Skip to Content

Supported Sources

GreyMatter connects to the sources listed in the table below either directly or indirectly.

  • Direct Connection: GreyMatter connects directly to the source technology via API, enabling real-time data retrieval and potential response actions.
  • Indirect Connection: GreyMatter accesses the source's data via a storage solution (SIEM,Data Lake, etc.), where the data is first collected and stored before GreyMatter retrieves it.
Source TechnologiesGreyMatter Connection MethodStorage Solution Compatibility (Indirect Connection)
*nix DHCPIndirectExabeam New-Scale SIEM
*nix Operating System (OS)IndirectExabeam New-Scale SIEM, Palo Alto Networks Cortex XSIAM, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Devo Platform, IBM QRadar, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Microsoft Azure Sentinel
1Password Password ManagerIndirectGoogle GCP Security Operations, IBM QRadar, Microsoft Azure Sentinel, Cisco Splunk, Sumo Logic Log Analytics Platform
Abnormal AI Email SecurityDirect & IndirectSentinelOne Singularity AI SIEM, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, IBM QRadar, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM
AbuseIPDB LLC Threat IntelligenceDirect
Akamai App & API ProtectorIndirectIBM QRadar, Cisco Splunk
Akamai GuardicoreIndirectGoogle GCP Security Operations
Amazon AWS CloudDirect
Amazon AWS CloudFrontIndirectSumo Logic Log Analytics Platform
Amazon AWS CloudTrailDirect & IndirectSumo Logic Log Analytics Platform, Devo Platform, Exabeam New-Scale SIEM, Amazon AWS Security Lake, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar, Google GCP Security Operations, Microsoft Azure Sentinel
Amazon AWS CloudWatchIndirectCisco Splunk, The OpenSearch Project OpenSearch
Amazon AWS ConfigIndirectGoogle GCP Security Operations, Devo Platform
Amazon AWS Elastic Kubernetes Service (EKS)IndirectGoogle GCP Security Operations, IBM QRadar, Devo Platform
Amazon AWS GuardDutyDirect & IndirectIBM QRadar, Devo Platform, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform
Amazon AWS OpenSearch ServiceIndirectDevo Platform, Google GCP Security Operations
Amazon AWS Route 53Direct & IndirectGoogle GCP Security Operations, Amazon AWS Security Lake
Amazon AWS Security HubIndirectCisco Splunk
Amazon AWS Security LakeDirect
Amazon AWS ShieldIndirectGoogle GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar
Amazon AWS VPC Flow DataDirect & IndirectCisco Splunk, Google GCP Security Operations, Devo Platform, Microsoft Azure Sentinel
Apache KafkaIndirectCisco Splunk, Google GCP Security Operations
Apache TomcatIndirectDevo Platform, SentinelOne Singularity AI SIEM, Google GCP Security Operations, Exabeam New-Scale SIEM, Cisco Splunk, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, Datadog Cloud SIEM
Appgate Universal Zero Trust Network Access (ZTNA)IndirectGoogle GCP Security Operations
Apple macOSIndirectGoogle GCP Security Operations
Aqua Security Cloud Workload ProtectionDirect
Arctic Wolf Aurora Endpoint SecurityDirect & IndirectIBM QRadar, Palo Alto Networks Cortex XSIAM, Cisco Splunk, Google GCP Security Operations, Microsoft Azure Sentinel
Arista Networks Network Detection and Response (NDR)IndirectGoogle GCP Security Operations, Cisco Splunk
Armis CentrixDirect
Atomicorp OSSECIndirectIBM QRadar, Sumo Logic Log Analytics Platform, Cisco Splunk, Google GCP Security Operations
Auth0 PlatformIndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform
Axonius PlatformDirect
Barracuda Cloud Gen FirewallIndirectIBM QRadar, Google GCP Security Operations
Barracuda Email ProtectionIndirectGoogle GCP Security Operations
BeyondTrust Endpoint Privilege Management (EPM)IndirectCisco Splunk, Google GCP Security Operations, Exabeam New-Scale SIEM, IBM QRadar
BeyondTrust Password SafeIndirectGoogle GCP Security Operations, Cisco Splunk, IBM QRadar
BeyondTrust Privileged Remote AccessIndirectCisco Splunk, Exabeam New-Scale SIEM
BeyondTrust Remote SupportIndirectCisco Splunk
BitSight Security Performance ManagementIndirectCisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar
Bitdefender GravityZone Endpoint Detection and Response (EDR)Direct & IndirectIBM QRadar, Microsoft Azure Sentinel, Cisco Splunk
BlueCat Networks Integrity (Adonis)IndirectGoogle GCP Security Operations, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Devo Platform
Box Cloud StorageIndirectDevo Platform, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk
Bravura Security Bravura IdentityIndirectIBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Cisco Splunk
Bravura Security Bravura PrivilegeIndirectIBM QRadar, Cisco Splunk, Sumo Logic Log Analytics Platform, Google GCP Security Operations
Cato Networks Cloud PlatformIndirectMicrosoft Azure Sentinel, Devo Platform, Google GCP Security Operations, IBM QRadar, SentinelOne Singularity AI SIEM
Cato Networks Secure Access Service Edge (SASE)Direct
Check Point CloudGuardIndirectGoogle GCP Security Operations, IBM QRadar
Check Point Data Loss Prevention (DLP)IndirectIBM QRadar, Google GCP Security Operations, Microsoft Azure Sentinel, Exabeam New-Scale SIEM
Check Point Enterprise Cloud Email SecurityIndirectCisco Splunk
Check Point FirewallIndirectIBM QRadar, Devo Platform, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, Cisco Splunk
Check Point Harmony Email SecurityDirect
Check Point Remote Access VPNIndirectGoogle GCP Security Operations, IBM QRadar, Microsoft Azure Sentinel, Exabeam New-Scale SIEM
Check Point SandBlast: Threat Extraction & EmulationIndirectGoogle GCP Security Operations, IBM QRadar
Check Point Security ManagementDirect & IndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk, Devo Platform
Check Point SmartDefenseIndirectCisco Splunk, IBM QRadar, Google GCP Security Operations, Microsoft Azure Sentinel, Exabeam New-Scale SIEM
Check Point URL FilteringIndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk, Exabeam New-Scale SIEM, Microsoft Azure Sentinel
Cisco Adaptive Security Appliance (ASA)Direct & IndirectSentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM, Sumo Logic Log Analytics Platform, Cisco Splunk, Google GCP Security Operations, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, Devo Platform, IBM QRadar
Cisco AnyConnectIndirectIBM QRadar, Cisco Splunk, Devo Platform, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform
Cisco Duo SecurityDirect & IndirectDevo Platform, Google GCP Security Operations, SentinelOne Singularity AI SIEM, CrowdStrike Falcon Next-Gen SIEM, Sumo Logic Log Analytics Platform, Datadog Cloud SIEM, Microsoft Azure Sentinel, IBM QRadar, Cisco Splunk
Cisco Event Streamer (eStreamer)IndirectCisco Splunk
Cisco FirePowerIndirectCrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Cisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform, Exabeam New-Scale SIEM, Microsoft Azure Sentinel
Cisco Identity Services Engine (ISE)IndirectDevo Platform, Google GCP Security Operations, Cisco Splunk, Exabeam New-Scale SIEM, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM
Cisco MerakiDirect & IndirectExabeam New-Scale SIEM, IBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk, Devo Platform, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM
Cisco Networking Software NX-OSIndirectCrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Google GCP Security Operations, Exabeam New-Scale SIEM
Cisco NexusIndirectCrowdStrike Falcon Next-Gen SIEM
Cisco Platform Exchange Grid (pxGrid)Direct
Cisco Secure EmailIndirectIBM QRadar
Cisco Secure EndpointDirect & IndirectMicrosoft Azure Sentinel, Google GCP Security Operations, IBM QRadar, Cisco Splunk
Cisco Secure Firewall Management Center (FMC)Direct
Cisco Secure Network AnalyticsDirect
Cisco Secure Web ApplianceIndirectIBM QRadar
Cisco SnortIndirectIBM QRadar, Exabeam New-Scale SIEM
Cisco SplunkDirect & IndirectCisco Splunk, IBM QRadar
Cisco Splunk Security Orchestration Automation and Response (SOAR)Direct
Cisco UmbrellaDirect & IndirectIBM QRadar, Devo Platform, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, Google GCP Security Operations, Cisco Splunk
Cisco Wireless LAN Controller (WLC)IndirectIBM QRadar
Citrix Netscaler Content FilteringIndirectPalo Alto Networks Cortex XSIAM
Citrix Netscaler Gateway VPNIndirectCrowdStrike Falcon Next-Gen SIEM, Sumo Logic Log Analytics Platform, Exabeam New-Scale SIEM, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Citrix Netscaler Web Application Firewall (WAF)IndirectSumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations
Citrix Virtual Apps and DesktopsIndirectDatadog Cloud SIEM, The OpenSearch Project OpenSearch, Cisco Splunk
Claroty XDome for HealthcareDirect
Claroty xDomeDirect & IndirectGoogle GCP Security Operations
CloudFlare Content Delivery Network (CDN)IndirectIBM QRadar, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Microsoft Azure Sentinel
CloudFlare DDoS ProtectionIndirectGoogle GCP Security Operations
CloudFlare DNSIndirectGoogle GCP Security Operations, Cisco Splunk
CloudFlare Magic FirewallIndirectCisco Splunk, Google GCP Security Operations
CloudFlare Secure Web Gateway (SWG)IndirectGoogle GCP Security Operations
CloudFlare Web Application Firewall (WAF)Direct & IndirectMicrosoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Cisco Splunk, IBM QRadar
CloudFlare Zero Trust Network Access (ZTNA)IndirectCisco Splunk, Google GCP Security Operations
Cofense PhishMe SAT PlatformIndirectCisco Splunk, IBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform
Cofense Triage Email AnalyticsIndirectGoogle GCP Security Operations
Corelight Open NDR PlatformIndirectCisco Splunk
Cribl Inc CriblIndirectCisco Splunk
CrowdStrike Falcon Adversary IntelligenceDirect
CrowdStrike Falcon Fusion SOARDirect
CrowdStrike Falcon Identity ProtectionDirect & IndirectIBM QRadar, Devo Platform, Cisco Splunk
CrowdStrike Falcon Insight XDRDirect & IndirectSumo Logic Log Analytics Platform, IBM QRadar, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, Devo Platform, Google GCP Security Operations, Exabeam New-Scale SIEM, CrowdStrike Falcon Long Term Repository, Cisco Splunk
CrowdStrike Falcon LogScaleDirect
CrowdStrike Falcon Long Term RepositoryDirect
CrowdStrike Falcon MalQueryDirect
CrowdStrike Falcon Next-Gen SIEMDirect & IndirectSumo Logic Log Analytics Platform, IBM QRadar
CrowdStrike Falcon PreventDirect & IndirectMicrosoft Azure Sentinel, Exabeam New-Scale SIEM, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, CrowdStrike Falcon Long Term Repository, Devo Platform, Sumo Logic Log Analytics Platform, IBM QRadar
CrowdStrike Falcon SpotlightDirect & IndirectDevo Platform
CybeReason Endpoint Detection and Response (EDR)IndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform
CybeReason Next-Generation AntivirusIndirectCisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar
CyberArk Enterprise Password Vault (EPV)IndirectSumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Cisco Splunk, SentinelOne Singularity AI SIEM, Devo Platform, IBM QRadar, Google GCP Security Operations
CyberArk Privileged Threat Analytics (PTA)IndirectSumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Cisco Splunk, Exabeam New-Scale SIEM, Google GCP Security Operations, IBM QRadar, Devo Platform, CrowdStrike Falcon Next-Gen SIEM
CyberArk Workforce IdentityDirect & IndirectGoogle GCP Security Operations, Cisco Splunk, SentinelOne Singularity AI SIEM
DOPE.SECURITY Inc Secure Web Gateway (SWG)IndirectGoogle GCP Security Operations
Darktrace ActiveAI Security PlatformDirect & IndirectCisco Splunk, Google GCP Security Operations, Microsoft Azure Sentinel, IBM QRadar
Datadog Cloud SIEMDirect
Delinea Secret ServerIndirectSumo Logic Log Analytics Platform, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Exabeam New-Scale SIEM, IBM QRadar, Google GCP Security Operations
Devo PlatformDirect & IndirectMicrosoft Azure Sentinel, Devo Platform, IBM QRadar
Docker BusinessIndirectGoogle GCP Security Operations
Dragos PlatformDirect
Elastic ElasticsearchDirect
Epic Electronic Medical Records (EMR)IndirectCisco Splunk, IBM QRadar, Google GCP Security Operations
Exabeam Data Lake LegacyDirect & IndirectExabeam New-Scale SIEM
Exabeam LogRhythm Case ManagementDirect & IndirectCisco Splunk
Exabeam LogRhythm FIMIndirectDatadog Cloud SIEM
Exabeam LogRhythm NetMonIndirectDatadog Cloud SIEM
Exabeam LogRhythm SIEMDirect & IndirectGoogle GCP Security Operations
Exabeam New-Scale Advanced AnalyticsDirect & IndirectExabeam New-Scale SIEM
Exabeam New-Scale SIEMDirect & IndirectExabeam New-Scale SIEM
ExtraHop Reveal(X)Direct & IndirectGoogle GCP Security Operations, IBM QRadar, Devo Platform, Exabeam New-Scale SIEM, Cisco Splunk
Extreme Networks Access PointsIndirectCisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations
Extreme Networks RoutersIndirectIBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk
F5 Networks BIG-IP Access Policy Manager (APM)IndirectCisco Splunk
F5 Networks BIG-IP Application Security Manager (ASM)IndirectCisco Splunk, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM, Google GCP Security Operations
F5 Networks BIG-IP DNSIndirectCisco Splunk, Exabeam New-Scale SIEM
F5 Networks BIG-IP Local Traffic Manager (LTM)IndirectGoogle GCP Security Operations
Fastly Next-Gen WAFIndirectSumo Logic Log Analytics Platform, Google GCP Security Operations, Cisco Splunk
Fidelis Security DeceptionIndirectMicrosoft Azure Sentinel
Fidelis Security Endpoint (EDR)IndirectMicrosoft Azure Sentinel
Fidelis Security Network Data Loss PreventionIndirectMicrosoft Azure Sentinel
Fidelis Security Network NDRIndirectMicrosoft Azure Sentinel
Forcepoint Secure Web GatewayIndirectIBM QRadar, Cisco Splunk
Forcepoint V SeriesIndirectIBM QRadar
Forescout CounterActIndirectCrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Google GCP Security Operations, Cisco Splunk
Fortinet FortiEDRDirect
Fortinet FortiGate Next-Gen Firewall (NGFW)Direct & IndirectDevo Platform, Google GCP Security Operations, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, Sumo Logic Log Analytics Platform
Fortinet FortiManagerDirect
Fortinet FortiSandboxIndirectGoogle GCP Security Operations
Fortra Agari Phishing DefenseIndirectSumo Logic Log Analytics Platform, Google GCP Security Operations, Cisco Splunk, IBM QRadar
Fortra Globalscape Enhanced File Transfer (EFT)IndirectCisco Splunk
Fortra PowertechIndirectGoogle GCP Security Operations
GitHub EnterpriseIndirectIBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Google GCP Security Operations, Microsoft Azure Sentinel, Devo Platform, Sumo Logic Log Analytics Platform
GitLab Code RepositoryIndirectCisco Splunk, Devo Platform, Google GCP Security Operations
GoPhish Open-Source Phishing FrameworkIndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk
Google GCP Apigee API ManagementIndirectGoogle GCP Security Operations
Google GCP CloudDirect
Google GCP Cloud Audit LogsDirect & IndirectDevo Platform, IBM QRadar, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, Cisco Splunk, Google GCP Security Operations
Google GCP Cloud DNSIndirectGoogle GCP Security Operations
Google GCP Cloud StorageDirect & IndirectGoogle GCP Security Operations
Google GCP Compute EngineDirect & IndirectGoogle GCP Security Operations
Google GCP Security Command Center (SCC)Direct & IndirectCisco Splunk, Google GCP Security Operations
Google GCP Security OperationsDirect
Google GCP Security Operations SOARDirect
Google VirusTotalDirect
Google WorkspaceDirect & IndirectCisco Splunk, IBM QRadar, Devo Platform, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Google GCP Security Operations
HPE File StorageIndirectGoogle GCP Security Operations
HashiCorp VaultIndirectCisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations
IBM QRadarDirect
IBM i-SeriesIndirectGoogle GCP Security Operations
Imperva DDoS ProtectionIndirectDevo Platform, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar
Imperva Web Application FirewallIndirectCisco Splunk, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM, Devo Platform, IBM QRadar
Imprivata Enterprise PlatformIndirectGoogle GCP Security Operations
Infoblox DDIDirect & IndirectSentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, IBM QRadar, Exabeam New-Scale SIEM, Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Devo Platform
Infoblox IP Address Management (IPAM)IndirectGoogle GCP Security Operations
Infoblox NIOSDirect & IndirectSentinelOne Singularity AI SIEM, IBM QRadar, Devo Platform, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, Cisco Splunk, Google GCP Security Operations
Ironscales Email Security PlatformIndirectIBM QRadar, Cisco Splunk
Island Enterprise BrowserIndirectCisco Splunk
Ivanti Connect SecureIndirectCisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, IBM QRadar, Devo Platform
Jamf ProIndirectGoogle GCP Security Operations
Jenkins CI/CDIndirectGoogle GCP Security Operations
Joe Security Joe SandboxDirect & IndirectGoogle GCP Security Operations
JumpCloud PlatformDirect & IndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk
Juniper Junos OSIndirectGoogle GCP Security Operations, Cisco Splunk, IBM QRadar
Juniper SRXDirect & IndirectCisco Splunk, IBM QRadar, Google GCP Security Operations
Keeper Security Password ManagementIndirectGoogle GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel
KnowBe4 Enterprise Security AwarenessIndirectCisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations
Kubernetes KubernetesIndirectIBM QRadar, Cisco Splunk, Sumo Logic Log Analytics Platform, Google GCP Security Operations
LastPass Password ManagerIndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar
Malwarebytes Nebula Endpoint Detection & ResponseDirect
ManageEngine Password Manager ProIndirectGoogle GCP Security Operations
Microsoft Active DirectoryDirect & IndirectExabeam New-Scale SIEM, Microsoft Azure Sentinel, Cisco Splunk, Sumo Logic Log Analytics Platform, The OpenSearch Project OpenSearch, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM, Google GCP Security Operations, Datadog Cloud SIEM, IBM QRadar
Microsoft Azure Application GatewayIndirectGoogle GCP Security Operations, Cisco Splunk
Microsoft Azure CloudDirect
Microsoft Azure DNSIndirectGoogle GCP Security Operations
Microsoft Azure Data ExplorerDirect
Microsoft Azure DevOpsIndirectIBM QRadar
Microsoft Azure FirewallIndirectGoogle GCP Security Operations, Devo Platform, Microsoft Azure Sentinel, Cisco Splunk, IBM QRadar
Microsoft Azure Front DoorIndirectGoogle GCP Security Operations
Microsoft Azure Key VaultIndirectCisco Splunk
Microsoft Azure Logic AppsDirect
Microsoft Azure MonitorDirect & IndirectMicrosoft Azure Sentinel, Exabeam New-Scale SIEM
Microsoft Azure SQL DatabaseIndirectMicrosoft Azure Sentinel, Cisco Splunk
Microsoft Azure SentinelDirect
Microsoft Azure Subscription ActivityIndirectMicrosoft Azure Sentinel, Sumo Logic Log Analytics Platform, Cisco Splunk, Devo Platform, CrowdStrike Falcon Next-Gen SIEM, Palo Alto Networks Cortex XSIAM, Exabeam New-Scale SIEM, SentinelOne Singularity AI SIEM, Google GCP Security Operations, IBM QRadar
Microsoft Azure URL FilteringIndirectGoogle GCP Security Operations
Microsoft DHCP ServerIndirectCrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Datadog Cloud SIEM, SentinelOne Singularity AI SIEM, IBM QRadar, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, Google GCP Security Operations
Microsoft DNSIndirectCrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Exabeam New-Scale SIEM, Devo Platform, Microsoft Azure Sentinel, The OpenSearch Project OpenSearch, SentinelOne Singularity AI SIEM, Google GCP Security Operations, Datadog Cloud SIEM, IBM QRadar, Sumo Logic Log Analytics Platform
Microsoft Defender Vulnerability ManagementDirect
Microsoft Defender XDRDirect & IndirectExabeam New-Scale SIEM
Microsoft Defender for CloudDirect & IndirectIBM QRadar, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, Cisco Splunk
Microsoft Defender for Cloud AppsDirect & IndirectMicrosoft Azure Sentinel, Exabeam New-Scale SIEM, IBM QRadar, Cisco Splunk
Microsoft Defender for EndpointDirect & IndirectSentinelOne Singularity AI SIEM, Cisco Splunk, Datadog Cloud SIEM, Sumo Logic Log Analytics Platform, IBM QRadar, Microsoft Azure Sentinel, Google GCP Security Operations, Exabeam New-Scale SIEM
Microsoft Defender for IdentityDirect & IndirectCisco Splunk, Sumo Logic Log Analytics Platform, Exabeam New-Scale SIEM, Google GCP Security Operations, IBM QRadar, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, Devo Platform
Microsoft Defender for IoTDirect
Microsoft Defender for Office 365Direct & IndirectCisco Splunk, IBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM
Microsoft Entra IDDirect & IndirectExabeam New-Scale SIEM, Microsoft Azure Sentinel, Devo Platform, CrowdStrike Falcon Next-Gen SIEM, Sumo Logic Log Analytics Platform, Cisco Splunk, SentinelOne Singularity AI SIEM, Google GCP Security Operations, IBM QRadar, Palo Alto Networks Cortex XSIAM, The OpenSearch Project OpenSearch
Microsoft Entra ID ProtectionDirect & IndirectMicrosoft Azure Sentinel, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM
Microsoft Exchange OnlineDirect
Microsoft Exchange ServerIndirectDevo Platform, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, Datadog Cloud SIEM, Google GCP Security Operations, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar
Microsoft Hyper-VIndirectSentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Datadog Cloud SIEM
Microsoft IISIndirectIBM QRadar, Microsoft Azure Sentinel, Palo Alto Networks Cortex XSIAM, Sumo Logic Log Analytics Platform, Cisco Splunk, Google GCP Security Operations, SentinelOne Singularity AI SIEM, Datadog Cloud SIEM, Devo Platform, CrowdStrike Falcon Next-Gen SIEM
Microsoft IntuneDirect & IndirectGoogle GCP Security Operations, Cisco Splunk, Exabeam New-Scale SIEM
Microsoft Office 365Direct & IndirectSumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, IBM QRadar, Exabeam New-Scale SIEM, Google GCP Security Operations, Microsoft Azure Sentinel, Cisco Splunk, Devo Platform
Microsoft Office 365 Cloud App SecurityDirect & IndirectDevo Platform
Microsoft OneDriveIndirectSumo Logic Log Analytics Platform, Cisco Splunk, Exabeam New-Scale SIEM, Google GCP Security Operations, IBM QRadar, Microsoft Azure Sentinel, Datadog Cloud SIEM, CrowdStrike Falcon Next-Gen SIEM, Devo Platform, SentinelOne Singularity AI SIEM
Microsoft PowerShellIndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, The OpenSearch Project OpenSearch, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Datadog Cloud SIEM
Microsoft PurviewDirect & IndirectMicrosoft Azure Sentinel, Sumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk, Google GCP Security Operations, Devo Platform, SentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM
Microsoft SQL ServerIndirectDatadog Cloud SIEM, Microsoft Azure Sentinel, Google GCP Security Operations, Cisco Splunk, The OpenSearch Project OpenSearch
Microsoft SharePointIndirectCrowdStrike Falcon Next-Gen SIEM, Devo Platform, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Datadog Cloud SIEM, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, Cisco Splunk, Google GCP Security Operations, IBM QRadar
Microsoft SysmonIndirectThe OpenSearch Project OpenSearch, SentinelOne Singularity AI SIEM, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Google GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform, Datadog Cloud SIEM
Microsoft WindowsIndirectDevo Platform, Datadog Cloud SIEM, Sumo Logic Log Analytics Platform, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Palo Alto Networks Cortex XSIAM, The OpenSearch Project OpenSearch, Google GCP Security Operations, SentinelOne Singularity AI SIEM
Microsoft Windows Defender AntivirusIndirectExabeam New-Scale SIEM, Datadog Cloud SIEM, SentinelOne Singularity AI SIEM, Cisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations
Microsoft Windows HelloIndirectDatadog Cloud SIEM, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform
Microsoft Windows Performance MonitorIndirectDatadog Cloud SIEM, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM
MikroTik RouterOSIndirectIBM QRadar
Mimecast Advanced Email SecurityDirect & IndirectSumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Devo Platform
MongoDB Enterprise AdvancedIndirectGoogle GCP Security Operations
Morphisec GuardIndirectIBM QRadar, Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform
Morphisec Guard LiteIndirectIBM QRadar, Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform
NetApp ONTAPIndirectCisco Splunk
Netography FusionDirect
Netskope OneIndirectExabeam New-Scale SIEM, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Devo Platform, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Cisco Splunk, Google GCP Security Operations
Netskope Secure Web Gateway (SWG)Direct
Netwrix Change TrackerIndirectMicrosoft Azure Sentinel
Netwrix StealthINTERCEPTIndirectMicrosoft Azure Sentinel, Sumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Netwrix Threat ManagerIndirectIBM QRadar, Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel
Nginx Web ServerIndirectCisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations
Nozomi Networks Central Management ConsoleDirect
Nozomi Networks VantageDirect
Nutanix Enterprise CloudIndirectGoogle GCP Security Operations
Obsidian SaaS Identity Threat Detection and Response (ITDR)Direct
Okta IdentityDirect & IndirectCisco Splunk, Devo Platform, Palo Alto Networks Cortex XSIAM, Exabeam New-Scale SIEM, Google GCP Security Operations, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM
One Identity SafeguardIndirectCisco Splunk
Open Information Security Foundation (OISF) SuricataIndirectIBM QRadar, Cisco Splunk
Oracle Audit Vault and Database Firewall (AVDF)IndirectCisco Splunk
Oracle Cloud GuardIndirectMicrosoft Azure Sentinel
Oracle Cloud Infrastructure (OCI)IndirectCisco Splunk, Google GCP Security Operations
Oracle MySQLIndirectSumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Orca Security Cloud Security PlatformDirect & IndirectCisco Splunk
Palo Alto Networks Cortex XDRDirect & IndirectDevo Platform, Cisco Splunk, Google GCP Security Operations, IBM QRadar
Palo Alto Networks Cortex XSIAMDirect
Palo Alto Networks Cortex XSOARDirect
Palo Alto Networks Enterprise IoT SecurityIndirectGoogle GCP Security Operations
Palo Alto Networks GlobalProtectIndirectIBM QRadar, Sumo Logic Log Analytics Platform, Cisco Splunk, SentinelOne Singularity AI SIEM, Google GCP Security Operations, Devo Platform
Palo Alto Networks IDS/IPSDirect & IndirectCisco Splunk, Google GCP Security Operations, IBM QRadar, Datadog Cloud SIEM, SentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM
Palo Alto Networks Next-Gen Firewall (NGFW)Direct & IndirectIBM QRadar, Datadog Cloud SIEM, SentinelOne Singularity AI SIEM, Devo Platform, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Google GCP Security Operations, Palo Alto Networks Cortex XSIAM, Exabeam New-Scale SIEM, Cisco Splunk
Palo Alto Networks PanoramaIndirectCisco Splunk, Google GCP Security Operations, IBM QRadar
Palo Alto Networks Prisma AccessIndirectGoogle GCP Security Operations, IBM QRadar
Palo Alto Networks Prisma CloudDirect & IndirectCisco Splunk, Google GCP Security Operations, IBM QRadar
Palo Alto Networks URL FilteringIndirectCisco Splunk, Datadog Cloud SIEM, Google GCP Security Operations, Exabeam New-Scale SIEM, IBM QRadar, SentinelOne Singularity AI SIEM
Palo Alto Networks WildfireDirect & IndirectDatadog Cloud SIEM, IBM QRadar, Cisco Splunk, Google GCP Security Operations
Ping Identity PingFederateIndirectIBM QRadar, Google GCP Security Operations, Microsoft Azure Sentinel, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM
Ping Identity PingOne Advanced Identity CloudDirect
Ping Identity PingOne PlatformIndirectCisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, IBM QRadar
PostgreSQL PostgreSQLIndirectIBM QRadar, Cisco Splunk, Sumo Logic Log Analytics Platform, Google GCP Security Operations
Progress Software MOVEit Managed File Transfer Software (MFTS)IndirectCisco Splunk, IBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform
Progress Software ShareFileIndirectSumo Logic Log Analytics Platform, Google GCP Security Operations
Proofpoint Cloud App Security Broker (CASB)IndirectSentinelOne Singularity AI SIEM
Proofpoint Email ProtectionIndirectCisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, CrowdStrike Falcon Next-Gen SIEM, Devo Platform, Palo Alto Networks Cortex XSIAM, SentinelOne Singularity AI SIEM, IBM QRadar
Proofpoint Insider Threat Management (ITM)IndirectSentinelOne Singularity AI SIEM
Proofpoint Targeted Attack Protection (TAP)Direct & IndirectCrowdStrike Falcon Next-Gen SIEM, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Devo Platform, Palo Alto Networks Cortex XSIAM, Cisco Splunk, Exabeam New-Scale SIEM, IBM QRadar, SentinelOne Singularity AI SIEM, Google GCP Security Operations
Proofpoint Threat Response Auto-Pull (TRAP)IndirectSentinelOne Singularity AI SIEM
Qualys Vulnerability Management, Detection & Response (VMDR)Direct
RSA SecurIDIndirectIBM QRadar, Google GCP Security Operations, Devo Platform, Cisco Splunk, Sumo Logic Log Analytics Platform
RadWare DefenseProIndirectGoogle GCP Security Operations, Exabeam New-Scale SIEM
Rapid7 InsightIDRDirect
Rapid7 NexposeDirect
RedHat AuditdIndirectExabeam New-Scale SIEM, Devo Platform, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations
Redwood Cerberus FTP ServerIndirectGoogle GCP Security Operations
Rubrik Security CloudIndirectGoogle GCP Security Operations, Microsoft Azure Sentinel
SAP Sybase ASEIndirectMicrosoft Azure Sentinel, Cisco Splunk
SailPoint IdentityIQIndirectGoogle GCP Security Operations
SalesForce Customer Relationship Manager (CRM)IndirectSumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Google GCP Security Operations, IBM QRadar, Cisco Splunk
SalesForce SlackIndirectGoogle GCP Security Operations, Microsoft Azure Sentinel
SecureAuth Identity PlatformIndirectSumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Securonix Unified Defense SIEMDirect
SentinelOne Singularity AI SIEMDirect
SentinelOne Singularity EndpointDirect & IndirectMicrosoft Azure Sentinel, IBM QRadar, Google GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform
ServiceNow IT Service Management (ITSM)IndirectSumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar, Cisco Splunk
Shibboleth Consortium Identity ProviderIndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar
Silverfort Universal MFAIndirectGoogle GCP Security Operations
SkyHigh Security Secure Web GatewayIndirectCisco Splunk, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Exabeam New-Scale SIEM, IBM QRadar
Snowflake Data Cloud PlatformDirect & IndirectCisco Splunk, Google GCP Security Operations, Microsoft Azure Sentinel, IBM QRadar, Sumo Logic Log Analytics Platform, Devo Platform
Software Freedom Conservancy Inc GitIndirectGoogle GCP Security Operations
SolarWinds OrionIndirectGoogle GCP Security Operations
SonicWall Content FilteringIndirectIBM QRadar, Microsoft Azure Sentinel, Cisco Splunk, SentinelOne Singularity AI SIEM
SonicWall FirewallIndirectCisco Splunk, IBM QRadar, Google GCP Security Operations, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM
SonicWall IDS/IPSIndirectMicrosoft Azure Sentinel, Cisco Splunk
SonicWall Virtual Private Network (VPN)IndirectMicrosoft Azure Sentinel, Cisco Splunk
Sophos AntivirusIndirectIBM QRadar, Google GCP Security Operations
Sophos CentralIndirectGoogle GCP Security Operations
Sophos Intercept XDirect & IndirectIBM QRadar, Google GCP Security Operations
Sophos Unified Threat Management (UTM)IndirectIBM QRadar
Sophos XG FirewallIndirectIBM QRadar, Google GCP Security Operations
Splashtop Remote AccessIndirectIBM QRadar
Squid ProxyIndirectDevo Platform, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk
Sumo Logic Log Analytics PlatformDirect & IndirectCisco Splunk
Swimlane TurbineDirect
Symantec Endpoint Protection (SEP)IndirectExabeam New-Scale SIEM, Microsoft Azure Sentinel, Cisco Splunk, Google GCP Security Operations
Symantec Endpoint SecurityDirect
Symantec Enterprise Cloud Data Loss Prevention (DLP)IndirectSentinelOne Singularity AI SIEM, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM
Symantec Secure Web GatewayDirect & IndirectIBM QRadar, Devo Platform, Cisco Splunk
Tanium AssetIndirectDatadog Cloud SIEM
Tanium Threat ResponseDirect
Tenable NessusDirect & IndirectCisco Splunk, Datadog Cloud SIEM, Microsoft Azure Sentinel
The OpenSearch Project OpenSearchDirect
Thinkst CanaryIndirectSumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Threat Intelligence Platform Threat Intelligence PlatformDirect
Tines No-Code Automation PlatformDirect
Trellix Cloud SecurityIndirectGoogle GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform, Cisco Splunk
Trellix Data Loss PreventionIndirectCisco Splunk
Trellix Endpoint Security (ENS)Direct & IndirectExabeam New-Scale SIEM, Google GCP Security Operations, Cisco Splunk, IBM QRadar
Trellix Endpoint Security (HX)Direct
Trellix Intrusion Prevention SystemIndirectIBM QRadar
Trend Micro Apex CentralIndirectIBM QRadar, Microsoft Azure Sentinel, Cisco Splunk
Trend Micro Apex OneIndirectMicrosoft Azure Sentinel, Google GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform, Cisco Splunk
Trend Micro Deep SecurityIndirectCisco Splunk, IBM QRadar
Trend Micro TippingPointIndirectIBM QRadar, Google GCP Security Operations
Trend Micro Vision OneDirect & IndirectIBM QRadar
Ubiquiti UniFiIndirectGoogle GCP Security Operations
Upwind Cloud-Native Application Protection Platform (CNAPP)Direct
VMware Carbon Black App ControlDirect & IndirectGoogle GCP Security Operations
VMware Carbon Black Cloud Audit and RemediationIndirectIBM QRadar, Microsoft Azure Sentinel
VMware Carbon Black Cloud Endpoint StandardDirect & IndirectIBM QRadar, Google GCP Security Operations
VMware Carbon Black Cloud Enterprise EDRDirect & IndirectIBM QRadar, Sumo Logic Log Analytics Platform, Cisco Splunk, Google GCP Security Operations
VMware Carbon Black On-Prem EDRDirect & IndirectIBM QRadar, Google GCP Security Operations
VMware ESXiIndirectIBM QRadar, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Palo Alto Networks Cortex XSIAM, Microsoft Azure Sentinel, Cisco Splunk
VMware vCenterIndirectCisco Splunk, Microsoft Azure Sentinel, Palo Alto Networks Cortex XSIAM, Google GCP Security Operations, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM
Varonis DatAdvantageIndirectSumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar, Google GCP Security Operations
Varonis DatAlertIndirectCisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations
Vectra AI PlatformDirect
Veeam Data PlatformIndirectIBM QRadar, Datadog Cloud SIEM, Cisco Splunk, Sumo Logic Log Analytics Platform, Google GCP Security Operations
Verizon DDoS ShieldIndirectIBM QRadar, Cisco Splunk, Sumo Logic Log Analytics Platform, Google GCP Security Operations
Versa Networks Next Generation Firewall (NGFW)IndirectGoogle GCP Security Operations
Wallix ONEIndirectCrowdStrike Falcon Next-Gen SIEM
WatchGuard FireboxIndirectIBM QRadar, Google GCP Security Operations
Wazuh Open Source Security PlatformIndirectCrowdStrike Falcon Next-Gen SIEM
Wiz Cloud Security Platform CloudDirect & IndirectSumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Cisco Splunk, Microsoft Azure Sentinel, IBM QRadar, Google GCP Security Operations
Wiz Cloud Security Platform DefendDirect
Workday Enterprise Management CloudIndirectDevo Platform, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Cisco Splunk
Zscaler Internet Access (ZIA)Direct & IndirectIBM QRadar, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM, SentinelOne Singularity AI SIEM, Devo Platform, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Microsoft Azure Sentinel
Zscaler Private Access (ZPA)IndirectMicrosoft Azure Sentinel, Sumo Logic Log Analytics Platform

ReliaQuest will make reasonable efforts to maintain support for the direct and indirect technology sources described in the above table. The supported technology sources are subject to change from time-to-time. ReliaQuest cannot guarantee the connectivity or availability of any or all technology sources, nor be responsible for changes or errors in the technology sources or how they interface or connect with GreyMatter. In addition, GreyMatter’s connection to any technology sources may involve the use of compute power, storage capacity, or other licensing-based metrics or restrictions. Customers are solely responsible for verifying and complying with the terms, conditions, and costs associated with any such connectivity.