Skip to Content

Supported Sources

GreyMatter connects to the sources listed in the table below either directly or indirectly.

  • Direct Connection: GreyMatter connects directly to the source technology via API, enabling real-time data retrieval and potential response actions.
  • Indirect Connection: GreyMatter accesses the source's data via a storage solution (SIEM,Data Lake, etc.), where the data is first collected and stored before GreyMatter retrieves it.
Source TechnologiesGreyMatter Connection MethodStorage Solution Compatibility (Indirect Connection)
*nix DHCPIndirectExabeam New-Scale SIEM
*nix Operating System (OS)IndirectMicrosoft Azure Sentinel, Devo Platform, IBM QRadar, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Exabeam New-Scale SIEM, Palo Alto Networks Cortex XSIAM, Cisco Splunk
1Password Password ManagerIndirectCisco Splunk, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Google GCP Security Operations, IBM QRadar
Abnormal AI Email SecurityDirect & IndirectCisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, IBM QRadar
AbuseIPDB LLC Threat IntelligenceDirect
Akamai App & API ProtectorIndirectIBM QRadar, Cisco Splunk, The OpenSearch Project OpenSearch
Akamai GuardicoreIndirectGoogle GCP Security Operations
Amazon AWS CloudDirect
Amazon AWS CloudFrontIndirectSumo Logic Log Analytics Platform
Amazon AWS CloudTrailDirect & IndirectCisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, IBM QRadar, Exabeam New-Scale SIEM, Amazon AWS Security Lake, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, Devo Platform
Amazon AWS CloudWatchIndirectCisco Splunk, The OpenSearch Project OpenSearch
Amazon AWS ConfigIndirectGoogle GCP Security Operations, Devo Platform
Amazon AWS Elastic Kubernetes Service (EKS)IndirectIBM QRadar, Devo Platform, Google GCP Security Operations
Amazon AWS GuardDutyDirect & IndirectCisco Splunk, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Sumo Logic Log Analytics Platform, Devo Platform, Microsoft Azure Sentinel, IBM QRadar
Amazon AWS OpenSearch ServiceIndirectGoogle GCP Security Operations, Devo Platform
Amazon AWS Route 53Direct & IndirectAmazon AWS Security Lake, Google GCP Security Operations
Amazon AWS Security HubIndirectCisco Splunk
Amazon AWS Security LakeDirect
Amazon AWS ShieldIndirectCisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations
Amazon AWS VPC Flow DataDirect & IndirectMicrosoft Azure Sentinel, Google GCP Security Operations, Devo Platform, Cisco Splunk
Amazon AWS WAFIndirectGoogle GCP Security Operations
Apache KafkaIndirectGoogle GCP Security Operations, Cisco Splunk
Apache TomcatIndirectExabeam New-Scale SIEM, Cisco Splunk, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, Datadog Cloud SIEM, SentinelOne Singularity AI SIEM, Devo Platform, Google GCP Security Operations
Appgate Universal Zero Trust Network Access (ZTNA)IndirectGoogle GCP Security Operations
Apple macOSIndirectGoogle GCP Security Operations
Aqua Security Cloud Workload ProtectionDirect
Arctic Wolf Aurora Endpoint SecurityDirect & IndirectGoogle GCP Security Operations, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, Palo Alto Networks Cortex XSIAM, Cisco Splunk, IBM QRadar
Arista Networks Network Detection and Response (NDR)IndirectCisco Splunk, Google GCP Security Operations
Armis CentrixDirect
Atomicorp OSSECIndirectCisco Splunk, Google GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform
Auth0 PlatformIndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform
Axonius PlatformDirect
Barracuda Cloud Gen FirewallIndirectGoogle GCP Security Operations, IBM QRadar
Barracuda Email ProtectionIndirectGoogle GCP Security Operations
BeyondTrust Endpoint Privilege Management (EPM)IndirectGoogle GCP Security Operations, Exabeam New-Scale SIEM, IBM QRadar, Cisco Splunk
BeyondTrust Password SafeIndirectCisco Splunk, IBM QRadar, Google GCP Security Operations
BeyondTrust Privileged Remote AccessIndirectCisco Splunk, Exabeam New-Scale SIEM
BeyondTrust Remote SupportIndirectCisco Splunk
BitSight Security Performance ManagementIndirectCisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar
Bitdefender GravityZone Endpoint Detection and Response (EDR)Direct & IndirectMicrosoft Azure Sentinel, Cisco Splunk, IBM QRadar
BlueCat Networks Integrity (Adonis)IndirectDevo Platform, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations
Box Cloud StorageIndirectSumo Logic Log Analytics Platform, Google GCP Security Operations, Cisco Splunk, Devo Platform
Bravura Security Bravura IdentityIndirectSumo Logic Log Analytics Platform, Google GCP Security Operations, Cisco Splunk, IBM QRadar
Bravura Security Bravura PrivilegeIndirectSumo Logic Log Analytics Platform, Cisco Splunk, Google GCP Security Operations, IBM QRadar
Cato Networks Cloud PlatformIndirectGoogle GCP Security Operations, IBM QRadar, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, Devo Platform
Cato Networks Secure Access Service Edge (SASE)Direct
Check Point CloudGuardIndirectGoogle GCP Security Operations, IBM QRadar
Check Point Data Loss Prevention (DLP)IndirectGoogle GCP Security Operations, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, IBM QRadar
Check Point Enterprise Cloud Email SecurityIndirectCisco Splunk
Check Point FirewallIndirectExabeam New-Scale SIEM, Microsoft Azure Sentinel, Cisco Splunk, Devo Platform, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar
Check Point Harmony Email SecurityDirect
Check Point Remote Access VPNIndirectIBM QRadar, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, Google GCP Security Operations
Check Point SandBlast: Threat Extraction & EmulationIndirectIBM QRadar, Google GCP Security Operations
Check Point Security ManagementDirect & IndirectDevo Platform, Google GCP Security Operations, Cisco Splunk, IBM QRadar
Check Point SmartDefenseIndirectExabeam New-Scale SIEM, Google GCP Security Operations, Microsoft Azure Sentinel, Cisco Splunk, IBM QRadar
Check Point URL FilteringIndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk, Exabeam New-Scale SIEM, Microsoft Azure Sentinel
Cisco Adaptive Security Appliance (ASA)Direct & IndirectCisco Splunk, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, Devo Platform, IBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations, SentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM
Cisco AnyConnectIndirectDevo Platform, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk
Cisco Duo SecurityDirect & IndirectGoogle GCP Security Operations, SentinelOne Singularity AI SIEM, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Sumo Logic Log Analytics Platform, Datadog Cloud SIEM, Microsoft Azure Sentinel, IBM QRadar, Devo Platform
Cisco Event Streamer (eStreamer)IndirectCisco Splunk
Cisco FirePowerIndirectSumo Logic Log Analytics Platform, IBM QRadar, SentinelOne Singularity AI SIEM, Google GCP Security Operations, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM
Cisco Identity Services Engine (ISE)IndirectIBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Exabeam New-Scale SIEM, SentinelOne Singularity AI SIEM, Devo Platform, Google GCP Security Operations
Cisco MerakiDirect & IndirectMicrosoft Azure Sentinel, SentinelOne Singularity AI SIEM, Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk, Devo Platform, Exabeam New-Scale SIEM
Cisco Networking Software NX-OSIndirectGoogle GCP Security Operations, Cisco Splunk, SentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM, CrowdStrike Falcon Next-Gen SIEM
Cisco NexusIndirectCrowdStrike Falcon Next-Gen SIEM
Cisco Platform Exchange Grid (pxGrid)Direct
Cisco Secure EmailIndirectIBM QRadar
Cisco Secure EndpointDirect & IndirectGoogle GCP Security Operations, Cisco Splunk, IBM QRadar, Microsoft Azure Sentinel
Cisco Secure Firewall Management Center (FMC)Direct
Cisco Secure Network AnalyticsDirect
Cisco Secure Web ApplianceIndirectIBM QRadar
Cisco SnortIndirectIBM QRadar, Exabeam New-Scale SIEM
Cisco SplunkDirect & IndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk
Cisco Splunk Security Orchestration Automation and Response (SOAR)Direct
Cisco UmbrellaDirect & IndirectSumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM, Google GCP Security Operations, Cisco Splunk, Devo Platform, Microsoft Azure Sentinel, IBM QRadar
Cisco Wireless LAN Controller (WLC)IndirectIBM QRadar
Citrix Netscaler Content FilteringIndirectPalo Alto Networks Cortex XSIAM
Citrix Netscaler Gateway VPNIndirectCisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Exabeam New-Scale SIEM, CrowdStrike Falcon Next-Gen SIEM
Citrix Netscaler Web Application Firewall (WAF)IndirectGoogle GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform
Citrix Virtual Apps and DesktopsIndirectDatadog Cloud SIEM, The OpenSearch Project OpenSearch, Cisco Splunk
Claroty XDome for HealthcareDirect
Claroty xDomeDirect & IndirectGoogle GCP Security Operations
CloudFlare Content Delivery Network (CDN)IndirectCrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Microsoft Azure Sentinel, IBM QRadar, Cisco Splunk
CloudFlare DDoS ProtectionIndirectGoogle GCP Security Operations
CloudFlare DNSIndirectCisco Splunk, Google GCP Security Operations
CloudFlare Magic FirewallIndirectCisco Splunk, Google GCP Security Operations
CloudFlare Secure Web Gateway (SWG)IndirectGoogle GCP Security Operations
CloudFlare Web Application Firewall (WAF)Direct & IndirectCisco Splunk, IBM QRadar, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations
CloudFlare Zero Trust Network Access (ZTNA)IndirectGoogle GCP Security Operations, Cisco Splunk
Cofense PhishMe SAT PlatformIndirectCisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar
Cofense Triage Email AnalyticsIndirectGoogle GCP Security Operations
Corelight Open NDR PlatformIndirectCisco Splunk
Cribl Inc CriblIndirectCisco Splunk
CrowdStrike Falcon Adversary IntelligenceDirect
CrowdStrike Falcon Fusion SOARDirect
CrowdStrike Falcon Identity ProtectionDirect & IndirectDevo Platform, Cisco Splunk, IBM QRadar
CrowdStrike Falcon Insight XDRDirect & IndirectMicrosoft Azure Sentinel, Google GCP Security Operations, Exabeam New-Scale SIEM, CrowdStrike Falcon Long Term Repository, Cisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, Devo Platform
CrowdStrike Falcon LogScaleDirect
CrowdStrike Falcon Long Term RepositoryDirect
CrowdStrike Falcon MalQueryDirect
CrowdStrike Falcon Next-Gen SIEMDirect & IndirectSumo Logic Log Analytics Platform, IBM QRadar
CrowdStrike Falcon PreventDirect & IndirectGoogle GCP Security Operations, CrowdStrike Falcon Long Term Repository, Devo Platform, Cisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar, Exabeam New-Scale SIEM, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel
CrowdStrike Falcon SpotlightDirect & IndirectDevo Platform
CybeReason Endpoint Detection and Response (EDR)IndirectCisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations
CybeReason Next-Generation AntivirusIndirectSumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk, Google GCP Security Operations
CyberArk Enterprise Password Vault (EPV)IndirectCisco Splunk, SentinelOne Singularity AI SIEM, Devo Platform, IBM QRadar, Google GCP Security Operations, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform
CyberArk Privileged Threat Analytics (PTA)IndirectExabeam New-Scale SIEM, IBM QRadar, Devo Platform, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM, Cisco Splunk, Sumo Logic Log Analytics Platform
CyberArk Workforce IdentityDirect & IndirectGoogle GCP Security Operations, Cisco Splunk, SentinelOne Singularity AI SIEM
DOPE.SECURITY Inc Secure Web Gateway (SWG)IndirectGoogle GCP Security Operations
Darktrace ActiveAI Security PlatformDirect & IndirectMicrosoft Azure Sentinel, IBM QRadar, Cisco Splunk, Google GCP Security Operations
Datadog Cloud SIEMDirect
Delinea Secret ServerIndirectMicrosoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar, Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Exabeam New-Scale SIEM
Devo PlatformDirect & IndirectDevo Platform, IBM QRadar, Microsoft Azure Sentinel
Docker BusinessIndirectGoogle GCP Security Operations
Dragos PlatformDirect
Elastic ElasticsearchDirect
Epic Electronic Medical Records (EMR)IndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk
Exabeam Data Lake LegacyDirect & IndirectExabeam New-Scale SIEM
Exabeam LogRhythm Case ManagementDirect & IndirectCisco Splunk
Exabeam LogRhythm FIMIndirectDatadog Cloud SIEM
Exabeam LogRhythm NetMonIndirectDatadog Cloud SIEM
Exabeam LogRhythm SIEMDirect & IndirectGoogle GCP Security Operations
Exabeam New-Scale Advanced AnalyticsDirect & IndirectExabeam New-Scale SIEM
Exabeam New-Scale SIEMDirect & IndirectExabeam New-Scale SIEM
ExtraHop Reveal(X)Direct & IndirectDevo Platform, Google GCP Security Operations, IBM QRadar, Exabeam New-Scale SIEM, Cisco Splunk
Extreme Networks Access PointsIndirectIBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk
Extreme Networks RoutersIndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar
F5 Networks BIG-IP Access Policy Manager (APM)IndirectCisco Splunk
F5 Networks BIG-IP Application Security Manager (ASM)IndirectCrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM, Cisco Splunk, Microsoft Azure Sentinel, Google GCP Security Operations
F5 Networks BIG-IP DNSIndirectExabeam New-Scale SIEM, Cisco Splunk
F5 Networks BIG-IP Local Traffic Manager (LTM)IndirectGoogle GCP Security Operations
Fastly Next-Gen WAFIndirectGoogle GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform
Fidelis Security DeceptionIndirectMicrosoft Azure Sentinel
Fidelis Security Endpoint (EDR)IndirectMicrosoft Azure Sentinel
Fidelis Security Network Data Loss PreventionIndirectMicrosoft Azure Sentinel
Fidelis Security Network NDRIndirectMicrosoft Azure Sentinel
Forcepoint Secure Web GatewayIndirectCisco Splunk, IBM QRadar
Forcepoint V SeriesIndirectIBM QRadar
Forescout CounterActIndirectMicrosoft Azure Sentinel, Google GCP Security Operations, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM
Fortinet FortiEDRDirect
Fortinet FortiGate Next-Gen Firewall (NGFW)Direct & IndirectCrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, Sumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar, Cisco Splunk, Devo Platform
Fortinet FortiManagerDirect
Fortinet FortiSandboxIndirectGoogle GCP Security Operations
Fortra Agari Phishing DefenseIndirectGoogle GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform, Cisco Splunk
Fortra Globalscape Enhanced File Transfer (EFT)IndirectCisco Splunk
Fortra PowertechIndirectGoogle GCP Security Operations
GitHub EnterpriseIndirectCisco Splunk, Microsoft Azure Sentinel, Devo Platform, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, IBM QRadar
GitLab Code RepositoryIndirectGoogle GCP Security Operations, Devo Platform, Cisco Splunk
GoPhish Open-Source Phishing FrameworkIndirectSumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk, Google GCP Security Operations
Google GCP Apigee API ManagementIndirectGoogle GCP Security Operations
Google GCP CloudDirect
Google GCP Cloud Audit LogsDirect & IndirectCisco Splunk, Devo Platform, IBM QRadar, Microsoft Azure Sentinel, Google GCP Security Operations, Sumo Logic Log Analytics Platform
Google GCP Cloud DNSIndirectGoogle GCP Security Operations
Google GCP Cloud FirewallIndirectGoogle GCP Security Operations
Google GCP Cloud StorageDirect & IndirectGoogle GCP Security Operations
Google GCP Compute EngineDirect & IndirectGoogle GCP Security Operations
Google GCP Security Command Center (SCC)Direct & IndirectGoogle GCP Security Operations, Cisco Splunk
Google GCP Security OperationsDirect
Google GCP Security Operations SOARDirect
Google VirusTotalDirect
Google WorkspaceDirect & IndirectGoogle GCP Security Operations, Devo Platform, Sumo Logic Log Analytics Platform, IBM QRadar, Microsoft Azure Sentinel, Cisco Splunk
HPE Aruba Networking Access PointsIndirectGoogle GCP Security Operations
HPE Aruba Networking ClearPassIndirectGoogle GCP Security Operations
HPE Aruba Networking Mobility ControllerIndirectGoogle GCP Security Operations
HPE File StorageIndirectGoogle GCP Security Operations
HashiCorp VaultIndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform
IBM QRadarDirect
IBM i-SeriesIndirectGoogle GCP Security Operations
Imperva DDoS ProtectionIndirectIBM QRadar, Devo Platform, CrowdStrike Falcon Next-Gen SIEM
Imperva Web Application FirewallIndirectDevo Platform, IBM QRadar, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM
Imprivata Enterprise PlatformIndirectGoogle GCP Security Operations
Infoblox DDIDirect & IndirectIBM QRadar, Exabeam New-Scale SIEM, Google GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform, Devo Platform, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel
Infoblox IP Address Management (IPAM)IndirectGoogle GCP Security Operations
Infoblox NIOSDirect & IndirectDevo Platform, Microsoft Azure Sentinel, Cisco Splunk, Google GCP Security Operations, IBM QRadar, Exabeam New-Scale SIEM, SentinelOne Singularity AI SIEM
Ironscales Email Security PlatformIndirectIBM QRadar, Cisco Splunk
Island Enterprise BrowserIndirectCisco Splunk
Ivanti Connect SecureIndirectSentinelOne Singularity AI SIEM, IBM QRadar, Devo Platform, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk
Jamf ProIndirectGoogle GCP Security Operations
Jenkins CI/CDIndirectGoogle GCP Security Operations
Joe Security Joe SandboxDirect & IndirectGoogle GCP Security Operations
JumpCloud PlatformDirect & IndirectGoogle GCP Security Operations, Cisco Splunk, IBM QRadar
Juniper Junos OSIndirectCisco Splunk, IBM QRadar, Google GCP Security Operations
Juniper SRXDirect & IndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk
Keeper Security Password ManagementIndirectSumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Google GCP Security Operations, Cisco Splunk
KnowBe4 Enterprise Security AwarenessIndirectSumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar, Cisco Splunk
Kubernetes KubernetesIndirectSumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations, Cisco Splunk
LastPass Password ManagerIndirectSumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Malwarebytes Nebula Endpoint Detection & ResponseDirect
ManageEngine Password Manager ProIndirectGoogle GCP Security Operations
Microsoft Active DirectoryDirect & IndirectDatadog Cloud SIEM, Cisco Splunk, Sumo Logic Log Analytics Platform, The OpenSearch Project OpenSearch, IBM QRadar, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM, Google GCP Security Operations, Exabeam New-Scale SIEM
Microsoft Azure Application GatewayIndirectCisco Splunk, Google GCP Security Operations
Microsoft Azure CloudDirect
Microsoft Azure DNSIndirectGoogle GCP Security Operations
Microsoft Azure Data ExplorerDirect
Microsoft Azure DevOpsIndirectIBM QRadar
Microsoft Azure FirewallIndirectCisco Splunk, IBM QRadar, Microsoft Azure Sentinel, Devo Platform, Google GCP Security Operations
Microsoft Azure Front DoorIndirectGoogle GCP Security Operations
Microsoft Azure Key VaultIndirectCisco Splunk
Microsoft Azure Logic AppsDirect
Microsoft Azure MonitorDirect & IndirectExabeam New-Scale SIEM, Microsoft Azure Sentinel
Microsoft Azure SQL DatabaseIndirectCisco Splunk, Microsoft Azure Sentinel
Microsoft Azure SentinelDirect
Microsoft Azure Subscription ActivityIndirectExabeam New-Scale SIEM, SentinelOne Singularity AI SIEM, Cisco Splunk, Devo Platform, CrowdStrike Falcon Next-Gen SIEM, Palo Alto Networks Cortex XSIAM, Google GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel
Microsoft Azure URL FilteringIndirectGoogle GCP Security Operations
Microsoft DHCP ServerIndirectMicrosoft Azure Sentinel, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Datadog Cloud SIEM, Cisco Splunk, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Google GCP Security Operations
Microsoft DNSIndirectMicrosoft Azure Sentinel, The OpenSearch Project OpenSearch, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, Exabeam New-Scale SIEM, Devo Platform, Google GCP Security Operations, Datadog Cloud SIEM, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk
Microsoft Defender Vulnerability ManagementDirect
Microsoft Defender XDRDirect & IndirectExabeam New-Scale SIEM
Microsoft Defender for CloudDirect & IndirectIBM QRadar, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, Cisco Splunk
Microsoft Defender for Cloud AppsDirect & IndirectMicrosoft Azure Sentinel, Exabeam New-Scale SIEM, IBM QRadar, Cisco Splunk
Microsoft Defender for EndpointDirect & IndirectMicrosoft Azure Sentinel, Google GCP Security Operations, IBM QRadar, Exabeam New-Scale SIEM, Cisco Splunk, Datadog Cloud SIEM, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM
Microsoft Defender for IdentityDirect & IndirectGoogle GCP Security Operations, Devo Platform, Sumo Logic Log Analytics Platform, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk
Microsoft Defender for IoTDirect
Microsoft Defender for Office 365Direct & IndirectIBM QRadar, Cisco Splunk, Google GCP Security Operations, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM, Sumo Logic Log Analytics Platform
Microsoft Entra IDDirect & IndirectGoogle GCP Security Operations, IBM QRadar, Devo Platform, CrowdStrike Falcon Next-Gen SIEM, Sumo Logic Log Analytics Platform, Cisco Splunk, Palo Alto Networks Cortex XSIAM, The OpenSearch Project OpenSearch, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM
Microsoft Entra ID ProtectionDirect & IndirectSumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel
Microsoft Exchange OnlineDirect
Microsoft Exchange ServerIndirectIBM QRadar, Datadog Cloud SIEM, Google GCP Security Operations, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Sumo Logic Log Analytics Platform, Devo Platform, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel
Microsoft Hyper-VIndirectCrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, Datadog Cloud SIEM, Google GCP Security Operations
Microsoft IISIndirectSumo Logic Log Analytics Platform, Cisco Splunk, SentinelOne Singularity AI SIEM, Datadog Cloud SIEM, Devo Platform, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Palo Alto Networks Cortex XSIAM, Google GCP Security Operations, IBM QRadar
Microsoft IntuneDirect & IndirectCisco Splunk, Exabeam New-Scale SIEM, Google GCP Security Operations
Microsoft Office 365Direct & IndirectGoogle GCP Security Operations, Microsoft Azure Sentinel, Cisco Splunk, Devo Platform, Exabeam New-Scale SIEM, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, IBM QRadar
Microsoft Office 365 Cloud App SecurityDirect & IndirectDevo Platform
Microsoft OneDriveIndirectIBM QRadar, Microsoft Azure Sentinel, Datadog Cloud SIEM, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Devo Platform, SentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM, Google GCP Security Operations, Sumo Logic Log Analytics Platform
Microsoft PowerShellIndirectCisco Splunk, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Datadog Cloud SIEM, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, The OpenSearch Project OpenSearch
Microsoft PurviewDirect & IndirectExabeam New-Scale SIEM, Cisco Splunk, Google GCP Security Operations, Devo Platform, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, IBM QRadar
Microsoft Purview Insider Risk ManagementDirect
Microsoft SQL ServerIndirectCisco Splunk, Datadog Cloud SIEM, The OpenSearch Project OpenSearch, Microsoft Azure Sentinel, Google GCP Security Operations
Microsoft SharePointIndirectCisco Splunk, SentinelOne Singularity AI SIEM, Google GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform, Datadog Cloud SIEM, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, Devo Platform, CrowdStrike Falcon Next-Gen SIEM
Microsoft SysmonIndirectGoogle GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform, Datadog Cloud SIEM, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, The OpenSearch Project OpenSearch, SentinelOne Singularity AI SIEM
Microsoft WindowsIndirectExabeam New-Scale SIEM, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Palo Alto Networks Cortex XSIAM, The OpenSearch Project OpenSearch, Microsoft Azure Sentinel, Google GCP Security Operations, SentinelOne Singularity AI SIEM, Devo Platform, Datadog Cloud SIEM, Sumo Logic Log Analytics Platform, IBM QRadar
Microsoft Windows Defender AntivirusIndirectIBM QRadar, Datadog Cloud SIEM, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Cisco Splunk, Exabeam New-Scale SIEM
Microsoft Windows HelloIndirectSentinelOne Singularity AI SIEM, Datadog Cloud SIEM, Sumo Logic Log Analytics Platform
Microsoft Windows Performance MonitorIndirectSentinelOne Singularity AI SIEM, Datadog Cloud SIEM, Sumo Logic Log Analytics Platform
MikroTik RouterOSIndirectIBM QRadar
Mimecast Advanced Email SecurityDirect & IndirectCrowdStrike Falcon Next-Gen SIEM, Sumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk, Devo Platform, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, Google GCP Security Operations
MongoDB Enterprise AdvancedIndirectGoogle GCP Security Operations
Morphisec GuardIndirectGoogle GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar
Morphisec Guard LiteIndirectCisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar
NetApp ONTAPIndirectCisco Splunk
Netography FusionDirect
Netskope OneIndirectCrowdStrike Falcon Next-Gen SIEM, IBM QRadar, Devo Platform, Cisco Splunk, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Google GCP Security Operations, Exabeam New-Scale SIEM
Netskope Secure Web Gateway (SWG)Direct
Netwrix Change TrackerIndirectMicrosoft Azure Sentinel
Netwrix StealthINTERCEPTIndirectSumo Logic Log Analytics Platform, Google GCP Security Operations, Cisco Splunk, IBM QRadar, Microsoft Azure Sentinel
Netwrix Threat ManagerIndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk, Microsoft Azure Sentinel, IBM QRadar
Nginx Web ServerIndirectGoogle GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk
Nozomi Networks Central Management ConsoleDirect
Nozomi Networks VantageDirect
Nutanix Enterprise CloudIndirectGoogle GCP Security Operations
Obsidian SaaS Identity Threat Detection and Response (ITDR)Direct
Okta IdentityDirect & IndirectExabeam New-Scale SIEM, Google GCP Security Operations, Cisco Splunk, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, IBM QRadar, SentinelOne Singularity AI SIEM, Devo Platform, Palo Alto Networks Cortex XSIAM, CrowdStrike Falcon Next-Gen SIEM
One Identity SafeguardIndirectCisco Splunk
Open Information Security Foundation (OISF) SuricataIndirectIBM QRadar, Cisco Splunk
Oracle Audit Vault and Database Firewall (AVDF)IndirectCisco Splunk
Oracle Cloud GuardIndirectMicrosoft Azure Sentinel
Oracle Cloud Infrastructure (OCI)IndirectCisco Splunk, Google GCP Security Operations
Oracle MySQLIndirectSumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Orca Security Cloud Security PlatformDirect & IndirectCisco Splunk
Palo Alto Networks Cortex XDRDirect & IndirectGoogle GCP Security Operations, Cisco Splunk, IBM QRadar, Devo Platform
Palo Alto Networks Cortex XSIAMDirect
Palo Alto Networks Cortex XSOARDirect
Palo Alto Networks Enterprise IoT SecurityIndirectGoogle GCP Security Operations
Palo Alto Networks GlobalProtectIndirectIBM QRadar, Devo Platform, Sumo Logic Log Analytics Platform, Cisco Splunk, SentinelOne Singularity AI SIEM, Google GCP Security Operations
Palo Alto Networks IDS/IPSDirect & IndirectDatadog Cloud SIEM, SentinelOne Singularity AI SIEM, Google GCP Security Operations, IBM QRadar, Exabeam New-Scale SIEM, Cisco Splunk, Palo Alto Networks Cortex XSIAM
Palo Alto Networks Next-Gen Firewall (NGFW)Direct & IndirectExabeam New-Scale SIEM, Cisco Splunk, SentinelOne Singularity AI SIEM, Devo Platform, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Google GCP Security Operations, Palo Alto Networks Cortex XSIAM, IBM QRadar, Datadog Cloud SIEM
Palo Alto Networks PanoramaIndirectCisco Splunk, IBM QRadar, Google GCP Security Operations
Palo Alto Networks Prisma AccessIndirectGoogle GCP Security Operations, IBM QRadar
Palo Alto Networks Prisma CloudDirect & IndirectIBM QRadar, Cisco Splunk, Google GCP Security Operations
Palo Alto Networks URL FilteringIndirectIBM QRadar, Datadog Cloud SIEM, Google GCP Security Operations, SentinelOne Singularity AI SIEM, Cisco Splunk, Exabeam New-Scale SIEM
Palo Alto Networks WildfireDirect & IndirectIBM QRadar, Datadog Cloud SIEM, Cisco Splunk, Google GCP Security Operations
Ping Identity PingFederateIndirectCisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Google GCP Security Operations, IBM QRadar
Ping Identity PingOne Advanced Identity CloudDirect
Ping Identity PingOne PlatformIndirectMicrosoft Azure Sentinel, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Cisco Splunk
PostgreSQL PostgreSQLIndirectCisco Splunk, Sumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar
Progress Software MOVEit Managed File Transfer Software (MFTS)IndirectSumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Progress Software ShareFileIndirectSumo Logic Log Analytics Platform, Google GCP Security Operations
Proofpoint Cloud App Security Broker (CASB)IndirectSentinelOne Singularity AI SIEM
Proofpoint Email ProtectionIndirectDevo Platform, Palo Alto Networks Cortex XSIAM, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, SentinelOne Singularity AI SIEM, IBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk
Proofpoint Insider Threat Management (ITM)IndirectSentinelOne Singularity AI SIEM
Proofpoint Targeted Attack Protection (TAP)Direct & IndirectPalo Alto Networks Cortex XSIAM, Cisco Splunk, Exabeam New-Scale SIEM, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Devo Platform, IBM QRadar, SentinelOne Singularity AI SIEM, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM
Proofpoint Threat Response Auto-Pull (TRAP)IndirectSentinelOne Singularity AI SIEM
Qualys Vulnerability Management, Detection & Response (VMDR)Direct
RSA SecurIDIndirectDevo Platform, IBM QRadar, Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform
RadWare DefenseProIndirectGoogle GCP Security Operations, Exabeam New-Scale SIEM
Rapid7 InsightIDRDirect
Rapid7 NexposeDirect
RedHat AuditdIndirectCrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Devo Platform, Exabeam New-Scale SIEM
Redwood Cerberus FTP ServerIndirectGoogle GCP Security Operations
Rubrik Security CloudIndirectMicrosoft Azure Sentinel, Google GCP Security Operations
SAP Sybase ASEIndirectCisco Splunk, Microsoft Azure Sentinel
SailPoint Identity Security CloudDirect
SailPoint IdentityIQIndirectGoogle GCP Security Operations
SalesForce Customer Relationship Manager (CRM)IndirectCisco Splunk, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Google GCP Security Operations, IBM QRadar
SalesForce SlackIndirectMicrosoft Azure Sentinel, Google GCP Security Operations
SecureAuth Identity PlatformIndirectCisco Splunk, IBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform
Securonix Unified Defense SIEMDirect
SentinelOne Singularity AI SIEMDirect
SentinelOne Singularity EndpointDirect & IndirectSumo Logic Log Analytics Platform, Google GCP Security Operations, Cisco Splunk, IBM QRadar, Microsoft Azure Sentinel
ServiceNow IT Service Management (ITSM)IndirectSumo Logic Log Analytics Platform, Cisco Splunk, Google GCP Security Operations, IBM QRadar
Shibboleth Consortium Identity ProviderIndirectIBM QRadar, Sumo Logic Log Analytics Platform, Cisco Splunk, Google GCP Security Operations
Silverfort Universal MFAIndirectGoogle GCP Security Operations
SkyHigh Security Secure Web GatewayIndirectGoogle GCP Security Operations, Exabeam New-Scale SIEM, IBM QRadar, Cisco Splunk, Sumo Logic Log Analytics Platform
Snowflake Data Cloud PlatformDirect & IndirectDevo Platform, Sumo Logic Log Analytics Platform, Cisco Splunk, Google GCP Security Operations, Microsoft Azure Sentinel, IBM QRadar
Software Freedom Conservancy Inc GitIndirectGoogle GCP Security Operations
SolarWinds OrionIndirectGoogle GCP Security Operations
SonicWall Content FilteringIndirectCisco Splunk, SentinelOne Singularity AI SIEM, IBM QRadar, Microsoft Azure Sentinel
SonicWall FirewallIndirectMicrosoft Azure Sentinel, IBM QRadar, SentinelOne Singularity AI SIEM, Google GCP Security Operations, Cisco Splunk
SonicWall IDS/IPSIndirectCisco Splunk, Microsoft Azure Sentinel
SonicWall Virtual Private Network (VPN)IndirectCisco Splunk, Microsoft Azure Sentinel
Sophos AntivirusIndirectGoogle GCP Security Operations, IBM QRadar
Sophos CentralIndirectGoogle GCP Security Operations
Sophos Intercept XDirect & IndirectIBM QRadar, Google GCP Security Operations
Sophos Unified Threat Management (UTM)IndirectIBM QRadar
Sophos XG FirewallIndirectGoogle GCP Security Operations, IBM QRadar
Splashtop Remote AccessIndirectIBM QRadar
Squid ProxyIndirectCisco Splunk, Devo Platform, CrowdStrike Falcon Next-Gen SIEM
Sumo Logic Log Analytics PlatformDirect & IndirectCisco Splunk
Swimlane TurbineDirect
Symantec Endpoint Protection (SEP)IndirectGoogle GCP Security Operations, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, Cisco Splunk
Symantec Endpoint SecurityDirect
Symantec Enterprise Cloud Data Loss Prevention (DLP)IndirectGoogle GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, SentinelOne Singularity AI SIEM
Symantec Secure Web GatewayDirect & IndirectDevo Platform, IBM QRadar, Cisco Splunk, Google GCP Security Operations
Tanium AssetIndirectDatadog Cloud SIEM
Tanium Threat ResponseDirect
Tenable NessusDirect & IndirectMicrosoft Azure Sentinel, Cisco Splunk, Datadog Cloud SIEM
The OpenSearch Project OpenSearchDirect
Thinkst CanaryIndirectSumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Threat Intelligence Platform Threat Intelligence PlatformDirect
Tines No-Code Automation PlatformDirect
Trellix Cloud SecurityIndirectCisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations
Trellix Data Loss PreventionIndirectCisco Splunk
Trellix Endpoint Security (ENS)Direct & IndirectCisco Splunk, Google GCP Security Operations, IBM QRadar, Exabeam New-Scale SIEM
Trellix Endpoint Security (HX)Direct
Trellix Intrusion Prevention SystemIndirectIBM QRadar
Trend Micro Apex CentralIndirectIBM QRadar, Cisco Splunk, Microsoft Azure Sentinel
Trend Micro Apex OneIndirectSumo Logic Log Analytics Platform, Google GCP Security Operations, Microsoft Azure Sentinel, IBM QRadar, Cisco Splunk
Trend Micro Cloud OneDirect
Trend Micro Deep SecurityIndirectIBM QRadar, Cisco Splunk
Trend Micro TippingPointIndirectGoogle GCP Security Operations, IBM QRadar
Trend Micro Vision OneDirect & IndirectIBM QRadar
Ubiquiti UniFiIndirectGoogle GCP Security Operations
Upwind Cloud-Native Application Protection Platform (CNAPP)Direct
VMware Carbon Black App ControlDirect & IndirectGoogle GCP Security Operations
VMware Carbon Black Cloud Audit and RemediationIndirectIBM QRadar, Microsoft Azure Sentinel
VMware Carbon Black Cloud Endpoint StandardDirect & IndirectGoogle GCP Security Operations, IBM QRadar
VMware Carbon Black Cloud Enterprise EDRDirect & IndirectCisco Splunk, Google GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform
VMware Carbon Black On-Prem EDRDirect & IndirectGoogle GCP Security Operations, IBM QRadar
VMware ESXiIndirectPalo Alto Networks Cortex XSIAM, Microsoft Azure Sentinel, Cisco Splunk, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar
VMware vCenterIndirectPalo Alto Networks Cortex XSIAM, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Cisco Splunk, Microsoft Azure Sentinel
Varonis DatAdvantageIndirectSumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, IBM QRadar
Varonis DatAlertIndirectSumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations, Cisco Splunk
Vectra AI PlatformDirect
Veeam Data PlatformIndirectSumo Logic Log Analytics Platform, Google GCP Security Operations, Datadog Cloud SIEM, IBM QRadar, Cisco Splunk
Verizon DDoS ShieldIndirectGoogle GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar
Versa Networks Next Generation Firewall (NGFW)IndirectGoogle GCP Security Operations
Wallix ONEIndirectCrowdStrike Falcon Next-Gen SIEM
WatchGuard FireboxIndirectGoogle GCP Security Operations, IBM QRadar
Wazuh Open Source Security PlatformIndirectCrowdStrike Falcon Next-Gen SIEM
Wiz Cloud Security Platform CloudDirect & IndirectGoogle GCP Security Operations, SentinelOne Singularity AI SIEM, Cisco Splunk, Microsoft Azure Sentinel, IBM QRadar, Sumo Logic Log Analytics Platform
Wiz Cloud Security Platform DefendDirect
Workday Enterprise Management CloudIndirectSumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Cisco Splunk, Google GCP Security Operations, Devo Platform
Zscaler Internet Access (ZIA)Direct & IndirectIBM QRadar, Cisco Splunk, Exabeam New-Scale SIEM, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM, Devo Platform, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Microsoft Azure Sentinel
Zscaler Private Access (ZPA)IndirectMicrosoft Azure Sentinel, Sumo Logic Log Analytics Platform

ReliaQuest will make reasonable efforts to maintain support for the direct and indirect technology sources described in the above table. The supported technology sources are subject to change from time-to-time. ReliaQuest cannot guarantee the connectivity or availability of any or all technology sources, nor be responsible for changes or errors in the technology sources or how they interface or connect with GreyMatter. In addition, GreyMatter’s connection to any technology sources may involve the use of compute power, storage capacity, or other licensing-based metrics or restrictions. Customers are solely responsible for verifying and complying with the terms, conditions, and costs associated with any such connectivity.