Skip to Content

Supported Sources

GreyMatter connects to the sources listed in the table below either directly or indirectly.

  • Direct Connection: GreyMatter connects directly to the source technology via API, enabling real-time data retrieval and potential response actions.
  • Indirect Connection: GreyMatter accesses the source's data via a storage solution (SIEM,Data Lake, etc.), where the data is first collected and stored before GreyMatter retrieves it.
Source Technologies GreyMatter Connection Method Storage Solution Compatibility (Indirect Connection)
*nix DHCP Indirect Exabeam New-Scale SIEM
*nix Operating System (OS) Indirect IBM QRadar, Microsoft Azure Sentinel, Devo Platform, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Cisco Splunk, Exabeam New-Scale SIEM, Palo Alto Networks Cortex XSIAM
1Password Password Manager Indirect Cisco Splunk, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar
Abnormal AI Email Security Direct & Indirect SentinelOne Singularity AI SIEM, Google GCP Security Operations, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, IBM QRadar
AbuseIPDB LLC Threat Intelligence Direct
Akamai App & API Protector Indirect The OpenSearch Project OpenSearch, IBM QRadar, Cisco Splunk
Akamai Guardicore Indirect Google GCP Security Operations
Amazon AWS Cloud Direct
Amazon AWS CloudFront Indirect Sumo Logic Log Analytics Platform
Amazon AWS CloudTrail Direct & Indirect IBM QRadar, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, Amazon AWS Security Lake, Google GCP Security Operations, Devo Platform, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM
Amazon AWS CloudWatch Indirect The OpenSearch Project OpenSearch, Cisco Splunk
Amazon AWS Config Indirect Google GCP Security Operations, Devo Platform
Amazon AWS Elastic Kubernetes Service (EKS) Indirect Devo Platform, IBM QRadar, Google GCP Security Operations
Amazon AWS GuardDuty Direct & Indirect CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations, Devo Platform
Amazon AWS OpenSearch Service Indirect Google GCP Security Operations, Devo Platform
Amazon AWS Route 53 Direct & Indirect Amazon AWS Security Lake, Google GCP Security Operations
Amazon AWS S3 (Simple Storage Service) Direct
Amazon AWS Security Hub Indirect Cisco Splunk
Amazon AWS Security Lake Direct
Amazon AWS Shield Indirect IBM QRadar, Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform
Amazon AWS VPC Flow Data Direct & Indirect Cisco Splunk, Devo Platform, Google GCP Security Operations, Microsoft Azure Sentinel
Amazon AWS WAF Indirect Google GCP Security Operations, Cisco Splunk
Apache Kafka Indirect Google GCP Security Operations, Cisco Splunk
Apache Tomcat Indirect Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Datadog Cloud SIEM, CrowdStrike Falcon Next-Gen SIEM, Devo Platform, Cisco Splunk, Exabeam New-Scale SIEM, Google GCP Security Operations
Appgate Universal Zero Trust Network Access (ZTNA) Indirect Google GCP Security Operations
Apple macOS Indirect Google GCP Security Operations
Aqua Security Cloud Workload Protection Direct
Arctic Wolf Aurora Endpoint Security Direct & Indirect Cisco Splunk, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM, Google GCP Security Operations, IBM QRadar, Palo Alto Networks Cortex XSIAM
Arista Networks Network Detection and Response (NDR) Indirect Google GCP Security Operations, Cisco Splunk
Armis Centrix Direct
Atomicorp OSSEC Indirect IBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk
Auth0 Platform Indirect Sumo Logic Log Analytics Platform, Google GCP Security Operations
Axonius Platform Direct
Barracuda Cloud Gen Firewall Indirect IBM QRadar, Google GCP Security Operations
Barracuda Email Protection Indirect Google GCP Security Operations
BeyondTrust Endpoint Privilege Management (EPM) Indirect Google GCP Security Operations, Exabeam New-Scale SIEM, Cisco Splunk, IBM QRadar
BeyondTrust Password Safe Indirect IBM QRadar, Cisco Splunk, Google GCP Security Operations
BeyondTrust Privileged Remote Access Indirect Cisco Splunk, Exabeam New-Scale SIEM
BeyondTrust Remote Support Indirect Cisco Splunk
BitSight Security Performance Management Indirect Cisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations
Bitdefender GravityZone Endpoint Detection and Response (EDR) Direct & Indirect IBM QRadar, Microsoft Azure Sentinel, Cisco Splunk
BlueCat Networks Integrity (Adonis) Indirect CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Google GCP Security Operations, Devo Platform
Box Cloud Storage Indirect Devo Platform, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk, Microsoft Azure Sentinel
Bravura Security Bravura Identity Indirect Google GCP Security Operations, Cisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform
Bravura Security Bravura Privilege Indirect IBM QRadar, Google GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform
Cato Networks Cloud Platform Indirect Google GCP Security Operations, Microsoft Azure Sentinel, IBM QRadar, Devo Platform, SentinelOne Singularity AI SIEM
Cato Networks Secure Access Service Edge (SASE) Direct
Check Point CloudGuard Indirect IBM QRadar, Google GCP Security Operations
Check Point Data Loss Prevention (DLP) Indirect Exabeam New-Scale SIEM, Microsoft Azure Sentinel, IBM QRadar, Google GCP Security Operations
Check Point Enterprise Cloud Email Security Indirect Cisco Splunk, Google GCP Security Operations
Check Point Firewall Indirect Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar, Devo Platform, Exabeam New-Scale SIEM, Cisco Splunk, Microsoft Azure Sentinel
Check Point Harmony Email Security Direct
Check Point Remote Access VPN Indirect Microsoft Azure Sentinel, Google GCP Security Operations, IBM QRadar, Exabeam New-Scale SIEM
Check Point SandBlast: Threat Extraction & Emulation Indirect Google GCP Security Operations, IBM QRadar
Check Point Security Management Direct & Indirect Google GCP Security Operations, Cisco Splunk, Devo Platform, IBM QRadar
Check Point SmartDefense Indirect Cisco Splunk, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, IBM QRadar, Google GCP Security Operations
Check Point URL Filtering Indirect Cisco Splunk, IBM QRadar, Google GCP Security Operations, Microsoft Azure Sentinel, Exabeam New-Scale SIEM
Cisco Adaptive Security Appliance (ASA) Direct & Indirect Microsoft Azure Sentinel, IBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Exabeam New-Scale SIEM, CrowdStrike Falcon Next-Gen SIEM, Devo Platform, Cisco Splunk, SentinelOne Singularity AI SIEM
Cisco AnyConnect Indirect Devo Platform, Cisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar, SentinelOne Singularity AI SIEM
Cisco Duo Security Direct & Indirect SentinelOne Singularity AI SIEM, Datadog Cloud SIEM, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar, Microsoft Azure Sentinel, Devo Platform, Google GCP Security Operations, Cisco Splunk
Cisco Event Streamer (eStreamer) Indirect Cisco Splunk
Cisco FirePower Indirect Exabeam New-Scale SIEM, Cisco Splunk, Google GCP Security Operations, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, IBM QRadar
Cisco Identity Services Engine (ISE) Direct & Indirect Exabeam New-Scale SIEM, IBM QRadar, Cisco Splunk, Google GCP Security Operations, Devo Platform, SentinelOne Singularity AI SIEM, CrowdStrike Falcon Next-Gen SIEM
Cisco Meraki Direct & Indirect Google GCP Security Operations, Exabeam New-Scale SIEM, Sumo Logic Log Analytics Platform, Devo Platform, SentinelOne Singularity AI SIEM, IBM QRadar, Cisco Splunk, Microsoft Azure Sentinel
Cisco Networking Software NX-OS Indirect Exabeam New-Scale SIEM, Cisco Splunk, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM
Cisco Nexus Indirect CrowdStrike Falcon Next-Gen SIEM
Cisco Platform Exchange Grid (pxGrid) Direct
Cisco Secure Email Indirect IBM QRadar
Cisco Secure Endpoint Direct & Indirect Microsoft Azure Sentinel, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Cisco Secure Firewall Management Center (FMC) Direct
Cisco Secure Network Analytics Direct
Cisco Secure Web Appliance Indirect IBM QRadar
Cisco Snort Indirect Exabeam New-Scale SIEM, IBM QRadar
Cisco Splunk Direct & Indirect IBM QRadar, Cisco Splunk, Google GCP Security Operations
Cisco Splunk Security Orchestration Automation and Response (SOAR) Direct
Cisco Umbrella Direct & Indirect Exabeam New-Scale SIEM, IBM QRadar, Google GCP Security Operations, Devo Platform, Sumo Logic Log Analytics Platform, Cisco Splunk, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM
Cisco Wireless LAN Controller (WLC) Indirect IBM QRadar
Citrix Netscaler Content Filtering Indirect Palo Alto Networks Cortex XSIAM
Citrix Netscaler Gateway VPN Indirect Sumo Logic Log Analytics Platform, Exabeam New-Scale SIEM, IBM QRadar, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk
Citrix Netscaler Web Application Firewall (WAF) Indirect Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar
Citrix Virtual Apps and Desktops Indirect The OpenSearch Project OpenSearch, Datadog Cloud SIEM, Cisco Splunk
Claroty XDome for Healthcare Direct
Claroty xDome Direct & Indirect Google GCP Security Operations
CloudFlare Content Delivery Network (CDN) Indirect Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Cisco Splunk, SentinelOne Singularity AI SIEM, IBM QRadar
CloudFlare DDoS Protection Indirect SentinelOne Singularity AI SIEM, Google GCP Security Operations
CloudFlare DNS Indirect Google GCP Security Operations, Cisco Splunk, SentinelOne Singularity AI SIEM
CloudFlare Magic Firewall Indirect Google GCP Security Operations, Cisco Splunk, SentinelOne Singularity AI SIEM
CloudFlare Secure Web Gateway (SWG) Indirect SentinelOne Singularity AI SIEM, Google GCP Security Operations
CloudFlare Web Application Firewall (WAF) Direct & Indirect SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, IBM QRadar, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations
CloudFlare Zero Trust Network Access (ZTNA) Indirect SentinelOne Singularity AI SIEM, Google GCP Security Operations, Cisco Splunk
Cofense PhishMe SAT Platform Indirect Google GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar
Cofense Triage Email Analytics Indirect Google GCP Security Operations
Corelight Open NDR Platform Indirect Cisco Splunk
Cribl Inc Cribl Indirect Cisco Splunk
CrowdStrike Falcon Adversary Intelligence Direct
CrowdStrike Falcon Fusion SOAR Direct
CrowdStrike Falcon Identity Protection Direct & Indirect IBM QRadar, Devo Platform, Cisco Splunk
CrowdStrike Falcon Insight XDR Direct & Indirect CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Microsoft Azure Sentinel, Cisco Splunk, Devo Platform, CrowdStrike Falcon Long Term Repository, Exabeam New-Scale SIEM, IBM QRadar, Sumo Logic Log Analytics Platform
CrowdStrike Falcon LogScale Direct
CrowdStrike Falcon Long Term Repository Direct
CrowdStrike Falcon MalQuery Direct
CrowdStrike Falcon Next-Gen SIEM Direct & Indirect IBM QRadar, Sumo Logic Log Analytics Platform
CrowdStrike Falcon Prevent Direct & Indirect Cisco Splunk, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, CrowdStrike Falcon Long Term Repository, Devo Platform, Sumo Logic Log Analytics Platform
CrowdStrike Falcon Spotlight Direct & Indirect Devo Platform
CybeReason Endpoint Detection and Response (EDR) Indirect Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar
CybeReason Next-Generation Antivirus Indirect Sumo Logic Log Analytics Platform, Google GCP Security Operations, Cisco Splunk, IBM QRadar
CyberArk Enterprise Password Vault (EPV) Indirect Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Devo Platform, Cisco Splunk, Microsoft Azure Sentinel, Google GCP Security Operations, IBM QRadar
CyberArk Privileged Threat Analytics (PTA) Indirect IBM QRadar, SentinelOne Singularity AI SIEM, CrowdStrike Falcon Next-Gen SIEM, Sumo Logic Log Analytics Platform, Exabeam New-Scale SIEM, Cisco Splunk, Google GCP Security Operations, Devo Platform
CyberArk Workforce Identity Direct & Indirect SentinelOne Singularity AI SIEM, Google GCP Security Operations, Cisco Splunk
DOPE.SECURITY Inc Secure Web Gateway (SWG) Indirect Google GCP Security Operations
Darktrace ActiveAI Security Platform Direct & Indirect Google GCP Security Operations, Microsoft Azure Sentinel, Cisco Splunk, IBM QRadar
Datadog Cloud SIEM Direct
Delinea Secret Server Indirect Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM, IBM QRadar, Google GCP Security Operations, Exabeam New-Scale SIEM, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk
Devo Platform Direct & Indirect Microsoft Azure Sentinel, IBM QRadar, Devo Platform
Docker Business Indirect Google GCP Security Operations
Dragos Platform Direct
Elastic Elasticsearch Direct
Epic Electronic Medical Records (EMR) Indirect Cisco Splunk, IBM QRadar, Google GCP Security Operations
Exabeam Data Lake Legacy Direct & Indirect Exabeam New-Scale SIEM
Exabeam LogRhythm Case Management Direct & Indirect Cisco Splunk
Exabeam LogRhythm FIM Indirect Datadog Cloud SIEM
Exabeam LogRhythm NetMon Indirect Datadog Cloud SIEM
Exabeam LogRhythm SIEM Direct & Indirect Google GCP Security Operations
Exabeam New-Scale Advanced Analytics Direct & Indirect Exabeam New-Scale SIEM
Exabeam New-Scale SIEM Direct & Indirect Exabeam New-Scale SIEM
ExtraHop Reveal(X) Direct & Indirect Exabeam New-Scale SIEM, IBM QRadar, Google GCP Security Operations, Cisco Splunk, Devo Platform
Extreme Networks Access Points Indirect IBM QRadar, Sumo Logic Log Analytics Platform, Cisco Splunk, Google GCP Security Operations
Extreme Networks Routers Indirect Google GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform, Cisco Splunk
F5 Networks BIG-IP Access Policy Manager (APM) Indirect Cisco Splunk
F5 Networks BIG-IP Application Security Manager (ASM) Indirect Microsoft Azure Sentinel, Cisco Splunk, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM
F5 Networks BIG-IP DNS Indirect Cisco Splunk, Exabeam New-Scale SIEM
F5 Networks BIG-IP Local Traffic Manager (LTM) Indirect Google GCP Security Operations
Fastly Next-Gen WAF Indirect Cisco Splunk, Sumo Logic Log Analytics Platform, Google GCP Security Operations
Fidelis Security Deception Indirect Microsoft Azure Sentinel
Fidelis Security Endpoint (EDR) Indirect Microsoft Azure Sentinel
Fidelis Security Network Data Loss Prevention Indirect Microsoft Azure Sentinel
Fidelis Security Network NDR Indirect Microsoft Azure Sentinel
Forcepoint Secure Web Gateway Indirect IBM QRadar, Cisco Splunk
Forcepoint V Series Indirect IBM QRadar
Forescout CounterAct Indirect Microsoft Azure Sentinel, Cisco Splunk, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM
Fortinet FortiEDR Direct
Fortinet FortiGate Next-Gen Firewall (NGFW) Direct & Indirect Exabeam New-Scale SIEM, Devo Platform, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations, Cisco Splunk, Microsoft Azure Sentinel
Fortinet FortiManager Direct
Fortinet FortiSandbox Indirect Google GCP Security Operations
Fortra Agari Phishing Defense Indirect IBM QRadar, Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform
Fortra Globalscape Enhanced File Transfer (EFT) Indirect Cisco Splunk
Fortra Powertech Indirect Google GCP Security Operations
GitHub Enterprise Indirect Google GCP Security Operations, Devo Platform, Cisco Splunk, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, IBM QRadar
GitLab Code Repository Indirect Google GCP Security Operations, Devo Platform, Cisco Splunk
GoPhish Open-Source Phishing Framework Indirect Google GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar
Google GCP Apigee API Management Indirect Google GCP Security Operations
Google GCP Cloud Direct
Google GCP Cloud Audit Logs Direct & Indirect Google GCP Security Operations, IBM QRadar, Cisco Splunk, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Devo Platform
Google GCP Cloud DNS Indirect Google GCP Security Operations
Google GCP Cloud Firewall Indirect Google GCP Security Operations
Google GCP Cloud Storage Direct & Indirect Google GCP Security Operations
Google GCP Compute Engine Direct & Indirect Cisco Splunk, Google GCP Security Operations
Google GCP Security Command Center (SCC) Direct & Indirect Google GCP Security Operations, Cisco Splunk
Google GCP Security Operations Direct
Google GCP Security Operations SOAR Direct
Google VirusTotal Direct
Google Workspace Direct & Indirect Google GCP Security Operations, Cisco Splunk, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, Devo Platform, IBM QRadar
HPE Aruba Networking Access Points Indirect Google GCP Security Operations
HPE Aruba Networking ClearPass Indirect Google GCP Security Operations
HPE Aruba Networking Mobility Controller Indirect Google GCP Security Operations
HPE File Storage Indirect Google GCP Security Operations
HashiCorp Vault Indirect Cisco Splunk, IBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform
IBM QRadar Direct
IBM i-Series Indirect Google GCP Security Operations
Imperva DDoS Protection Indirect Devo Platform, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar
Imperva Web Application Firewall Indirect SentinelOne Singularity AI SIEM, Devo Platform, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, IBM QRadar
Imprivata Enterprise Platform Indirect Google GCP Security Operations
Infoblox DDI Direct & Indirect Devo Platform, SentinelOne Singularity AI SIEM, Google GCP Security Operations, IBM QRadar, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, Sumo Logic Log Analytics Platform, Cisco Splunk
Infoblox IP Address Management (IPAM) Indirect Google GCP Security Operations
Infoblox NIOS Direct & Indirect IBM QRadar, Google GCP Security Operations, Exabeam New-Scale SIEM, Devo Platform, Cisco Splunk, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel
Ironscales Email Security Platform Indirect Cisco Splunk, IBM QRadar
Island Enterprise Browser Indirect Cisco Splunk
Ivanti Connect Secure Indirect IBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Cisco Splunk, Devo Platform
Jamf Pro Indirect Google GCP Security Operations
Jenkins CI/CD Indirect Google GCP Security Operations
Joe Security Joe Sandbox Direct & Indirect Google GCP Security Operations
JumpCloud Platform Direct & Indirect Google GCP Security Operations, IBM QRadar, Cisco Splunk
Juniper Junos OS Indirect Cisco Splunk, Google GCP Security Operations, IBM QRadar
Juniper SRX Direct & Indirect Cisco Splunk, Google GCP Security Operations, IBM QRadar
Keeper Security Password Management Indirect Cisco Splunk, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, Google GCP Security Operations
KnowBe4 Enterprise Security Awareness Indirect Sumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk, Google GCP Security Operations
Kubernetes Kubernetes Indirect Cisco Splunk, Sumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar
LastPass Password Manager Indirect Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar
Malwarebytes Nebula Endpoint Detection & Response Direct
ManageEngine Password Manager Pro Indirect Google GCP Security Operations
Microsoft Active Directory Direct & Indirect Exabeam New-Scale SIEM, The OpenSearch Project OpenSearch, CrowdStrike Falcon Next-Gen SIEM, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Cisco Splunk, IBM QRadar, Datadog Cloud SIEM, Microsoft Azure Sentinel, Google GCP Security Operations
Microsoft Azure Application Gateway Indirect Cisco Splunk, Google GCP Security Operations
Microsoft Azure Cloud Direct
Microsoft Azure DNS Indirect Google GCP Security Operations
Microsoft Azure Data Explorer Direct
Microsoft Azure DevOps Indirect IBM QRadar
Microsoft Azure Firewall Indirect Devo Platform, Google GCP Security Operations, IBM QRadar, Cisco Splunk, Microsoft Azure Sentinel
Microsoft Azure Front Door Indirect Google GCP Security Operations
Microsoft Azure Key Vault Indirect Cisco Splunk
Microsoft Azure Logic Apps Direct
Microsoft Azure Monitor Direct & Indirect Exabeam New-Scale SIEM, Microsoft Azure Sentinel
Microsoft Azure SQL Database Indirect Microsoft Azure Sentinel, Cisco Splunk
Microsoft Azure Sentinel Direct
Microsoft Azure Subscription Activity Indirect Microsoft Azure Sentinel, Devo Platform, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Google GCP Security Operations, IBM QRadar, Exabeam New-Scale SIEM, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, Palo Alto Networks Cortex XSIAM
Microsoft Azure URL Filtering Indirect Google GCP Security Operations
Microsoft DHCP Server Indirect Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Datadog Cloud SIEM, Google GCP Security Operations
Microsoft DNS Indirect Datadog Cloud SIEM, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Cisco Splunk, IBM QRadar, Google GCP Security Operations, The OpenSearch Project OpenSearch, Exabeam New-Scale SIEM, Devo Platform
Microsoft Defender Vulnerability Management Direct
Microsoft Defender XDR Direct & Indirect Exabeam New-Scale SIEM
Microsoft Defender for Cloud Direct & Indirect Microsoft Azure Sentinel, IBM QRadar, Exabeam New-Scale SIEM, Cisco Splunk
Microsoft Defender for Cloud Apps Direct & Indirect IBM QRadar, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, Cisco Splunk
Microsoft Defender for Endpoint Direct & Indirect IBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Datadog Cloud SIEM, Microsoft Azure Sentinel, Cisco Splunk, Exabeam New-Scale SIEM
Microsoft Defender for Identity Direct & Indirect CrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations, Cisco Splunk, Devo Platform
Microsoft Defender for IoT Direct
Microsoft Defender for Office 365 Direct & Indirect Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM, Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar, Exabeam New-Scale SIEM
Microsoft Entra ID Direct & Indirect Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, Cisco Splunk, Palo Alto Networks Cortex XSIAM, The OpenSearch Project OpenSearch, Devo Platform, SentinelOne Singularity AI SIEM, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations
Microsoft Entra ID Protection Direct & Indirect Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM
Microsoft Exchange Online Direct
Microsoft Exchange Server Direct & Indirect Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Datadog Cloud SIEM, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, Devo Platform, IBM QRadar, Cisco Splunk
Microsoft Hyper-V Indirect SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, Datadog Cloud SIEM, Google GCP Security Operations
Microsoft IIS Indirect CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM, IBM QRadar, Datadog Cloud SIEM, Cisco Splunk, Palo Alto Networks Cortex XSIAM, Devo Platform, Google GCP Security Operations, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform
Microsoft Intune Direct & Indirect Google GCP Security Operations, Exabeam New-Scale SIEM, Cisco Splunk
Microsoft Office 365 Direct & Indirect Sumo Logic Log Analytics Platform, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, Devo Platform, Google GCP Security Operations, Cisco Splunk, IBM QRadar, SentinelOne Singularity AI SIEM
Microsoft Office 365 Cloud App Security Direct & Indirect Devo Platform
Microsoft OneDrive Indirect SentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM, Sumo Logic Log Analytics Platform, Devo Platform, Datadog Cloud SIEM, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar, Google GCP Security Operations, Microsoft Azure Sentinel
Microsoft PowerShell Indirect Datadog Cloud SIEM, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk, The OpenSearch Project OpenSearch, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM
Microsoft Purview Direct & Indirect Microsoft Azure Sentinel, Exabeam New-Scale SIEM, Devo Platform, Google GCP Security Operations, Cisco Splunk, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, IBM QRadar
Microsoft Purview Insider Risk Management Direct
Microsoft SQL Server Indirect Microsoft Azure Sentinel, The OpenSearch Project OpenSearch, Datadog Cloud SIEM, Google GCP Security Operations, Cisco Splunk
Microsoft SharePoint Indirect Sumo Logic Log Analytics Platform, Devo Platform, IBM QRadar, Datadog Cloud SIEM, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM, Cisco Splunk, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM
Microsoft Sysmon Indirect IBM QRadar, Google GCP Security Operations, Cisco Splunk, SentinelOne Singularity AI SIEM, CrowdStrike Falcon Next-Gen SIEM, Datadog Cloud SIEM, Sumo Logic Log Analytics Platform, The OpenSearch Project OpenSearch
Microsoft Windows Indirect Microsoft Azure Sentinel, The OpenSearch Project OpenSearch, Datadog Cloud SIEM, IBM QRadar, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM, Palo Alto Networks Cortex XSIAM, SentinelOne Singularity AI SIEM, Devo Platform, Sumo Logic Log Analytics Platform, Cisco Splunk
Microsoft Windows Defender Antivirus Indirect SentinelOne Singularity AI SIEM, Cisco Splunk, Datadog Cloud SIEM, Sumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar, Exabeam New-Scale SIEM
Microsoft Windows Hello Indirect SentinelOne Singularity AI SIEM, Datadog Cloud SIEM, Sumo Logic Log Analytics Platform
Microsoft Windows Performance Monitor Indirect SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, Datadog Cloud SIEM
MikroTik RouterOS Indirect IBM QRadar
Mimecast Advanced Email Security Direct & Indirect IBM QRadar, Microsoft Azure Sentinel, Devo Platform, Exabeam New-Scale SIEM, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform
MongoDB Enterprise Advanced Indirect Google GCP Security Operations
Morphisec Guard Indirect Cisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations
Morphisec Guard Lite Indirect Cisco Splunk, Sumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar
NetApp ONTAP Indirect Cisco Splunk
Netography Fusion Direct
Netskope One Indirect Exabeam New-Scale SIEM, Google GCP Security Operations, Microsoft Azure Sentinel, Devo Platform, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Sumo Logic Log Analytics Platform, Cisco Splunk
Netskope Secure Web Gateway (SWG) Direct
Netwrix Change Tracker Indirect Microsoft Azure Sentinel
Netwrix StealthINTERCEPT Indirect IBM QRadar, Microsoft Azure Sentinel, Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform
Netwrix Threat Manager Indirect IBM QRadar, Cisco Splunk, Google GCP Security Operations, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform
Nginx Web Server Indirect Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk
Nozomi Networks Central Management Console Direct
Nozomi Networks Vantage Direct
Nutanix Enterprise Cloud Indirect Google GCP Security Operations
Obsidian SaaS Identity Threat Detection and Response (ITDR) Direct
Okta Identity Direct & Indirect IBM QRadar, SentinelOne Singularity AI SIEM, Cisco Splunk, Sumo Logic Log Analytics Platform, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Devo Platform, Palo Alto Networks Cortex XSIAM
One Identity Safeguard Indirect Cisco Splunk
Open Information Security Foundation (OISF) Suricata Indirect Cisco Splunk, IBM QRadar
OpenText Access Manager Indirect CrowdStrike Falcon Next-Gen SIEM
Oracle Audit Vault and Database Firewall (AVDF) Indirect Cisco Splunk
Oracle Cloud Guard Indirect Microsoft Azure Sentinel
Oracle Cloud Infrastructure (OCI) Indirect Google GCP Security Operations, Cisco Splunk
Oracle MySQL Indirect Sumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations, Cisco Splunk
Orca Security Cloud Security Platform Direct & Indirect Cisco Splunk
Palo Alto Networks Cortex XDR Direct & Indirect Devo Platform, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Palo Alto Networks Cortex XSIAM Direct
Palo Alto Networks Cortex XSOAR Direct
Palo Alto Networks Enterprise IoT Security Indirect Google GCP Security Operations
Palo Alto Networks GlobalProtect Indirect IBM QRadar, Google GCP Security Operations, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, Devo Platform, Cisco Splunk
Palo Alto Networks IDS/IPS Direct & Indirect Google GCP Security Operations, IBM QRadar, Palo Alto Networks Cortex XSIAM, SentinelOne Singularity AI SIEM, Cisco Splunk, Exabeam New-Scale SIEM, Datadog Cloud SIEM
Palo Alto Networks Next-Gen Firewall (NGFW) Direct & Indirect IBM QRadar, SentinelOne Singularity AI SIEM, Palo Alto Networks Cortex XSIAM, Google GCP Security Operations, Microsoft Azure Sentinel, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Datadog Cloud SIEM, Exabeam New-Scale SIEM, Sumo Logic Log Analytics Platform, Devo Platform
Palo Alto Networks Panorama Indirect IBM QRadar, Google GCP Security Operations, Cisco Splunk
Palo Alto Networks Prisma Access Indirect Google GCP Security Operations, IBM QRadar
Palo Alto Networks Prisma Cloud Direct & Indirect IBM QRadar, Google GCP Security Operations, Cisco Splunk
Palo Alto Networks URL Filtering Indirect Exabeam New-Scale SIEM, Cisco Splunk, IBM QRadar, Datadog Cloud SIEM, Google GCP Security Operations, SentinelOne Singularity AI SIEM
Palo Alto Networks Wildfire Direct & Indirect Google GCP Security Operations, IBM QRadar, Datadog Cloud SIEM, Cisco Splunk
Ping Identity PingFederate Indirect IBM QRadar, Microsoft Azure Sentinel, Google GCP Security Operations, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM
Ping Identity PingOne Advanced Identity Cloud Direct
Ping Identity PingOne Platform Indirect IBM QRadar, Microsoft Azure Sentinel, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk
PostgreSQL PostgreSQL Indirect Sumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk, Google GCP Security Operations
Progress Software MOVEit Managed File Transfer Software (MFTS) Indirect IBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Cisco Splunk
Progress Software ShareFile Indirect Sumo Logic Log Analytics Platform, Google GCP Security Operations
Proofpoint Cloud App Security Broker (CASB) Indirect SentinelOne Singularity AI SIEM
Proofpoint Email Protection Indirect Sumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM, Palo Alto Networks Cortex XSIAM, CrowdStrike Falcon Next-Gen SIEM, Devo Platform, Google GCP Security Operations
Proofpoint Insider Threat Management (ITM) Indirect SentinelOne Singularity AI SIEM
Proofpoint Targeted Attack Protection (TAP) Direct & Indirect Devo Platform, IBM QRadar, Microsoft Azure Sentinel, Palo Alto Networks Cortex XSIAM, Google GCP Security Operations, Cisco Splunk, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM
Proofpoint Threat Response Auto-Pull (TRAP) Indirect SentinelOne Singularity AI SIEM
Qualys Vulnerability Management, Detection & Response (VMDR) Direct
RSA SecurID Indirect Sumo Logic Log Analytics Platform, Devo Platform, Google GCP Security Operations, Cisco Splunk, IBM QRadar
RadWare DefensePro Indirect Exabeam New-Scale SIEM, Google GCP Security Operations
Rapid7 InsightIDR Direct
Rapid7 Nexpose Direct
RedHat Auditd Indirect Google GCP Security Operations, Exabeam New-Scale SIEM, CrowdStrike Falcon Next-Gen SIEM, Devo Platform
Redwood Cerberus FTP Server Indirect Google GCP Security Operations
Rubrik Security Cloud Indirect Microsoft Azure Sentinel, Google GCP Security Operations
SAP Sybase ASE Indirect Microsoft Azure Sentinel, Cisco Splunk
SailPoint Identity Security Cloud Direct
SailPoint IdentityIQ Indirect Google GCP Security Operations
SalesForce Customer Relationship Manager (CRM) Indirect Google GCP Security Operations, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM, IBM QRadar, Sumo Logic Log Analytics Platform, Cisco Splunk, The OpenSearch Project OpenSearch
SalesForce Slack Indirect Microsoft Azure Sentinel, Google GCP Security Operations
Saviynt Identity Cloud Enterprise Direct
SecureAuth Identity Platform Indirect Google GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar
Securonix Unified Defense SIEM Direct
SentinelOne Singularity AI SIEM Direct
SentinelOne Singularity Endpoint Direct & Indirect Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar, Cisco Splunk
ServiceNow IT Service Management (ITSM) Indirect Sumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Shibboleth Consortium Identity Provider Indirect Cisco Splunk, IBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform
Silverfort Universal MFA Indirect Google GCP Security Operations
SkyHigh Security Secure Web Gateway Indirect Sumo Logic Log Analytics Platform, Google GCP Security Operations, Exabeam New-Scale SIEM, Cisco Splunk, IBM QRadar
Snowflake Data Cloud Platform Direct & Indirect Google GCP Security Operations, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, Cisco Splunk, Devo Platform, IBM QRadar
Software Freedom Conservancy Inc Git Indirect Google GCP Security Operations
SolarWinds Orion Indirect Google GCP Security Operations
SonicWall Content Filtering Indirect IBM QRadar, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, Cisco Splunk
SonicWall Firewall Indirect IBM QRadar, Microsoft Azure Sentinel, Google GCP Security Operations, Cisco Splunk, SentinelOne Singularity AI SIEM
SonicWall IDS/IPS Indirect Cisco Splunk, Microsoft Azure Sentinel
SonicWall Virtual Private Network (VPN) Indirect Microsoft Azure Sentinel, Cisco Splunk
Sophos Antivirus Indirect Google GCP Security Operations, IBM QRadar
Sophos Central Indirect Google GCP Security Operations
Sophos Intercept X Direct & Indirect Google GCP Security Operations, IBM QRadar
Sophos Unified Threat Management (UTM) Indirect IBM QRadar
Sophos XG Firewall Indirect IBM QRadar, Google GCP Security Operations
Splashtop Remote Access Indirect IBM QRadar
Squid Proxy Indirect Cisco Splunk, Devo Platform, CrowdStrike Falcon Next-Gen SIEM
Sumo Logic Log Analytics Platform Direct & Indirect Cisco Splunk
Swimlane Turbine Direct
Symantec Endpoint Protection (SEP) Indirect Cisco Splunk, Google GCP Security Operations, Exabeam New-Scale SIEM, Microsoft Azure Sentinel
Symantec Endpoint Security Direct
Symantec Enterprise Cloud Data Loss Prevention (DLP) Indirect Google GCP Security Operations, Cisco Splunk, SentinelOne Singularity AI SIEM, CrowdStrike Falcon Next-Gen SIEM
Symantec Secure Web Gateway Direct & Indirect IBM QRadar, Devo Platform, Google GCP Security Operations, Cisco Splunk
Tanium Asset Indirect Datadog Cloud SIEM
Tanium Threat Response Direct
Tenable Nessus Direct & Indirect Microsoft Azure Sentinel, Datadog Cloud SIEM, Cisco Splunk
The OpenSearch Project OpenSearch Direct
The Osquery Foundation Osquery Direct
Thinkst Canary Indirect Cisco Splunk, Sumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar
Threat Intelligence Platform Threat Intelligence Platform Direct
Tines No-Code Automation Platform Direct
Trellix Cloud Security Indirect Google GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar
Trellix Data Loss Prevention Indirect Cisco Splunk
Trellix Endpoint Security (ENS) Direct & Indirect Google GCP Security Operations, IBM QRadar, Cisco Splunk, Exabeam New-Scale SIEM
Trellix Endpoint Security (HX) Direct
Trellix Intrusion Prevention System Indirect IBM QRadar
Trend Micro Apex Central Indirect IBM QRadar, Cisco Splunk, Microsoft Azure Sentinel
Trend Micro Apex One Indirect Sumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk, Google GCP Security Operations, Microsoft Azure Sentinel
Trend Micro Cloud One Direct
Trend Micro Deep Security Indirect Cisco Splunk, IBM QRadar
Trend Micro TippingPoint Indirect Google GCP Security Operations, IBM QRadar
Trend Micro Vision One Direct & Indirect IBM QRadar
Ubiquiti UniFi Indirect Google GCP Security Operations
Upwind Cloud-Native Application Protection Platform (CNAPP) Direct
VMware Carbon Black App Control Direct & Indirect Google GCP Security Operations
VMware Carbon Black Cloud Audit and Remediation Indirect IBM QRadar, Microsoft Azure Sentinel
VMware Carbon Black Cloud Endpoint Standard Direct & Indirect IBM QRadar, Google GCP Security Operations
VMware Carbon Black Cloud Enterprise EDR Direct & Indirect Cisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations
VMware Carbon Black On-Prem EDR Direct & Indirect IBM QRadar, Google GCP Security Operations
VMware ESXi Indirect Cisco Splunk, Google GCP Security Operations, IBM QRadar, Microsoft Azure Sentinel, Palo Alto Networks Cortex XSIAM, CrowdStrike Falcon Next-Gen SIEM
VMware vCenter Indirect Palo Alto Networks Cortex XSIAM, Cisco Splunk, SentinelOne Singularity AI SIEM, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, IBM QRadar
Varonis DatAdvantage Indirect IBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM
Varonis DatAlert Indirect Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar
Vectra AI Platform Direct
Veeam Data Platform Indirect Google GCP Security Operations, Cisco Splunk, IBM QRadar, Datadog Cloud SIEM, Sumo Logic Log Analytics Platform
Verizon DDoS Shield Indirect Sumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations, Cisco Splunk
Versa Networks Next Generation Firewall (NGFW) Indirect Google GCP Security Operations
Wallix ONE Indirect CrowdStrike Falcon Next-Gen SIEM
WatchGuard Firebox Indirect Google GCP Security Operations, IBM QRadar
Wazuh Open Source Security Platform Indirect CrowdStrike Falcon Next-Gen SIEM
Wiz Cloud Security Platform Cloud Direct & Indirect Sumo Logic Log Analytics Platform, IBM QRadar, Microsoft Azure Sentinel, Google GCP Security Operations, Cisco Splunk, SentinelOne Singularity AI SIEM
Wiz Cloud Security Platform Defend Direct
Workday Enterprise Management Cloud Indirect Cisco Splunk, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Microsoft Azure Sentinel, Devo Platform, The OpenSearch Project OpenSearch
Zscaler Internet Access (ZIA) Direct & Indirect Exabeam New-Scale SIEM, Devo Platform, Cisco Splunk, SentinelOne Singularity AI SIEM, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar
Zscaler Private Access (ZPA) Indirect Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel
iboss ZeroTrust SASE Direct

ReliaQuest will make reasonable efforts to maintain support for the direct and indirect technology sources described in the above table. The supported technology sources are subject to change from time-to-time. ReliaQuest cannot guarantee the connectivity or availability of any or all technology sources, nor be responsible for changes or errors in the technology sources or how they interface or connect with GreyMatter. In addition, GreyMatter’s connection to any technology sources may involve the use of compute power, storage capacity, or other licensing-based metrics or restrictions. Customers are solely responsible for verifying and complying with the terms, conditions, and costs associated with any such connectivity.