Skip to Content

Supported Sources

GreyMatter connects to the sources listed in the table below either directly or indirectly.

  • Direct Connection: GreyMatter connects directly to the source technology via API, enabling real-time data retrieval and potential response actions.
  • Indirect Connection: GreyMatter accesses the source's data via a storage solution (SIEM,Data Lake, etc.), where the data is first collected and stored before GreyMatter retrieves it.
Source TechnologiesGreyMatter Connection MethodStorage Solution Compatibility (Indirect Connection)
*nix DHCPIndirectExabeam New-Scale SIEM
*nix Operating System (OS)IndirectCrowdStrike Falcon Next-Gen SIEM, Devo Platform, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, IBM QRadar, Google GCP Security Operations, Cisco Splunk, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, Palo Alto Networks Cortex XSIAM
1Password Password ManagerIndirectMicrosoft Azure Sentinel, Cisco Splunk, Sumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar
Abnormal AI Email SecurityDirect & IndirectGoogle GCP Security Operations, SentinelOne Singularity AI SIEM, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, IBM QRadar
AbuseIPDB LLC Threat IntelligenceDirect
Akamai App & API ProtectorIndirectThe OpenSearch Project OpenSearch, IBM QRadar, Cisco Splunk
Akamai GuardicoreIndirectGoogle GCP Security Operations
Amazon AWS CloudDirect
Amazon AWS CloudFrontIndirectSumo Logic Log Analytics Platform
Amazon AWS CloudTrailDirect & IndirectIBM QRadar, Exabeam New-Scale SIEM, Google GCP Security Operations, Devo Platform, Sumo Logic Log Analytics Platform, Cisco Splunk, Microsoft Azure Sentinel, Amazon AWS Security Lake, CrowdStrike Falcon Next-Gen SIEM
Amazon AWS CloudWatchIndirectThe OpenSearch Project OpenSearch, Cisco Splunk
Amazon AWS ConfigIndirectDevo Platform, Google GCP Security Operations
Amazon AWS Elastic Kubernetes Service (EKS)IndirectIBM QRadar, Devo Platform, Google GCP Security Operations
Amazon AWS GuardDutyDirect & IndirectMicrosoft Azure Sentinel, Sumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Devo Platform
Amazon AWS OpenSearch ServiceIndirectGoogle GCP Security Operations, Devo Platform
Amazon AWS Route 53Direct & IndirectGoogle GCP Security Operations, Amazon AWS Security Lake
Amazon AWS Security HubIndirectCisco Splunk
Amazon AWS Security LakeDirect
Amazon AWS ShieldIndirectSumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations, Cisco Splunk
Amazon AWS VPC Flow DataDirect & IndirectDevo Platform, Google GCP Security Operations, Microsoft Azure Sentinel, Cisco Splunk
Amazon AWS WAFIndirectGoogle GCP Security Operations
Apache KafkaIndirectGoogle GCP Security Operations, Cisco Splunk
Apache TomcatIndirectExabeam New-Scale SIEM, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Devo Platform, Datadog Cloud SIEM, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Google GCP Security Operations
Appgate Universal Zero Trust Network Access (ZTNA)IndirectGoogle GCP Security Operations
Apple macOSIndirectGoogle GCP Security Operations
Aqua Security Cloud Workload ProtectionDirect
Arctic Wolf Aurora Endpoint SecurityDirect & IndirectSentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, Cisco Splunk, Google GCP Security Operations, IBM QRadar, Palo Alto Networks Cortex XSIAM
Arista Networks Network Detection and Response (NDR)IndirectCisco Splunk, Google GCP Security Operations
Armis CentrixDirect
Atomicorp OSSECIndirectCisco Splunk, IBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform
Auth0 PlatformIndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform
Axonius PlatformDirect
Barracuda Cloud Gen FirewallIndirectIBM QRadar, Google GCP Security Operations
Barracuda Email ProtectionIndirectGoogle GCP Security Operations
BeyondTrust Endpoint Privilege Management (EPM)IndirectGoogle GCP Security Operations, Cisco Splunk, Exabeam New-Scale SIEM, IBM QRadar
BeyondTrust Password SafeIndirectIBM QRadar, Cisco Splunk, Google GCP Security Operations
BeyondTrust Privileged Remote AccessIndirectCisco Splunk, Exabeam New-Scale SIEM
BeyondTrust Remote SupportIndirectCisco Splunk
BitSight Security Performance ManagementIndirectGoogle GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform, Cisco Splunk
Bitdefender GravityZone Endpoint Detection and Response (EDR)Direct & IndirectIBM QRadar, Microsoft Azure Sentinel, Cisco Splunk
BlueCat Networks Integrity (Adonis)IndirectCrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Google GCP Security Operations, Devo Platform
Box Cloud StorageIndirectSumo Logic Log Analytics Platform, Cisco Splunk, Devo Platform, Google GCP Security Operations
Bravura Security Bravura IdentityIndirectCisco Splunk, IBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform
Bravura Security Bravura PrivilegeIndirectGoogle GCP Security Operations, IBM QRadar, Cisco Splunk, Sumo Logic Log Analytics Platform
Cato Networks Cloud PlatformIndirectGoogle GCP Security Operations, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM, IBM QRadar, Devo Platform
Cato Networks Secure Access Service Edge (SASE)Direct
Check Point CloudGuardIndirectIBM QRadar, Google GCP Security Operations
Check Point Data Loss Prevention (DLP)IndirectIBM QRadar, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, Google GCP Security Operations
Check Point Enterprise Cloud Email SecurityIndirectCisco Splunk
Check Point FirewallIndirectDevo Platform, Exabeam New-Scale SIEM, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar, Cisco Splunk, Microsoft Azure Sentinel
Check Point Harmony Email SecurityDirect
Check Point Remote Access VPNIndirectMicrosoft Azure Sentinel, IBM QRadar, Google GCP Security Operations, Exabeam New-Scale SIEM
Check Point SandBlast: Threat Extraction & EmulationIndirectIBM QRadar, Google GCP Security Operations
Check Point Security ManagementDirect & IndirectDevo Platform, IBM QRadar, Cisco Splunk, Google GCP Security Operations
Check Point SmartDefenseIndirectCisco Splunk, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, IBM QRadar, Google GCP Security Operations
Check Point URL FilteringIndirectMicrosoft Azure Sentinel, Cisco Splunk, Exabeam New-Scale SIEM, Google GCP Security Operations, IBM QRadar
Cisco Adaptive Security Appliance (ASA)Direct & IndirectDevo Platform, Exabeam New-Scale SIEM, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Cisco Splunk, Sumo Logic Log Analytics Platform, Google GCP Security Operations, SentinelOne Singularity AI SIEM
Cisco AnyConnectIndirectSentinelOne Singularity AI SIEM, Devo Platform, Cisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar
Cisco Duo SecurityDirect & IndirectCrowdStrike Falcon Next-Gen SIEM, IBM QRadar, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Datadog Cloud SIEM, Microsoft Azure Sentinel, Devo Platform, Google GCP Security Operations, Cisco Splunk
Cisco Event Streamer (eStreamer)IndirectCisco Splunk
Cisco FirePowerIndirectCrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM, Sumo Logic Log Analytics Platform, Cisco Splunk, Google GCP Security Operations, Microsoft Azure Sentinel, IBM QRadar, SentinelOne Singularity AI SIEM
Cisco Identity Services Engine (ISE)IndirectGoogle GCP Security Operations, Devo Platform, Exabeam New-Scale SIEM, IBM QRadar, Cisco Splunk, SentinelOne Singularity AI SIEM, CrowdStrike Falcon Next-Gen SIEM
Cisco MerakiDirect & IndirectCisco Splunk, Google GCP Security Operations, Exabeam New-Scale SIEM, Sumo Logic Log Analytics Platform, Devo Platform, SentinelOne Singularity AI SIEM, IBM QRadar, Microsoft Azure Sentinel
Cisco Networking Software NX-OSIndirectGoogle GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Exabeam New-Scale SIEM, SentinelOne Singularity AI SIEM
Cisco NexusIndirectCrowdStrike Falcon Next-Gen SIEM
Cisco Platform Exchange Grid (pxGrid)Direct
Cisco Secure EmailIndirectIBM QRadar
Cisco Secure EndpointDirect & IndirectMicrosoft Azure Sentinel, IBM QRadar, Cisco Splunk, Google GCP Security Operations
Cisco Secure Firewall Management Center (FMC)Direct
Cisco Secure Network AnalyticsDirect
Cisco Secure Web ApplianceIndirectIBM QRadar
Cisco SnortIndirectIBM QRadar, Exabeam New-Scale SIEM
Cisco SplunkDirect & IndirectCisco Splunk, IBM QRadar, Google GCP Security Operations
Cisco Splunk Security Orchestration Automation and Response (SOAR)Direct
Cisco UmbrellaDirect & IndirectCisco Splunk, IBM QRadar, Google GCP Security Operations, Devo Platform, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, SentinelOne Singularity AI SIEM
Cisco Wireless LAN Controller (WLC)IndirectIBM QRadar
Citrix Netscaler Content FilteringIndirectPalo Alto Networks Cortex XSIAM
Citrix Netscaler Gateway VPNIndirectIBM QRadar, Sumo Logic Log Analytics Platform, Exabeam New-Scale SIEM, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk
Citrix Netscaler Web Application Firewall (WAF)IndirectSumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar
Citrix Virtual Apps and DesktopsIndirectThe OpenSearch Project OpenSearch, Cisco Splunk, Datadog Cloud SIEM
Claroty XDome for HealthcareDirect
Claroty xDomeDirect & IndirectGoogle GCP Security Operations
CloudFlare Content Delivery Network (CDN)IndirectGoogle GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Cisco Splunk, IBM QRadar
CloudFlare DDoS ProtectionIndirectGoogle GCP Security Operations
CloudFlare DNSIndirectGoogle GCP Security Operations, Cisco Splunk
CloudFlare Magic FirewallIndirectGoogle GCP Security Operations, Cisco Splunk
CloudFlare Secure Web Gateway (SWG)IndirectGoogle GCP Security Operations
CloudFlare Web Application Firewall (WAF)Direct & IndirectCisco Splunk, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar, Microsoft Azure Sentinel, Google GCP Security Operations
CloudFlare Zero Trust Network Access (ZTNA)IndirectGoogle GCP Security Operations, Cisco Splunk
Cofense PhishMe SAT PlatformIndirectGoogle GCP Security Operations, Cisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform
Cofense Triage Email AnalyticsIndirectGoogle GCP Security Operations
Corelight Open NDR PlatformIndirectCisco Splunk
Cribl Inc CriblIndirectCisco Splunk
CrowdStrike Falcon Adversary IntelligenceDirect
CrowdStrike Falcon Fusion SOARDirect
CrowdStrike Falcon Identity ProtectionDirect & IndirectCisco Splunk, Devo Platform, IBM QRadar
CrowdStrike Falcon Insight XDRDirect & IndirectCrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Microsoft Azure Sentinel, Cisco Splunk, Exabeam New-Scale SIEM, Devo Platform, CrowdStrike Falcon Long Term Repository, IBM QRadar, Sumo Logic Log Analytics Platform
CrowdStrike Falcon LogScaleDirect
CrowdStrike Falcon Long Term RepositoryDirect
CrowdStrike Falcon MalQueryDirect
CrowdStrike Falcon Next-Gen SIEMDirect & IndirectIBM QRadar, Sumo Logic Log Analytics Platform
CrowdStrike Falcon PreventDirect & IndirectGoogle GCP Security Operations, IBM QRadar, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, CrowdStrike Falcon Long Term Repository, Devo Platform, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, Sumo Logic Log Analytics Platform
CrowdStrike Falcon SpotlightDirect & IndirectDevo Platform
CybeReason Endpoint Detection and Response (EDR)IndirectCisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar
CybeReason Next-Generation AntivirusIndirectCisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations
CyberArk Enterprise Password Vault (EPV)IndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Devo Platform, Cisco Splunk, Microsoft Azure Sentinel, IBM QRadar
CyberArk Privileged Threat Analytics (PTA)IndirectCisco Splunk, Google GCP Security Operations, IBM QRadar, SentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM, CrowdStrike Falcon Next-Gen SIEM, Devo Platform, Sumo Logic Log Analytics Platform
CyberArk Workforce IdentityDirect & IndirectGoogle GCP Security Operations, SentinelOne Singularity AI SIEM, Cisco Splunk
DOPE.SECURITY Inc Secure Web Gateway (SWG)IndirectGoogle GCP Security Operations
Darktrace ActiveAI Security PlatformDirect & IndirectMicrosoft Azure Sentinel, Google GCP Security Operations, Cisco Splunk, IBM QRadar
Datadog Cloud SIEMDirect
Delinea Secret ServerIndirectIBM QRadar, Google GCP Security Operations, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk
Devo PlatformDirect & IndirectMicrosoft Azure Sentinel, IBM QRadar, Devo Platform
Docker BusinessIndirectGoogle GCP Security Operations
Dragos PlatformDirect
Elastic ElasticsearchDirect
Epic Electronic Medical Records (EMR)IndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk
Exabeam Data Lake LegacyDirect & IndirectExabeam New-Scale SIEM
Exabeam LogRhythm Case ManagementDirect & IndirectCisco Splunk
Exabeam LogRhythm FIMIndirectDatadog Cloud SIEM
Exabeam LogRhythm NetMonIndirectDatadog Cloud SIEM
Exabeam LogRhythm SIEMDirect & IndirectGoogle GCP Security Operations
Exabeam New-Scale Advanced AnalyticsDirect & IndirectExabeam New-Scale SIEM
Exabeam New-Scale SIEMDirect & IndirectExabeam New-Scale SIEM
ExtraHop Reveal(X)Direct & IndirectCisco Splunk, Exabeam New-Scale SIEM, IBM QRadar, Devo Platform, Google GCP Security Operations
Extreme Networks Access PointsIndirectSumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Extreme Networks RoutersIndirectGoogle GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform, Cisco Splunk
F5 Networks BIG-IP Access Policy Manager (APM)IndirectCisco Splunk
F5 Networks BIG-IP Application Security Manager (ASM)IndirectExabeam New-Scale SIEM, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Cisco Splunk
F5 Networks BIG-IP DNSIndirectExabeam New-Scale SIEM, Cisco Splunk
F5 Networks BIG-IP Local Traffic Manager (LTM)IndirectGoogle GCP Security Operations
Fastly Next-Gen WAFIndirectSumo Logic Log Analytics Platform, Cisco Splunk, Google GCP Security Operations
Fidelis Security DeceptionIndirectMicrosoft Azure Sentinel
Fidelis Security Endpoint (EDR)IndirectMicrosoft Azure Sentinel
Fidelis Security Network Data Loss PreventionIndirectMicrosoft Azure Sentinel
Fidelis Security Network NDRIndirectMicrosoft Azure Sentinel
Forcepoint Secure Web GatewayIndirectIBM QRadar, Cisco Splunk
Forcepoint V SeriesIndirectIBM QRadar
Forescout CounterActIndirectCisco Splunk, Google GCP Security Operations, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM
Fortinet FortiEDRDirect
Fortinet FortiGate Next-Gen Firewall (NGFW)Direct & IndirectSumo Logic Log Analytics Platform, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM, Google GCP Security Operations, Devo Platform, Cisco Splunk, Microsoft Azure Sentinel
Fortinet FortiManagerDirect
Fortinet FortiSandboxIndirectGoogle GCP Security Operations
Fortra Agari Phishing DefenseIndirectCisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar
Fortra Globalscape Enhanced File Transfer (EFT)IndirectCisco Splunk
Fortra PowertechIndirectGoogle GCP Security Operations
GitHub EnterpriseIndirectCrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Microsoft Azure Sentinel, Google GCP Security Operations, Devo Platform, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, IBM QRadar
GitLab Code RepositoryIndirectGoogle GCP Security Operations, Devo Platform, Cisco Splunk
GoPhish Open-Source Phishing FrameworkIndirectCisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar
Google GCP Apigee API ManagementIndirectGoogle GCP Security Operations
Google GCP CloudDirect
Google GCP Cloud Audit LogsDirect & IndirectCisco Splunk, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Microsoft Azure Sentinel, Devo Platform, IBM QRadar
Google GCP Cloud DNSIndirectGoogle GCP Security Operations
Google GCP Cloud FirewallIndirectGoogle GCP Security Operations
Google GCP Cloud StorageDirect & IndirectGoogle GCP Security Operations
Google GCP Compute EngineDirect & IndirectGoogle GCP Security Operations
Google GCP Security Command Center (SCC)Direct & IndirectGoogle GCP Security Operations, Cisco Splunk
Google GCP Security OperationsDirect
Google GCP Security Operations SOARDirect
Google VirusTotalDirect
Google WorkspaceDirect & IndirectGoogle GCP Security Operations, IBM QRadar, Devo Platform, Microsoft Azure Sentinel, Cisco Splunk, Sumo Logic Log Analytics Platform
HPE Aruba Networking Access PointsIndirectGoogle GCP Security Operations
HPE Aruba Networking ClearPassIndirectGoogle GCP Security Operations
HPE Aruba Networking Mobility ControllerIndirectGoogle GCP Security Operations
HPE File StorageIndirectGoogle GCP Security Operations
HashiCorp VaultIndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform
IBM QRadarDirect
IBM i-SeriesIndirectGoogle GCP Security Operations
Imperva DDoS ProtectionIndirectDevo Platform, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar
Imperva Web Application FirewallIndirectIBM QRadar, SentinelOne Singularity AI SIEM, Devo Platform, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk
Imprivata Enterprise PlatformIndirectGoogle GCP Security Operations
Infoblox DDIDirect & IndirectSumo Logic Log Analytics Platform, Devo Platform, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM, Google GCP Security Operations, Exabeam New-Scale SIEM, Cisco Splunk, IBM QRadar
Infoblox IP Address Management (IPAM)IndirectGoogle GCP Security Operations
Infoblox NIOSDirect & IndirectIBM QRadar, Google GCP Security Operations, Exabeam New-Scale SIEM, Cisco Splunk, SentinelOne Singularity AI SIEM, Devo Platform, Microsoft Azure Sentinel
Ironscales Email Security PlatformIndirectCisco Splunk, IBM QRadar
Island Enterprise BrowserIndirectCisco Splunk
Ivanti Connect SecureIndirectSentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar, Google GCP Security Operations, Devo Platform
Jamf ProIndirectGoogle GCP Security Operations
Jenkins CI/CDIndirectGoogle GCP Security Operations
Joe Security Joe SandboxDirect & IndirectGoogle GCP Security Operations
JumpCloud PlatformDirect & IndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk
Juniper Junos OSIndirectCisco Splunk, Google GCP Security Operations, IBM QRadar
Juniper SRXDirect & IndirectGoogle GCP Security Operations, Cisco Splunk, IBM QRadar
Keeper Security Password ManagementIndirectCisco Splunk, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, Google GCP Security Operations
KnowBe4 Enterprise Security AwarenessIndirectIBM QRadar, Cisco Splunk, Sumo Logic Log Analytics Platform, Google GCP Security Operations
Kubernetes KubernetesIndirectGoogle GCP Security Operations, Cisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform
LastPass Password ManagerIndirectCisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar
Malwarebytes Nebula Endpoint Detection & ResponseDirect
ManageEngine Password Manager ProIndirectGoogle GCP Security Operations
Microsoft Active DirectoryDirect & IndirectSumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM, The OpenSearch Project OpenSearch, Cisco Splunk, IBM QRadar, Datadog Cloud SIEM, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations
Microsoft Azure Application GatewayIndirectCisco Splunk, Google GCP Security Operations
Microsoft Azure CloudDirect
Microsoft Azure DNSIndirectGoogle GCP Security Operations
Microsoft Azure Data ExplorerDirect
Microsoft Azure DevOpsIndirectIBM QRadar
Microsoft Azure FirewallIndirectGoogle GCP Security Operations, Devo Platform, IBM QRadar, Cisco Splunk, Microsoft Azure Sentinel
Microsoft Azure Front DoorIndirectGoogle GCP Security Operations
Microsoft Azure Key VaultIndirectCisco Splunk
Microsoft Azure Logic AppsDirect
Microsoft Azure MonitorDirect & IndirectExabeam New-Scale SIEM, Microsoft Azure Sentinel
Microsoft Azure SQL DatabaseIndirectMicrosoft Azure Sentinel, Cisco Splunk
Microsoft Azure SentinelDirect
Microsoft Azure Subscription ActivityIndirectSentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, Devo Platform, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Google GCP Security Operations, IBM QRadar, Palo Alto Networks Cortex XSIAM
Microsoft Azure URL FilteringIndirectGoogle GCP Security Operations
Microsoft DHCP ServerIndirectSumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, IBM QRadar, Datadog Cloud SIEM, Google GCP Security Operations
Microsoft DNSIndirectIBM QRadar, Google GCP Security Operations, Datadog Cloud SIEM, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM, Cisco Splunk, The OpenSearch Project OpenSearch, Exabeam New-Scale SIEM, Devo Platform, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel
Microsoft Defender Vulnerability ManagementDirect
Microsoft Defender XDRDirect & IndirectExabeam New-Scale SIEM
Microsoft Defender for CloudDirect & IndirectIBM QRadar, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, Cisco Splunk
Microsoft Defender for Cloud AppsDirect & IndirectIBM QRadar, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, Cisco Splunk
Microsoft Defender for EndpointDirect & IndirectSentinelOne Singularity AI SIEM, Google GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform, Datadog Cloud SIEM, Microsoft Azure Sentinel, Cisco Splunk, Exabeam New-Scale SIEM
Microsoft Defender for IdentityDirect & IndirectGoogle GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM, IBM QRadar, Microsoft Azure Sentinel, Cisco Splunk, Devo Platform, Sumo Logic Log Analytics Platform
Microsoft Defender for IoTDirect
Microsoft Defender for Office 365Direct & IndirectExabeam New-Scale SIEM, Sumo Logic Log Analytics Platform, IBM QRadar, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM, Cisco Splunk, Google GCP Security Operations
Microsoft Entra IDDirect & IndirectThe OpenSearch Project OpenSearch, Sumo Logic Log Analytics Platform, Palo Alto Networks Cortex XSIAM, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, Devo Platform, SentinelOne Singularity AI SIEM, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Google GCP Security Operations
Microsoft Entra ID ProtectionDirect & IndirectSumo Logic Log Analytics Platform, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM
Microsoft Exchange OnlineDirect
Microsoft Exchange ServerIndirectIBM QRadar, SentinelOne Singularity AI SIEM, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Sumo Logic Log Analytics Platform, Devo Platform, Microsoft Azure Sentinel, Datadog Cloud SIEM, Cisco Splunk
Microsoft Hyper-VIndirectDatadog Cloud SIEM, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations
Microsoft IISIndirectPalo Alto Networks Cortex XSIAM, Devo Platform, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM, IBM QRadar, Datadog Cloud SIEM, Cisco Splunk, Google GCP Security Operations, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform
Microsoft IntuneDirect & IndirectExabeam New-Scale SIEM, Google GCP Security Operations, Cisco Splunk
Microsoft Office 365Direct & IndirectDevo Platform, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Cisco Splunk, IBM QRadar, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM
Microsoft Office 365 Cloud App SecurityDirect & IndirectDevo Platform
Microsoft OneDriveIndirectIBM QRadar, Google GCP Security Operations, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, Devo Platform, Datadog Cloud SIEM, SentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM
Microsoft PowerShellIndirectThe OpenSearch Project OpenSearch, Datadog Cloud SIEM, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM
Microsoft PurviewDirect & IndirectDevo Platform, Google GCP Security Operations, Microsoft Azure Sentinel, Cisco Splunk, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, IBM QRadar, Exabeam New-Scale SIEM
Microsoft Purview Insider Risk ManagementDirect
Microsoft SQL ServerIndirectGoogle GCP Security Operations, Microsoft Azure Sentinel, The OpenSearch Project OpenSearch, Datadog Cloud SIEM, Cisco Splunk
Microsoft SharePointIndirectSentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, Devo Platform, Datadog Cloud SIEM, Microsoft Azure Sentinel, Cisco Splunk, Google GCP Security Operations, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM
Microsoft SysmonIndirectDatadog Cloud SIEM, IBM QRadar, Google GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform, The OpenSearch Project OpenSearch, SentinelOne Singularity AI SIEM, CrowdStrike Falcon Next-Gen SIEM
Microsoft WindowsIndirectExabeam New-Scale SIEM, Palo Alto Networks Cortex XSIAM, SentinelOne Singularity AI SIEM, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, The OpenSearch Project OpenSearch, Datadog Cloud SIEM, Devo Platform, Sumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar
Microsoft Windows Defender AntivirusIndirectDatadog Cloud SIEM, Cisco Splunk, Sumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar, SentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM
Microsoft Windows HelloIndirectDatadog Cloud SIEM, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform
Microsoft Windows Performance MonitorIndirectSentinelOne Singularity AI SIEM, Datadog Cloud SIEM, Sumo Logic Log Analytics Platform
MikroTik RouterOSIndirectIBM QRadar
Mimecast Advanced Email SecurityDirect & IndirectMicrosoft Azure Sentinel, Devo Platform, IBM QRadar, Exabeam New-Scale SIEM, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform
MongoDB Enterprise AdvancedIndirectGoogle GCP Security Operations
Morphisec GuardIndirectCisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations
Morphisec Guard LiteIndirectSumo Logic Log Analytics Platform, Google GCP Security Operations, Cisco Splunk, IBM QRadar
NetApp ONTAPIndirectCisco Splunk
Netography FusionDirect
Netskope OneIndirectIBM QRadar, Exabeam New-Scale SIEM, Devo Platform, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, Cisco Splunk
Netskope Secure Web Gateway (SWG)Direct
Netwrix Change TrackerIndirectMicrosoft Azure Sentinel
Netwrix StealthINTERCEPTIndirectIBM QRadar, Microsoft Azure Sentinel, Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform
Netwrix Threat ManagerIndirectMicrosoft Azure Sentinel, IBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk
Nginx Web ServerIndirectCrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Cisco Splunk
Nozomi Networks Central Management ConsoleDirect
Nozomi Networks VantageDirect
Nutanix Enterprise CloudIndirectGoogle GCP Security Operations
Obsidian SaaS Identity Threat Detection and Response (ITDR)Direct
Okta IdentityDirect & IndirectCrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, IBM QRadar, SentinelOne Singularity AI SIEM, Cisco Splunk, Sumo Logic Log Analytics Platform, Devo Platform, Palo Alto Networks Cortex XSIAM
One Identity SafeguardIndirectCisco Splunk
Open Information Security Foundation (OISF) SuricataIndirectCisco Splunk, IBM QRadar
Oracle Audit Vault and Database Firewall (AVDF)IndirectCisco Splunk
Oracle Cloud GuardIndirectMicrosoft Azure Sentinel
Oracle Cloud Infrastructure (OCI)IndirectGoogle GCP Security Operations, Cisco Splunk
Oracle MySQLIndirectIBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk
Orca Security Cloud Security PlatformDirect & IndirectCisco Splunk
Palo Alto Networks Cortex XDRDirect & IndirectCisco Splunk, Devo Platform, IBM QRadar, Google GCP Security Operations
Palo Alto Networks Cortex XSIAMDirect
Palo Alto Networks Cortex XSOARDirect
Palo Alto Networks Enterprise IoT SecurityIndirectGoogle GCP Security Operations
Palo Alto Networks GlobalProtectIndirectSentinelOne Singularity AI SIEM, IBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Devo Platform, Cisco Splunk
Palo Alto Networks IDS/IPSDirect & IndirectCisco Splunk, Google GCP Security Operations, IBM QRadar, Palo Alto Networks Cortex XSIAM, Exabeam New-Scale SIEM, Datadog Cloud SIEM, SentinelOne Singularity AI SIEM
Palo Alto Networks Next-Gen Firewall (NGFW)Direct & IndirectCisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Datadog Cloud SIEM, IBM QRadar, SentinelOne Singularity AI SIEM, Palo Alto Networks Cortex XSIAM, Google GCP Security Operations, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, Sumo Logic Log Analytics Platform, Devo Platform
Palo Alto Networks PanoramaIndirectGoogle GCP Security Operations, Cisco Splunk, IBM QRadar
Palo Alto Networks Prisma AccessIndirectIBM QRadar, Google GCP Security Operations
Palo Alto Networks Prisma CloudDirect & IndirectGoogle GCP Security Operations, IBM QRadar, Cisco Splunk
Palo Alto Networks URL FilteringIndirectExabeam New-Scale SIEM, Cisco Splunk, Google GCP Security Operations, SentinelOne Singularity AI SIEM, IBM QRadar, Datadog Cloud SIEM
Palo Alto Networks WildfireDirect & IndirectCisco Splunk, Datadog Cloud SIEM, Google GCP Security Operations, IBM QRadar
Ping Identity PingFederateIndirectCrowdStrike Falcon Next-Gen SIEM, IBM QRadar, Microsoft Azure Sentinel, Google GCP Security Operations, Cisco Splunk
Ping Identity PingOne Advanced Identity CloudDirect
Ping Identity PingOne PlatformIndirectIBM QRadar, Microsoft Azure Sentinel, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk
PostgreSQL PostgreSQLIndirectCisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations
Progress Software MOVEit Managed File Transfer Software (MFTS)IndirectGoogle GCP Security Operations, Cisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform
Progress Software ShareFileIndirectSumo Logic Log Analytics Platform, Google GCP Security Operations
Proofpoint Cloud App Security Broker (CASB)IndirectSentinelOne Singularity AI SIEM
Proofpoint Email ProtectionIndirectSumo Logic Log Analytics Platform, Cisco Splunk, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM, Palo Alto Networks Cortex XSIAM, Exabeam New-Scale SIEM, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Devo Platform, Google GCP Security Operations
Proofpoint Insider Threat Management (ITM)IndirectSentinelOne Singularity AI SIEM
Proofpoint Targeted Attack Protection (TAP)Direct & IndirectCisco Splunk, Palo Alto Networks Cortex XSIAM, Google GCP Security Operations, Devo Platform, IBM QRadar, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM
Proofpoint Threat Response Auto-Pull (TRAP)IndirectSentinelOne Singularity AI SIEM
Qualys Vulnerability Management, Detection & Response (VMDR)Direct
RSA SecurIDIndirectSumo Logic Log Analytics Platform, Devo Platform, Google GCP Security Operations, Cisco Splunk, IBM QRadar
RadWare DefenseProIndirectExabeam New-Scale SIEM, Google GCP Security Operations
Rapid7 InsightIDRDirect
Rapid7 NexposeDirect
RedHat AuditdIndirectGoogle GCP Security Operations, Exabeam New-Scale SIEM, CrowdStrike Falcon Next-Gen SIEM, Devo Platform
Redwood Cerberus FTP ServerIndirectGoogle GCP Security Operations
Rubrik Security CloudIndirectMicrosoft Azure Sentinel, Google GCP Security Operations
SAP Sybase ASEIndirectMicrosoft Azure Sentinel, Cisco Splunk
SailPoint Identity Security CloudDirect
SailPoint IdentityIQIndirectGoogle GCP Security Operations
SalesForce Customer Relationship Manager (CRM)IndirectCisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Microsoft Azure Sentinel, The OpenSearch Project OpenSearch
SalesForce SlackIndirectMicrosoft Azure Sentinel, Google GCP Security Operations
SecureAuth Identity PlatformIndirectSumo Logic Log Analytics Platform, Cisco Splunk, Google GCP Security Operations, IBM QRadar
Securonix Unified Defense SIEMDirect
SentinelOne Singularity AI SIEMDirect
SentinelOne Singularity EndpointDirect & IndirectMicrosoft Azure Sentinel, Sumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar, Cisco Splunk
ServiceNow IT Service Management (ITSM)IndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar
Shibboleth Consortium Identity ProviderIndirectSumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Silverfort Universal MFAIndirectGoogle GCP Security Operations
SkyHigh Security Secure Web GatewayIndirectIBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Exabeam New-Scale SIEM, Cisco Splunk
Snowflake Data Cloud PlatformDirect & IndirectGoogle GCP Security Operations, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, Cisco Splunk, Devo Platform, IBM QRadar
Software Freedom Conservancy Inc GitIndirectGoogle GCP Security Operations
SolarWinds OrionIndirectGoogle GCP Security Operations
SonicWall Content FilteringIndirectMicrosoft Azure Sentinel, SentinelOne Singularity AI SIEM, IBM QRadar, Cisco Splunk
SonicWall FirewallIndirectMicrosoft Azure Sentinel, Google GCP Security Operations, Cisco Splunk, IBM QRadar, SentinelOne Singularity AI SIEM
SonicWall IDS/IPSIndirectCisco Splunk, Microsoft Azure Sentinel
SonicWall Virtual Private Network (VPN)IndirectMicrosoft Azure Sentinel, Cisco Splunk
Sophos AntivirusIndirectGoogle GCP Security Operations, IBM QRadar
Sophos CentralIndirectGoogle GCP Security Operations
Sophos Intercept XDirect & IndirectIBM QRadar, Google GCP Security Operations
Sophos Unified Threat Management (UTM)IndirectIBM QRadar
Sophos XG FirewallIndirectGoogle GCP Security Operations, IBM QRadar
Splashtop Remote AccessIndirectIBM QRadar
Squid ProxyIndirectCisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Devo Platform
Sumo Logic Log Analytics PlatformDirect & IndirectCisco Splunk
Swimlane TurbineDirect
Symantec Endpoint Protection (SEP)IndirectExabeam New-Scale SIEM, Cisco Splunk, Google GCP Security Operations, Microsoft Azure Sentinel
Symantec Endpoint SecurityDirect
Symantec Enterprise Cloud Data Loss Prevention (DLP)IndirectSentinelOne Singularity AI SIEM, Google GCP Security Operations, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM
Symantec Secure Web GatewayDirect & IndirectGoogle GCP Security Operations, IBM QRadar, Devo Platform, Cisco Splunk
Tanium AssetIndirectDatadog Cloud SIEM
Tanium Threat ResponseDirect
Tenable NessusDirect & IndirectMicrosoft Azure Sentinel, Datadog Cloud SIEM, Cisco Splunk
The OpenSearch Project OpenSearchDirect
Thinkst CanaryIndirectGoogle GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar
Threat Intelligence Platform Threat Intelligence PlatformDirect
Tines No-Code Automation PlatformDirect
Trellix Cloud SecurityIndirectSumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Trellix Data Loss PreventionIndirectCisco Splunk
Trellix Endpoint Security (ENS)Direct & IndirectCisco Splunk, Google GCP Security Operations, IBM QRadar, Exabeam New-Scale SIEM
Trellix Endpoint Security (HX)Direct
Trellix Intrusion Prevention SystemIndirectIBM QRadar
Trend Micro Apex CentralIndirectIBM QRadar, Cisco Splunk, Microsoft Azure Sentinel
Trend Micro Apex OneIndirectMicrosoft Azure Sentinel, Sumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk, Google GCP Security Operations
Trend Micro Cloud OneDirect
Trend Micro Deep SecurityIndirectIBM QRadar, Cisco Splunk
Trend Micro TippingPointIndirectGoogle GCP Security Operations, IBM QRadar
Trend Micro Vision OneDirect & IndirectIBM QRadar
Ubiquiti UniFiIndirectGoogle GCP Security Operations
Upwind Cloud-Native Application Protection Platform (CNAPP)Direct
VMware Carbon Black App ControlDirect & IndirectGoogle GCP Security Operations
VMware Carbon Black Cloud Audit and RemediationIndirectIBM QRadar, Microsoft Azure Sentinel
VMware Carbon Black Cloud Endpoint StandardDirect & IndirectGoogle GCP Security Operations, IBM QRadar
VMware Carbon Black Cloud Enterprise EDRDirect & IndirectSumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk, Google GCP Security Operations
VMware Carbon Black On-Prem EDRDirect & IndirectIBM QRadar, Google GCP Security Operations
VMware ESXiIndirectMicrosoft Azure Sentinel, Cisco Splunk, Palo Alto Networks Cortex XSIAM, Google GCP Security Operations, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM
VMware vCenterIndirectMicrosoft Azure Sentinel, Palo Alto Networks Cortex XSIAM, Cisco Splunk, IBM QRadar, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM
Varonis DatAdvantageIndirectIBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM
Varonis DatAlertIndirectSumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk, Google GCP Security Operations
Vectra AI PlatformDirect
Veeam Data PlatformIndirectCisco Splunk, Google GCP Security Operations, IBM QRadar, Datadog Cloud SIEM, Sumo Logic Log Analytics Platform
Verizon DDoS ShieldIndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk
Versa Networks Next Generation Firewall (NGFW)IndirectGoogle GCP Security Operations
Wallix ONEIndirectCrowdStrike Falcon Next-Gen SIEM
WatchGuard FireboxIndirectGoogle GCP Security Operations, IBM QRadar
Wazuh Open Source Security PlatformIndirectCrowdStrike Falcon Next-Gen SIEM
Wiz Cloud Security Platform CloudDirect & IndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel
Wiz Cloud Security Platform DefendDirect
Workday Enterprise Management CloudIndirectMicrosoft Azure Sentinel, Cisco Splunk, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Devo Platform, The OpenSearch Project OpenSearch
Zscaler Internet Access (ZIA)Direct & IndirectExabeam New-Scale SIEM, Cisco Splunk, SentinelOne Singularity AI SIEM, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Devo Platform, Sumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar
Zscaler Private Access (ZPA)IndirectMicrosoft Azure Sentinel, Sumo Logic Log Analytics Platform
iboss ZeroTrust SASEDirect

ReliaQuest will make reasonable efforts to maintain support for the direct and indirect technology sources described in the above table. The supported technology sources are subject to change from time-to-time. ReliaQuest cannot guarantee the connectivity or availability of any or all technology sources, nor be responsible for changes or errors in the technology sources or how they interface or connect with GreyMatter. In addition, GreyMatter’s connection to any technology sources may involve the use of compute power, storage capacity, or other licensing-based metrics or restrictions. Customers are solely responsible for verifying and complying with the terms, conditions, and costs associated with any such connectivity.