, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel
Microsoft Entra IDDirect & IndirectDevo Platform, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform, Cisco Splunk, SentinelOne Singularity AI SIEM, Palo Alto Networks Cortex XSIAM, The OpenSearch Project OpenSearch, Exabeam New-Scale SIEM, Microsoft Azure Sentinel
Microsoft Entra ID ProtectionDirect & IndirectSumo Logic Log Analytics Platform, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM
Microsoft Exchange OnlineDirect
Microsoft Exchange ServerIndirectDatadog Cloud SIEM, Google GCP Security Operations, Cisco Splunk, Devo Platform, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar, Sumo Logic Log Analytics Platform
Microsoft Hyper-VIndirectSentinelOne Singularity AI SIEM, CrowdStrike Falcon Next-Gen SIEM, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Datadog Cloud SIEM
Microsoft IISIndirectSumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar, SentinelOne Singularity AI SIEM, Datadog Cloud SIEM, Google GCP Security Operations, Microsoft Azure Sentinel, Palo Alto Networks Cortex XSIAM, Devo Platform, CrowdStrike Falcon Next-Gen SIEM
Microsoft IntuneDirect & IndirectCisco Splunk, Exabeam New-Scale SIEM, Google GCP Security Operations
Microsoft Office 365Direct & IndirectGoogle GCP Security Operations, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, IBM QRadar, Devo Platform, Exabeam New-Scale SIEM, Cisco Splunk
Microsoft Office 365 Cloud App SecurityDirect & IndirectDevo Platform
Microsoft OneDriveIndirectCisco Splunk, IBM QRadar, Microsoft Azure Sentinel, Datadog Cloud SIEM, CrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM, Google GCP Security Operations, Devo Platform, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform
Microsoft PowerShellIndirectCisco Splunk, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, The OpenSearch Project OpenSearch, CrowdStrike Falcon Next-Gen SIEM, Datadog Cloud SIEM, Google GCP Security Operations
Microsoft PurviewDirect & IndirectCisco Splunk, Google GCP Security Operations, Exabeam New-Scale SIEM, Devo Platform, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, IBM QRadar
Microsoft Purview Insider Risk ManagementDirect
Microsoft SQL ServerIndirectDatadog Cloud SIEM, Cisco Splunk, Microsoft Azure Sentinel, Google GCP Security Operations, The OpenSearch Project OpenSearch
Microsoft SharePointIndirectDevo Platform, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, IBM QRadar, SentinelOne Singularity AI SIEM, Cisco Splunk, Datadog Cloud SIEM, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform
Microsoft SysmonIndirectGoogle GCP Security Operations, The OpenSearch Project OpenSearch, SentinelOne Singularity AI SIEM, Datadog Cloud SIEM, IBM QRadar, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk
Microsoft WindowsIndirectExabeam New-Scale SIEM, SentinelOne Singularity AI SIEM, Google GCP Security Operations, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, IBM QRadar, Devo Platform, Datadog Cloud SIEM, Sumo Logic Log Analytics Platform, Palo Alto Networks Cortex XSIAM, The OpenSearch Project OpenSearch
Microsoft Windows Defender AntivirusIndirectDatadog Cloud SIEM, IBM QRadar, SentinelOne Singularity AI SIEM, Cisco Splunk, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Exabeam New-Scale SIEM
Microsoft Windows HelloIndirectSumo Logic Log Analytics Platform, Datadog Cloud SIEM, SentinelOne Singularity AI SIEM
Microsoft Windows Performance MonitorIndirectSentinelOne Singularity AI SIEM, Datadog Cloud SIEM, Sumo Logic Log Analytics Platform
MikroTik RouterOSIndirectIBM QRadar
Mimecast Advanced Email SecurityDirect & IndirectSumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar, Cisco Splunk, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, Google GCP Security Operations, Devo Platform
MongoDB Enterprise AdvancedIndirectGoogle GCP Security Operations
Morphisec GuardIndirectGoogle GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform, Cisco Splunk
Morphisec Guard LiteIndirectCisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar
NetApp ONTAPIndirectCisco Splunk
Netography FusionDirect
Netskope OneIndirectIBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Devo Platform, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, Cisco Splunk
Netskope Secure Web Gateway (SWG)Direct
Netwrix Change TrackerIndirectMicrosoft Azure Sentinel
Netwrix StealthINTERCEPTIndirectSumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Netwrix Threat ManagerIndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar, Microsoft Azure Sentinel, Cisco Splunk
Nginx Web ServerIndirectCisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations
Nozomi Networks Central Management ConsoleDirect
Nozomi Networks VantageDirect
Nutanix Enterprise CloudIndirectGoogle GCP Security Operations
Obsidian SaaS Identity Threat Detection and Response (ITDR)Direct
Okta IdentityDirect & IndirectCisco Splunk, Exabeam New-Scale SIEM, Google GCP Security Operations, Devo Platform, Palo Alto Networks Cortex XSIAM, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, IBM QRadar, SentinelOne Singularity AI SIEM
One Identity SafeguardIndirectCisco Splunk
Open Information Security Foundation (OISF) SuricataIndirectIBM QRadar, Cisco Splunk
Oracle Audit Vault and Database Firewall (AVDF)IndirectCisco Splunk
Oracle Cloud GuardIndirectMicrosoft Azure Sentinel
Oracle Cloud Infrastructure (OCI)IndirectGoogle GCP Security Operations, Cisco Splunk
Oracle MySQLIndirectSumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Orca Security Cloud Security PlatformDirect & IndirectCisco Splunk
Palo Alto Networks Cortex XDRDirect & IndirectDevo Platform, IBM QRadar, Cisco Splunk, Google GCP Security Operations
Palo Alto Networks Cortex XSIAMDirect
Palo Alto Networks Cortex XSOARDirect
Palo Alto Networks Enterprise IoT SecurityIndirectGoogle GCP Security Operations
Palo Alto Networks GlobalProtectIndirectIBM QRadar, Sumo Logic Log Analytics Platform, Cisco Splunk, SentinelOne Singularity AI SIEM, Google GCP Security Operations, Devo Platform
Palo Alto Networks IDS/IPSDirect & IndirectExabeam New-Scale SIEM, Google GCP Security Operations, IBM QRadar, Palo Alto Networks Cortex XSIAM, Cisco Splunk, Datadog Cloud SIEM, SentinelOne Singularity AI SIEM
Palo Alto Networks Next-Gen Firewall (NGFW)Direct & IndirectIBM QRadar, Datadog Cloud SIEM, SentinelOne Singularity AI SIEM, Devo Platform, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, Google GCP Security Operations, Palo Alto Networks Cortex XSIAM, Cisco Splunk
Palo Alto Networks PanoramaIndirectCisco Splunk, Google GCP Security Operations, IBM QRadar
Palo Alto Networks Prisma AccessIndirectGoogle GCP Security Operations, IBM QRadar
Palo Alto Networks Prisma CloudDirect & IndirectCisco Splunk, Google GCP Security Operations, IBM QRadar
Palo Alto Networks URL FilteringIndirectIBM QRadar, Datadog Cloud SIEM, Google GCP Security Operations, Exabeam New-Scale SIEM, SentinelOne Singularity AI SIEM, Cisco Splunk
Palo Alto Networks WildfireDirect & IndirectCisco Splunk, Google GCP Security Operations, Datadog Cloud SIEM, IBM QRadar
Ping Identity PingFederateIndirectIBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Google GCP Security Operations, Cisco Splunk
Ping Identity PingOne Advanced Identity CloudDirect
Ping Identity PingOne PlatformIndirectMicrosoft Azure Sentinel, Google GCP Security Operations, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar
PostgreSQL PostgreSQLIndirectCisco Splunk, Sumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar
Progress Software MOVEit Managed File Transfer Software (MFTS)IndirectSumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Progress Software ShareFileIndirectSumo Logic Log Analytics Platform, Google GCP Security Operations
Proofpoint Cloud App Security Broker (CASB)IndirectSentinelOne Singularity AI SIEM
Proofpoint Email ProtectionIndirectMicrosoft Azure Sentinel, Exabeam New-Scale SIEM, Palo Alto Networks Cortex XSIAM, Devo Platform, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, IBM QRadar
Proofpoint Insider Threat Management (ITM)IndirectSentinelOne Singularity AI SIEM
Proofpoint Targeted Attack Protection (TAP)Direct & IndirectPalo Alto Networks Cortex XSIAM, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar, SentinelOne Singularity AI SIEM, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Devo Platform, Exabeam New-Scale SIEM
Proofpoint Threat Response Auto-Pull (TRAP)IndirectSentinelOne Singularity AI SIEM
Qualys Vulnerability Management, Detection & Response (VMDR)Direct
RSA SecurIDIndirectIBM QRadar, Devo Platform, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk
RadWare DefenseProIndirectGoogle GCP Security Operations, Exabeam New-Scale SIEM
Rapid7 InsightIDRDirect
Rapid7 NexposeDirect
RedHat AuditdIndirectCrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Exabeam New-Scale SIEM, Devo Platform
Redwood Cerberus FTP ServerIndirectGoogle GCP Security Operations
Rubrik Security CloudIndirectGoogle GCP Security Operations, Microsoft Azure Sentinel
SAP Sybase ASEIndirectMicrosoft Azure Sentinel, Cisco Splunk
SailPoint Identity Security CloudDirect
SailPoint IdentityIQIndirectGoogle GCP Security Operations
SalesForce Customer Relationship Manager (CRM)IndirectSumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Google GCP Security Operations, Cisco Splunk, IBM QRadar
SalesForce SlackIndirectMicrosoft Azure Sentinel, Google GCP Security Operations
SecureAuth Identity PlatformIndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar
Securonix Unified Defense SIEMDirect
SentinelOne Singularity AI SIEMDirect
SentinelOne Singularity EndpointDirect & IndirectGoogle GCP Security Operations, Microsoft Azure Sentinel, Cisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar
ServiceNow IT Service Management (ITSM)IndirectSumo Logic Log Analytics Platform, Cisco Splunk, Google GCP Security Operations, IBM QRadar
Shibboleth Consortium Identity ProviderIndirectSumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk, Google GCP Security Operations
Silverfort Universal MFAIndirectGoogle GCP Security Operations
SkyHigh Security Secure Web GatewayIndirectCisco Splunk, Sumo Logic Log Analytics Platform, Exabeam New-Scale SIEM, IBM QRadar, Google GCP Security Operations
Snowflake Data Cloud PlatformDirect & IndirectDevo Platform, Cisco Splunk, Google GCP Security Operations, Microsoft Azure Sentinel, IBM QRadar, Sumo Logic Log Analytics Platform
Software Freedom Conservancy Inc GitIndirectGoogle GCP Security Operations
SolarWinds OrionIndirectGoogle GCP Security Operations
SonicWall Content FilteringIndirectCisco Splunk, IBM QRadar, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM
SonicWall FirewallIndirectCisco Splunk, SentinelOne Singularity AI SIEM, IBM QRadar, Google GCP Security Operations, Microsoft Azure Sentinel
SonicWall IDS/IPSIndirectCisco Splunk, Microsoft Azure Sentinel
SonicWall Virtual Private Network (VPN)IndirectMicrosoft Azure Sentinel, Cisco Splunk
Sophos AntivirusIndirectIBM QRadar, Google GCP Security Operations
Sophos CentralIndirectGoogle GCP Security Operations
Sophos Intercept XDirect & IndirectIBM QRadar, Google GCP Security Operations
Sophos Unified Threat Management (UTM)IndirectIBM QRadar
Sophos XG FirewallIndirectGoogle GCP Security Operations, IBM QRadar
Splashtop Remote AccessIndirectIBM QRadar
Squid ProxyIndirectCisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Devo Platform
Sumo Logic Log Analytics PlatformDirect & IndirectCisco Splunk
Swimlane TurbineDirect
Symantec Endpoint Protection (SEP)IndirectExabeam New-Scale SIEM, Microsoft Azure Sentinel, Cisco Splunk, Google GCP Security Operations
Symantec Endpoint SecurityDirect
Symantec Enterprise Cloud Data Loss Prevention (DLP)IndirectSentinelOne Singularity AI SIEM, Cisco Splunk, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM
Symantec Secure Web GatewayDirect & IndirectIBM QRadar, Devo Platform, Google GCP Security Operations, Cisco Splunk
Tanium AssetIndirectDatadog Cloud SIEM
Tanium Threat ResponseDirect
Tenable NessusDirect & IndirectCisco Splunk, Datadog Cloud SIEM, Microsoft Azure Sentinel
The OpenSearch Project OpenSearchDirect
Thinkst CanaryIndirectSumo Logic Log Analytics Platform, Cisco Splunk, Google GCP Security Operations, IBM QRadar
Threat Intelligence Platform Threat Intelligence PlatformDirect
Tines No-Code Automation PlatformDirect
Trellix Cloud SecurityIndirectGoogle GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform, Cisco Splunk
Trellix Data Loss PreventionIndirectCisco Splunk
Trellix Endpoint Security (ENS)Direct & IndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk, Exabeam New-Scale SIEM
Trellix Endpoint Security (HX)Direct
Trellix Intrusion Prevention SystemIndirectIBM QRadar
Trend Micro Apex CentralIndirectIBM QRadar, Microsoft Azure Sentinel, Cisco Splunk
Trend Micro Apex OneIndirectGoogle GCP Security Operations, Microsoft Azure Sentinel, Cisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform
Trend Micro Cloud OneDirect
Trend Micro Deep SecurityIndirectCisco Splunk, IBM QRadar
Trend Micro TippingPointIndirectGoogle GCP Security Operations, IBM QRadar
Trend Micro Vision OneDirect & IndirectIBM QRadar
Ubiquiti UniFiIndirectGoogle GCP Security Operations
Upwind Cloud-Native Application Protection Platform (CNAPP)Direct
VMware Carbon Black App ControlDirect & IndirectGoogle GCP Security Operations
VMware Carbon Black Cloud Audit and RemediationIndirectIBM QRadar, Microsoft Azure Sentinel
VMware Carbon Black Cloud Endpoint StandardDirect & IndirectIBM QRadar, Google GCP Security Operations
VMware Carbon Black Cloud Enterprise EDRDirect & IndirectIBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Cisco Splunk
VMware Carbon Black On-Prem EDRDirect & IndirectGoogle GCP Security Operations, IBM QRadar
VMware ESXiIndirectPalo Alto Networks Cortex XSIAM, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar, Google GCP Security Operations, Microsoft Azure Sentinel, Cisco Splunk
VMware vCenterIndirectPalo Alto Networks Cortex XSIAM, Cisco Splunk, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, IBM QRadar
Varonis DatAdvantageIndirectSumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar, Google GCP Security Operations
Varonis DatAlertIndirectSumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations, Cisco Splunk
Vectra AI PlatformDirect
Veeam Data PlatformIndirectSumo Logic Log Analytics Platform, Datadog Cloud SIEM, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Verizon DDoS ShieldIndirectCisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar
Versa Networks Next Generation Firewall (NGFW)IndirectGoogle GCP Security Operations
Wallix ONEIndirectCrowdStrike Falcon Next-Gen SIEM
WatchGuard FireboxIndirectIBM QRadar, Google GCP Security Operations
Wazuh Open Source Security PlatformIndirectCrowdStrike Falcon Next-Gen SIEM
Wiz Cloud Security Platform CloudDirect & IndirectSumo Logic Log Analytics Platform, Google GCP Security Operations, Microsoft Azure Sentinel, IBM QRadar, SentinelOne Singularity AI SIEM, Cisco Splunk
Wiz Cloud Security Platform DefendDirect
Workday Enterprise Management CloudIndirectSumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Cisco Splunk, Google GCP Security Operations, Devo Platform
Zscaler Internet Access (ZIA)Direct & IndirectIBM QRadar, Microsoft Azure Sentinel, Cisco Splunk, Exabeam New-Scale SIEM, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM, Devo Platform, Sumo Logic Log Analytics Platform, Google GCP Security Operations
Zscaler Private Access (ZPA)IndirectMicrosoft Azure Sentinel, Sumo Logic Log Analytics Platform

ReliaQuest will make reasonable efforts to maintain support for the direct and indirect technology sources described in the above table. The supported technology sources are subject to change from time-to-time. ReliaQuest cannot guarantee the connectivity or availability of any or all technology sources, nor be responsible for changes or errors in the technology sources or how they interface or connect with GreyMatter. In addition, GreyMatter’s connection to any technology sources may involve the use of compute power, storage capacity, or other licensing-based metrics or restrictions. Customers are solely responsible for verifying and complying with the terms, conditions, and costs associated with any such connectivity.