Skip to Content

Supported Sources

GreyMatter connects to the sources listed in the table below either directly or indirectly.

  • Direct Connection: GreyMatter connects directly to the source technology via API, enabling real-time data retrieval and potential response actions.
  • Indirect Connection: GreyMatter accesses the source's data via a storage solution (SIEM,Data Lake, etc.), where the data is first collected and stored before GreyMatter retrieves it.
Source TechnologiesGreyMatter Connection MethodStorage Solution Compatibility (Indirect Connection)
*nix DHCPIndirectExabeam New-Scale SIEM
*nix Operating System (OS)IndirectExabeam New-Scale SIEM, Palo Alto Networks Cortex XSIAM, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Cisco Splunk, SentinelOne Singularity AI SIEM, Devo Platform, Sumo Logic Log Analytics Platform, IBM QRadar, Microsoft Azure Sentinel
1Password Password ManagerIndirectIBM QRadar, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Cisco Splunk
Abnormal AI Email SecurityDirect & IndirectMicrosoft Azure Sentinel, IBM QRadar, Google GCP Security Operations, Cisco Splunk, SentinelOne Singularity AI SIEM, CrowdStrike Falcon Next-Gen SIEM, Sumo Logic Log Analytics Platform
AbuseIPDB LLC Threat IntelligenceDirect
Akamai App & API ProtectorIndirectCisco Splunk, The OpenSearch Project OpenSearch, IBM QRadar
Akamai GuardicoreIndirectGoogle GCP Security Operations
Amazon AWS CloudDirect
Amazon AWS CloudFrontIndirectSumo Logic Log Analytics Platform
Amazon AWS CloudTrailDirect & IndirectCrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Devo Platform, Exabeam New-Scale SIEM, Sumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar, Microsoft Azure Sentinel, Amazon AWS Security Lake
Amazon AWS CloudWatchIndirectCisco Splunk, The OpenSearch Project OpenSearch
Amazon AWS ConfigIndirectDevo Platform, Google GCP Security Operations
Amazon AWS Elastic Kubernetes Service (EKS)IndirectGoogle GCP Security Operations, IBM QRadar, Devo Platform
Amazon AWS GuardDutyDirect & IndirectDevo Platform, Google GCP Security Operations, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk
Amazon AWS OpenSearch ServiceIndirectDevo Platform, Google GCP Security Operations
Amazon AWS Route 53Direct & IndirectGoogle GCP Security Operations, Amazon AWS Security Lake
Amazon AWS Security HubIndirectCisco Splunk
Amazon AWS Security LakeDirect
Amazon AWS ShieldIndirectSumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar, Cisco Splunk
Amazon AWS VPC Flow DataDirect & IndirectDevo Platform, Google GCP Security Operations, Microsoft Azure Sentinel, Cisco Splunk
Amazon AWS WAFIndirectGoogle GCP Security Operations
Apache KafkaIndirectCisco Splunk, Google GCP Security Operations
Apache TomcatIndirectGoogle GCP Security Operations, Exabeam New-Scale SIEM, Cisco Splunk, Datadog Cloud SIEM, CrowdStrike Falcon Next-Gen SIEM, Devo Platform, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM
Appgate Universal Zero Trust Network Access (ZTNA)IndirectGoogle GCP Security Operations
Apple macOSIndirectGoogle GCP Security Operations
Aqua Security Cloud Workload ProtectionDirect
Arctic Wolf Aurora Endpoint SecurityDirect & IndirectSentinelOne Singularity AI SIEM, Google GCP Security Operations, Cisco Splunk, IBM QRadar, Palo Alto Networks Cortex XSIAM, Microsoft Azure Sentinel
Arista Networks Network Detection and Response (NDR)IndirectCisco Splunk, Google GCP Security Operations
Armis CentrixDirect
Atomicorp OSSECIndirectCisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations
Auth0 PlatformIndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform
Axonius PlatformDirect
Barracuda Cloud Gen FirewallIndirectGoogle GCP Security Operations, IBM QRadar
Barracuda Email ProtectionIndirectGoogle GCP Security Operations
BeyondTrust Endpoint Privilege Management (EPM)IndirectIBM QRadar, Exabeam New-Scale SIEM, Cisco Splunk, Google GCP Security Operations
BeyondTrust Password SafeIndirectGoogle GCP Security Operations, IBM QRadar, Cisco Splunk
BeyondTrust Privileged Remote AccessIndirectExabeam New-Scale SIEM, Cisco Splunk
BeyondTrust Remote SupportIndirectCisco Splunk
BitSight Security Performance ManagementIndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk
Bitdefender GravityZone Endpoint Detection and Response (EDR)Direct & IndirectCisco Splunk, IBM QRadar, Microsoft Azure Sentinel
BlueCat Networks Integrity (Adonis)IndirectDevo Platform, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk
Box Cloud StorageIndirectSumo Logic Log Analytics Platform, Cisco Splunk, Devo Platform, Google GCP Security Operations
Bravura Security Bravura IdentityIndirectSumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Bravura Security Bravura PrivilegeIndirectSumo Logic Log Analytics Platform, Google GCP Security Operations, Cisco Splunk, IBM QRadar
Cato Networks Cloud PlatformIndirectIBM QRadar, Devo Platform, SentinelOne Singularity AI SIEM, Google GCP Security Operations, Microsoft Azure Sentinel
Cato Networks Secure Access Service Edge (SASE)Direct
Check Point CloudGuardIndirectIBM QRadar, Google GCP Security Operations
Check Point Data Loss Prevention (DLP)IndirectIBM QRadar, Microsoft Azure Sentinel, Google GCP Security Operations, Exabeam New-Scale SIEM
Check Point Enterprise Cloud Email SecurityIndirectCisco Splunk
Check Point FirewallIndirectCisco Splunk, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, Devo Platform, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar
Check Point Harmony Email SecurityDirect
Check Point Remote Access VPNIndirectExabeam New-Scale SIEM, Microsoft Azure Sentinel, IBM QRadar, Google GCP Security Operations
Check Point SandBlast: Threat Extraction & EmulationIndirectGoogle GCP Security Operations, IBM QRadar
Check Point Security ManagementDirect & IndirectDevo Platform, IBM QRadar, Cisco Splunk, Google GCP Security Operations
Check Point SmartDefenseIndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk, Exabeam New-Scale SIEM, Microsoft Azure Sentinel
Check Point URL FilteringIndirectMicrosoft Azure Sentinel, Exabeam New-Scale SIEM, Google GCP Security Operations, Cisco Splunk, IBM QRadar
Cisco Adaptive Security Appliance (ASA)Direct & IndirectSentinelOne Singularity AI SIEM, Devo Platform, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, Google GCP Security Operations
Cisco AnyConnectIndirectSentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, IBM QRadar, Devo Platform, Cisco Splunk
Cisco Duo SecurityDirect & IndirectCisco Splunk, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar, Microsoft Azure Sentinel, Devo Platform, Google GCP Security Operations, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Datadog Cloud SIEM
Cisco Event Streamer (eStreamer)IndirectCisco Splunk
Cisco FirePowerIndirectCrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, IBM QRadar, Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Exabeam New-Scale SIEM, SentinelOne Singularity AI SIEM
Cisco Identity Services Engine (ISE)IndirectSentinelOne Singularity AI SIEM, CrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM, IBM QRadar, Cisco Splunk, Google GCP Security Operations, Devo Platform
Cisco MerakiDirect & IndirectMicrosoft Azure Sentinel, Cisco Splunk, IBM QRadar, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, Devo Platform, Exabeam New-Scale SIEM, Google GCP Security Operations
Cisco Networking Software NX-OSIndirectSentinelOne Singularity AI SIEM, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM, Cisco Splunk
Cisco NexusIndirectCrowdStrike Falcon Next-Gen SIEM
Cisco Platform Exchange Grid (pxGrid)Direct
Cisco Secure EmailIndirectIBM QRadar
Cisco Secure EndpointDirect & IndirectGoogle GCP Security Operations, IBM QRadar, Microsoft Azure Sentinel, Cisco Splunk
Cisco Secure Firewall Management Center (FMC)Direct
Cisco Secure Network AnalyticsDirect
Cisco Secure Web ApplianceIndirectIBM QRadar
Cisco SnortIndirectIBM QRadar, Exabeam New-Scale SIEM
Cisco SplunkDirect & IndirectGoogle GCP Security Operations, Cisco Splunk, IBM QRadar
Cisco Splunk Security Orchestration Automation and Response (SOAR)Direct
Cisco UmbrellaDirect & IndirectSentinelOne Singularity AI SIEM, Cisco Splunk, Microsoft Azure Sentinel, Devo Platform, Sumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations, Exabeam New-Scale SIEM
Cisco Wireless LAN Controller (WLC)IndirectIBM QRadar
Citrix Netscaler Content FilteringIndirectPalo Alto Networks Cortex XSIAM
Citrix Netscaler Gateway VPNIndirectCrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Exabeam New-Scale SIEM, IBM QRadar
Citrix Netscaler Web Application Firewall (WAF)IndirectIBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations
Citrix Virtual Apps and DesktopsIndirectCisco Splunk, The OpenSearch Project OpenSearch, Datadog Cloud SIEM
Claroty XDome for HealthcareDirect
Claroty xDomeDirect & IndirectGoogle GCP Security Operations
CloudFlare Content Delivery Network (CDN)IndirectIBM QRadar, Cisco Splunk, Google GCP Security Operations, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM
CloudFlare DDoS ProtectionIndirectGoogle GCP Security Operations
CloudFlare DNSIndirectCisco Splunk, Google GCP Security Operations
CloudFlare Magic FirewallIndirectGoogle GCP Security Operations, Cisco Splunk
CloudFlare Secure Web Gateway (SWG)IndirectGoogle GCP Security Operations
CloudFlare Web Application Firewall (WAF)Direct & IndirectGoogle GCP Security Operations, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar, Microsoft Azure Sentinel
CloudFlare Zero Trust Network Access (ZTNA)IndirectGoogle GCP Security Operations, Cisco Splunk
Cofense PhishMe SAT PlatformIndirectCisco Splunk, IBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform
Cofense Triage Email AnalyticsIndirectGoogle GCP Security Operations
Corelight Open NDR PlatformIndirectCisco Splunk
Cribl Inc CriblIndirectCisco Splunk
CrowdStrike Falcon Adversary IntelligenceDirect
CrowdStrike Falcon Fusion SOARDirect
CrowdStrike Falcon Identity ProtectionDirect & IndirectCisco Splunk, Devo Platform, IBM QRadar
CrowdStrike Falcon Insight XDRDirect & IndirectIBM QRadar, Sumo Logic Log Analytics Platform, Exabeam New-Scale SIEM, Google GCP Security Operations, Microsoft Azure Sentinel, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Devo Platform, CrowdStrike Falcon Long Term Repository
CrowdStrike Falcon LogScaleDirect
CrowdStrike Falcon Long Term RepositoryDirect
CrowdStrike Falcon MalQueryDirect
CrowdStrike Falcon Next-Gen SIEMDirect & IndirectSumo Logic Log Analytics Platform, IBM QRadar
CrowdStrike Falcon PreventDirect & IndirectSumo Logic Log Analytics Platform, Google GCP Security Operations, CrowdStrike Falcon Long Term Repository, Devo Platform, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, IBM QRadar, Microsoft Azure Sentinel, Exabeam New-Scale SIEM
CrowdStrike Falcon SpotlightDirect & IndirectDevo Platform
CybeReason Endpoint Detection and Response (EDR)IndirectCisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar
CybeReason Next-Generation AntivirusIndirectCisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations
CyberArk Enterprise Password Vault (EPV)IndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM, Devo Platform, Sumo Logic Log Analytics Platform
CyberArk Privileged Threat Analytics (PTA)IndirectCisco Splunk, Google GCP Security Operations, Devo Platform, CrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM, IBM QRadar, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform
CyberArk Workforce IdentityDirect & IndirectCisco Splunk, Google GCP Security Operations, SentinelOne Singularity AI SIEM
DOPE.SECURITY Inc Secure Web Gateway (SWG)IndirectGoogle GCP Security Operations
Darktrace ActiveAI Security PlatformDirect & IndirectMicrosoft Azure Sentinel, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Datadog Cloud SIEMDirect
Delinea Secret ServerIndirectCrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, IBM QRadar, Google GCP Security Operations, Exabeam New-Scale SIEM, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel
Devo PlatformDirect & IndirectDevo Platform, Microsoft Azure Sentinel, IBM QRadar
Docker BusinessIndirectGoogle GCP Security Operations
Dragos PlatformDirect
Elastic ElasticsearchDirect
Epic Electronic Medical Records (EMR)IndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk
Exabeam Data Lake LegacyDirect & IndirectExabeam New-Scale SIEM
Exabeam LogRhythm Case ManagementDirect & IndirectCisco Splunk
Exabeam LogRhythm FIMIndirectDatadog Cloud SIEM
Exabeam LogRhythm NetMonIndirectDatadog Cloud SIEM
Exabeam LogRhythm SIEMDirect & IndirectGoogle GCP Security Operations
Exabeam New-Scale Advanced AnalyticsDirect & IndirectExabeam New-Scale SIEM
Exabeam New-Scale SIEMDirect & IndirectExabeam New-Scale SIEM
ExtraHop Reveal(X)Direct & IndirectCisco Splunk, Devo Platform, Exabeam New-Scale SIEM, IBM QRadar, Google GCP Security Operations
Extreme Networks Access PointsIndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar
Extreme Networks RoutersIndirectCisco Splunk, Google GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform
F5 Networks BIG-IP Access Policy Manager (APM)IndirectCisco Splunk
F5 Networks BIG-IP Application Security Manager (ASM)IndirectExabeam New-Scale SIEM, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Microsoft Azure Sentinel, Cisco Splunk
F5 Networks BIG-IP DNSIndirectCisco Splunk, Exabeam New-Scale SIEM
F5 Networks BIG-IP Local Traffic Manager (LTM)IndirectGoogle GCP Security Operations
Fastly Next-Gen WAFIndirectGoogle GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform
Fidelis Security DeceptionIndirectMicrosoft Azure Sentinel
Fidelis Security Endpoint (EDR)IndirectMicrosoft Azure Sentinel
Fidelis Security Network Data Loss PreventionIndirectMicrosoft Azure Sentinel
Fidelis Security Network NDRIndirectMicrosoft Azure Sentinel
Forcepoint Secure Web GatewayIndirectCisco Splunk, IBM QRadar
Forcepoint V SeriesIndirectIBM QRadar
Forescout CounterActIndirectCrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Cisco Splunk, Microsoft Azure Sentinel
Fortinet FortiEDRDirect
Fortinet FortiGate Next-Gen Firewall (NGFW)Direct & IndirectCisco Splunk, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations, Exabeam New-Scale SIEM, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM, Devo Platform
Fortinet FortiManagerDirect
Fortinet FortiSandboxIndirectGoogle GCP Security Operations
Fortra Agari Phishing DefenseIndirectCisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar
Fortra Globalscape Enhanced File Transfer (EFT)IndirectCisco Splunk
Fortra PowertechIndirectGoogle GCP Security Operations
GitHub EnterpriseIndirectSentinelOne Singularity AI SIEM, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Devo Platform, Cisco Splunk, Microsoft Azure Sentinel
GitLab Code RepositoryIndirectCisco Splunk, Google GCP Security Operations, Devo Platform
GoPhish Open-Source Phishing FrameworkIndirectSumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk, Google GCP Security Operations
Google GCP Apigee API ManagementIndirectGoogle GCP Security Operations
Google GCP CloudDirect
Google GCP Cloud Audit LogsDirect & IndirectCisco Splunk, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Devo Platform, IBM QRadar, Google GCP Security Operations
Google GCP Cloud DNSIndirectGoogle GCP Security Operations
Google GCP Cloud FirewallIndirectGoogle GCP Security Operations
Google GCP Cloud StorageDirect & IndirectGoogle GCP Security Operations
Google GCP Compute EngineDirect & IndirectGoogle GCP Security Operations, Cisco Splunk
Google GCP Security Command Center (SCC)Direct & IndirectCisco Splunk, Google GCP Security Operations
Google GCP Security OperationsDirect
Google GCP Security Operations SOARDirect
Google VirusTotalDirect
Google WorkspaceDirect & IndirectDevo Platform, Microsoft Azure Sentinel, IBM QRadar, Google GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform
HPE Aruba Networking Access PointsIndirectGoogle GCP Security Operations
HPE Aruba Networking ClearPassIndirectGoogle GCP Security Operations
HPE Aruba Networking Mobility ControllerIndirectGoogle GCP Security Operations
HPE File StorageIndirectGoogle GCP Security Operations
HashiCorp VaultIndirectIBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk
IBM QRadarDirect
IBM i-SeriesIndirectGoogle GCP Security Operations
Imperva DDoS ProtectionIndirectIBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Devo Platform
Imperva Web Application FirewallIndirectIBM QRadar, Devo Platform, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM, Cisco Splunk
Imprivata Enterprise PlatformIndirectGoogle GCP Security Operations
Infoblox DDIDirect & IndirectSumo Logic Log Analytics Platform, Cisco Splunk, Exabeam New-Scale SIEM, SentinelOne Singularity AI SIEM, Google GCP Security Operations, Microsoft Azure Sentinel, Devo Platform, IBM QRadar
Infoblox IP Address Management (IPAM)IndirectGoogle GCP Security Operations
Infoblox NIOSDirect & IndirectMicrosoft Azure Sentinel, Cisco Splunk, SentinelOne Singularity AI SIEM, Devo Platform, Google GCP Security Operations, Exabeam New-Scale SIEM, IBM QRadar
Ironscales Email Security PlatformIndirectCisco Splunk, IBM QRadar
Island Enterprise BrowserIndirectCisco Splunk
Ivanti Connect SecureIndirectDevo Platform, SentinelOne Singularity AI SIEM, Cisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations
Jamf ProIndirectGoogle GCP Security Operations
Jenkins CI/CDIndirectGoogle GCP Security Operations
Joe Security Joe SandboxDirect & IndirectGoogle GCP Security Operations
JumpCloud PlatformDirect & IndirectCisco Splunk, Google GCP Security Operations, IBM QRadar
Juniper Junos OSIndirectIBM QRadar, Cisco Splunk, Google GCP Security Operations
Juniper SRXDirect & IndirectIBM QRadar, Cisco Splunk, Google GCP Security Operations
Keeper Security Password ManagementIndirectGoogle GCP Security Operations, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, Cisco Splunk
KnowBe4 Enterprise Security AwarenessIndirectGoogle GCP Security Operations, IBM QRadar, Cisco Splunk, Sumo Logic Log Analytics Platform
Kubernetes KubernetesIndirectGoogle GCP Security Operations, IBM QRadar, Cisco Splunk, Sumo Logic Log Analytics Platform
LastPass Password ManagerIndirectIBM QRadar, Cisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform
Malwarebytes Nebula Endpoint Detection & ResponseDirect
ManageEngine Password Manager ProIndirectGoogle GCP Security Operations
Microsoft Active DirectoryDirect & IndirectGoogle GCP Security Operations, Cisco Splunk, IBM QRadar, Exabeam New-Scale SIEM, The OpenSearch Project OpenSearch, Datadog Cloud SIEM, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, CrowdStrike Falcon Next-Gen SIEM
Microsoft Azure Application GatewayIndirectGoogle GCP Security Operations, Cisco Splunk
Microsoft Azure CloudDirect
Microsoft Azure DNSIndirectGoogle GCP Security Operations
Microsoft Azure Data ExplorerDirect
Microsoft Azure DevOpsIndirectIBM QRadar
Microsoft Azure FirewallIndirectCisco Splunk, Microsoft Azure Sentinel, IBM QRadar, Google GCP Security Operations, Devo Platform
Microsoft Azure Front DoorIndirectGoogle GCP Security Operations
Microsoft Azure Key VaultIndirectCisco Splunk
Microsoft Azure Logic AppsDirect
Microsoft Azure MonitorDirect & IndirectMicrosoft Azure Sentinel, Exabeam New-Scale SIEM
Microsoft Azure SQL DatabaseIndirectMicrosoft Azure Sentinel, Cisco Splunk
Microsoft Azure SentinelDirect
Microsoft Azure Subscription ActivityIndirectPalo Alto Networks Cortex XSIAM, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, Devo Platform, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, IBM QRadar, Google GCP Security Operations
Microsoft Azure URL FilteringIndirectGoogle GCP Security Operations
Microsoft DHCP ServerIndirectDatadog Cloud SIEM, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Cisco Splunk, Sumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, IBM QRadar
Microsoft DNSIndirectIBM QRadar, Google GCP Security Operations, The OpenSearch Project OpenSearch, Exabeam New-Scale SIEM, Devo Platform, Cisco Splunk, Datadog Cloud SIEM, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel
Microsoft Defender Vulnerability ManagementDirect
Microsoft Defender XDRDirect & IndirectExabeam New-Scale SIEM
Microsoft Defender for CloudDirect & IndirectIBM QRadar, Exabeam New-Scale SIEM, Cisco Splunk, Microsoft Azure Sentinel
Microsoft Defender for Cloud AppsDirect & IndirectCisco Splunk, Microsoft Azure Sentinel, IBM QRadar, Exabeam New-Scale SIEM
Microsoft Defender for EndpointDirect & IndirectMicrosoft Azure Sentinel, Cisco Splunk, Exabeam New-Scale SIEM, SentinelOne Singularity AI SIEM, Datadog Cloud SIEM, Sumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations
Microsoft Defender for IdentityDirect & IndirectGoogle GCP Security Operations, Cisco Splunk, Devo Platform, Microsoft Azure Sentinel, IBM QRadar, Exabeam New-Scale SIEM, CrowdStrike Falcon Next-Gen SIEM, Sumo Logic Log Analytics Platform
Microsoft Defender for IoTDirect
Microsoft Defender for Office 365Direct & IndirectExabeam New-Scale SIEM, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, IBM QRadar, SentinelOne Singularity AI SIEM, Cisco Splunk, Google GCP Security Operations
Microsoft Entra IDDirect & IndirectGoogle GCP Security Operations, The OpenSearch Project OpenSearch, Devo Platform, SentinelOne Singularity AI SIEM, IBM QRadar, Exabeam New-Scale SIEM, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, Palo Alto Networks Cortex XSIAM, Sumo Logic Log Analytics Platform, Cisco Splunk
Microsoft Entra ID ProtectionDirect & IndirectSumo Logic Log Analytics Platform, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM
Microsoft Exchange OnlineDirect
Microsoft Exchange ServerIndirectCisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform, Devo Platform, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, Datadog Cloud SIEM
Microsoft Hyper-VIndirectDatadog Cloud SIEM, Google GCP Security Operations, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM
Microsoft IISIndirectSumo Logic Log Analytics Platform, Palo Alto Networks Cortex XSIAM, Devo Platform, Google GCP Security Operations, Microsoft Azure Sentinel, CrowdStrike Falcon Next-Gen SIEM, SentinelOne Singularity AI SIEM, IBM QRadar, Cisco Splunk, Datadog Cloud SIEM
Microsoft IntuneDirect & IndirectCisco Splunk, Google GCP Security Operations, Exabeam New-Scale SIEM
Microsoft Office 365Direct & IndirectSentinelOne Singularity AI SIEM, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar, Devo Platform, Exabeam New-Scale SIEM, Microsoft Azure Sentinel
Microsoft Office 365 Cloud App SecurityDirect & IndirectDevo Platform
Microsoft OneDriveIndirectSumo Logic Log Analytics Platform, Devo Platform, Datadog Cloud SIEM, IBM QRadar, Google GCP Security Operations, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM
Microsoft PowerShellIndirectSentinelOne Singularity AI SIEM, The OpenSearch Project OpenSearch, CrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Datadog Cloud SIEM, Google GCP Security Operations, Sumo Logic Log Analytics Platform
Microsoft PurviewDirect & IndirectDevo Platform, Google GCP Security Operations, Cisco Splunk, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, IBM QRadar, Exabeam New-Scale SIEM
Microsoft Purview Insider Risk ManagementDirect
Microsoft SQL ServerIndirectCisco Splunk, Google GCP Security Operations, The OpenSearch Project OpenSearch, Datadog Cloud SIEM, Microsoft Azure Sentinel
Microsoft SharePointIndirectCrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM, SentinelOne Singularity AI SIEM, Cisco Splunk, Google GCP Security Operations, Datadog Cloud SIEM, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, Devo Platform, IBM QRadar
Microsoft SysmonIndirectDatadog Cloud SIEM, Sumo Logic Log Analytics Platform, The OpenSearch Project OpenSearch, Google GCP Security Operations, Cisco Splunk, IBM QRadar, SentinelOne Singularity AI SIEM, CrowdStrike Falcon Next-Gen SIEM
Microsoft WindowsIndirectExabeam New-Scale SIEM, Palo Alto Networks Cortex XSIAM, SentinelOne Singularity AI SIEM, Devo Platform, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, The OpenSearch Project OpenSearch, Datadog Cloud SIEM, Cisco Splunk, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar
Microsoft Windows Defender AntivirusIndirectExabeam New-Scale SIEM, Sumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar, Cisco Splunk, Datadog Cloud SIEM, SentinelOne Singularity AI SIEM
Microsoft Windows HelloIndirectSumo Logic Log Analytics Platform, SentinelOne Singularity AI SIEM, Datadog Cloud SIEM
Microsoft Windows Performance MonitorIndirectDatadog Cloud SIEM, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform
MikroTik RouterOSIndirectIBM QRadar
Mimecast Advanced Email SecurityDirect & IndirectCisco Splunk, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Exabeam New-Scale SIEM, CrowdStrike Falcon Next-Gen SIEM, IBM QRadar, Microsoft Azure Sentinel, Devo Platform
MongoDB Enterprise AdvancedIndirectGoogle GCP Security Operations
Morphisec GuardIndirectGoogle GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform, Cisco Splunk
Morphisec Guard LiteIndirectIBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Cisco Splunk
NetApp ONTAPIndirectCisco Splunk
Netography FusionDirect
Netskope OneIndirectSumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Devo Platform, Exabeam New-Scale SIEM, Microsoft Azure Sentinel
Netskope Secure Web Gateway (SWG)Direct
Netwrix Change TrackerIndirectMicrosoft Azure Sentinel
Netwrix StealthINTERCEPTIndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, Microsoft Azure Sentinel, Cisco Splunk, IBM QRadar
Netwrix Threat ManagerIndirectMicrosoft Azure Sentinel, Sumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar, Cisco Splunk
Nginx Web ServerIndirectCisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations
Nozomi Networks Central Management ConsoleDirect
Nozomi Networks VantageDirect
Nutanix Enterprise CloudIndirectGoogle GCP Security Operations
Obsidian SaaS Identity Threat Detection and Response (ITDR)Direct
Okta IdentityDirect & IndirectCrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, Devo Platform, Palo Alto Networks Cortex XSIAM, Microsoft Azure Sentinel, Exabeam New-Scale SIEM, IBM QRadar, SentinelOne Singularity AI SIEM, Cisco Splunk, Sumo Logic Log Analytics Platform
One Identity SafeguardIndirectCisco Splunk
Open Information Security Foundation (OISF) SuricataIndirectIBM QRadar, Cisco Splunk
Oracle Audit Vault and Database Firewall (AVDF)IndirectCisco Splunk
Oracle Cloud GuardIndirectMicrosoft Azure Sentinel
Oracle Cloud Infrastructure (OCI)IndirectCisco Splunk, Google GCP Security Operations
Oracle MySQLIndirectCisco Splunk, IBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform
Orca Security Cloud Security PlatformDirect & IndirectCisco Splunk
Palo Alto Networks Cortex XDRDirect & IndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk, Devo Platform
Palo Alto Networks Cortex XSIAMDirect
Palo Alto Networks Cortex XSOARDirect
Palo Alto Networks Enterprise IoT SecurityIndirectGoogle GCP Security Operations
Palo Alto Networks GlobalProtectIndirectCisco Splunk, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, Devo Platform, Google GCP Security Operations, IBM QRadar
Palo Alto Networks IDS/IPSDirect & IndirectCisco Splunk, Exabeam New-Scale SIEM, Datadog Cloud SIEM, Palo Alto Networks Cortex XSIAM, Google GCP Security Operations, IBM QRadar, SentinelOne Singularity AI SIEM
Palo Alto Networks Next-Gen Firewall (NGFW)Direct & IndirectDevo Platform, Cisco Splunk, CrowdStrike Falcon Next-Gen SIEM, Datadog Cloud SIEM, Exabeam New-Scale SIEM, Sumo Logic Log Analytics Platform, Palo Alto Networks Cortex XSIAM, Google GCP Security Operations, Microsoft Azure Sentinel, IBM QRadar, SentinelOne Singularity AI SIEM
Palo Alto Networks PanoramaIndirectCisco Splunk, Google GCP Security Operations, IBM QRadar
Palo Alto Networks Prisma AccessIndirectIBM QRadar, Google GCP Security Operations
Palo Alto Networks Prisma CloudDirect & IndirectCisco Splunk, IBM QRadar, Google GCP Security Operations
Palo Alto Networks URL FilteringIndirectSentinelOne Singularity AI SIEM, Google GCP Security Operations, Exabeam New-Scale SIEM, Cisco Splunk, IBM QRadar, Datadog Cloud SIEM
Palo Alto Networks WildfireDirect & IndirectCisco Splunk, Google GCP Security Operations, Datadog Cloud SIEM, IBM QRadar
Ping Identity PingFederateIndirectCrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, IBM QRadar, Google GCP Security Operations, Cisco Splunk
Ping Identity PingOne Advanced Identity CloudDirect
Ping Identity PingOne PlatformIndirectCrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Microsoft Azure Sentinel, Google GCP Security Operations, IBM QRadar
PostgreSQL PostgreSQLIndirectGoogle GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar
Progress Software MOVEit Managed File Transfer Software (MFTS)IndirectCisco Splunk, Google GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform
Progress Software ShareFileIndirectSumo Logic Log Analytics Platform, Google GCP Security Operations
Proofpoint Cloud App Security Broker (CASB)IndirectSentinelOne Singularity AI SIEM
Proofpoint Email ProtectionIndirectCrowdStrike Falcon Next-Gen SIEM, Devo Platform, Google GCP Security Operations, Palo Alto Networks Cortex XSIAM, Exabeam New-Scale SIEM, Cisco Splunk, Microsoft Azure Sentinel, SentinelOne Singularity AI SIEM, Sumo Logic Log Analytics Platform, IBM QRadar
Proofpoint Insider Threat Management (ITM)IndirectSentinelOne Singularity AI SIEM
Proofpoint Targeted Attack Protection (TAP)Direct & IndirectSumo Logic Log Analytics Platform, CrowdStrike Falcon Next-Gen SIEM, Exabeam New-Scale SIEM, Cisco Splunk, SentinelOne Singularity AI SIEM, Devo Platform, IBM QRadar, Microsoft Azure Sentinel, Palo Alto Networks Cortex XSIAM, Google GCP Security Operations
Proofpoint Threat Response Auto-Pull (TRAP)IndirectSentinelOne Singularity AI SIEM
Qualys Vulnerability Management, Detection & Response (VMDR)Direct
RSA SecurIDIndirectIBM QRadar, Cisco Splunk, Devo Platform, Sumo Logic Log Analytics Platform, Google GCP Security Operations
RadWare DefenseProIndirectExabeam New-Scale SIEM, Google GCP Security Operations
Rapid7 InsightIDRDirect
Rapid7 NexposeDirect
RedHat AuditdIndirectCrowdStrike Falcon Next-Gen SIEM, Devo Platform, Google GCP Security Operations, Exabeam New-Scale SIEM
Redwood Cerberus FTP ServerIndirectGoogle GCP Security Operations
Rubrik Security CloudIndirectGoogle GCP Security Operations, Microsoft Azure Sentinel
SAP Sybase ASEIndirectCisco Splunk, Microsoft Azure Sentinel
SailPoint Identity Security CloudDirect
SailPoint IdentityIQIndirectGoogle GCP Security Operations
SalesForce Customer Relationship Manager (CRM)IndirectThe OpenSearch Project OpenSearch, Cisco Splunk, IBM QRadar, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Microsoft Azure Sentinel
SalesForce SlackIndirectGoogle GCP Security Operations, Microsoft Azure Sentinel
SecureAuth Identity PlatformIndirectIBM QRadar, Cisco Splunk, Sumo Logic Log Analytics Platform, Google GCP Security Operations
Securonix Unified Defense SIEMDirect
SentinelOne Singularity AI SIEMDirect
SentinelOne Singularity EndpointDirect & IndirectIBM QRadar, Cisco Splunk, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, Google GCP Security Operations
ServiceNow IT Service Management (ITSM)IndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar
Shibboleth Consortium Identity ProviderIndirectSumo Logic Log Analytics Platform, Google GCP Security Operations, Cisco Splunk, IBM QRadar
Silverfort Universal MFAIndirectGoogle GCP Security Operations
SkyHigh Security Secure Web GatewayIndirectIBM QRadar, Google GCP Security Operations, Sumo Logic Log Analytics Platform, Exabeam New-Scale SIEM, Cisco Splunk
Snowflake Data Cloud PlatformDirect & IndirectIBM QRadar, Sumo Logic Log Analytics Platform, Cisco Splunk, Devo Platform, Microsoft Azure Sentinel, Google GCP Security Operations
Software Freedom Conservancy Inc GitIndirectGoogle GCP Security Operations
SolarWinds OrionIndirectGoogle GCP Security Operations
SonicWall Content FilteringIndirectMicrosoft Azure Sentinel, Cisco Splunk, IBM QRadar, SentinelOne Singularity AI SIEM
SonicWall FirewallIndirectSentinelOne Singularity AI SIEM, Microsoft Azure Sentinel, Google GCP Security Operations, Cisco Splunk, IBM QRadar
SonicWall IDS/IPSIndirectMicrosoft Azure Sentinel, Cisco Splunk
SonicWall Virtual Private Network (VPN)IndirectCisco Splunk, Microsoft Azure Sentinel
Sophos AntivirusIndirectIBM QRadar, Google GCP Security Operations
Sophos CentralIndirectGoogle GCP Security Operations
Sophos Intercept XDirect & IndirectIBM QRadar, Google GCP Security Operations
Sophos Unified Threat Management (UTM)IndirectIBM QRadar
Sophos XG FirewallIndirectGoogle GCP Security Operations, IBM QRadar
Splashtop Remote AccessIndirectIBM QRadar
Squid ProxyIndirectCrowdStrike Falcon Next-Gen SIEM, Cisco Splunk, Devo Platform
Sumo Logic Log Analytics PlatformDirect & IndirectCisco Splunk
Swimlane TurbineDirect
Symantec Endpoint Protection (SEP)IndirectExabeam New-Scale SIEM, Microsoft Azure Sentinel, Cisco Splunk, Google GCP Security Operations
Symantec Endpoint SecurityDirect
Symantec Enterprise Cloud Data Loss Prevention (DLP)IndirectCrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, SentinelOne Singularity AI SIEM, Cisco Splunk
Symantec Secure Web GatewayDirect & IndirectCisco Splunk, IBM QRadar, Devo Platform, Google GCP Security Operations
Tanium AssetIndirectDatadog Cloud SIEM
Tanium Threat ResponseDirect
Tenable NessusDirect & IndirectDatadog Cloud SIEM, Cisco Splunk, Microsoft Azure Sentinel
The OpenSearch Project OpenSearchDirect
Thinkst CanaryIndirectIBM QRadar, Google GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform
Threat Intelligence Platform Threat Intelligence PlatformDirect
Tines No-Code Automation PlatformDirect
Trellix Cloud SecurityIndirectIBM QRadar, Sumo Logic Log Analytics Platform, Cisco Splunk, Google GCP Security Operations
Trellix Data Loss PreventionIndirectCisco Splunk
Trellix Endpoint Security (ENS)Direct & IndirectExabeam New-Scale SIEM, Cisco Splunk, Google GCP Security Operations, IBM QRadar
Trellix Endpoint Security (HX)Direct
Trellix Intrusion Prevention SystemIndirectIBM QRadar
Trend Micro Apex CentralIndirectMicrosoft Azure Sentinel, IBM QRadar, Cisco Splunk
Trend Micro Apex OneIndirectMicrosoft Azure Sentinel, Google GCP Security Operations, IBM QRadar, Cisco Splunk, Sumo Logic Log Analytics Platform
Trend Micro Cloud OneDirect
Trend Micro Deep SecurityIndirectIBM QRadar, Cisco Splunk
Trend Micro TippingPointIndirectGoogle GCP Security Operations, IBM QRadar
Trend Micro Vision OneDirect & IndirectIBM QRadar
Ubiquiti UniFiIndirectGoogle GCP Security Operations
Upwind Cloud-Native Application Protection Platform (CNAPP)Direct
VMware Carbon Black App ControlDirect & IndirectGoogle GCP Security Operations
VMware Carbon Black Cloud Audit and RemediationIndirectIBM QRadar, Microsoft Azure Sentinel
VMware Carbon Black Cloud Endpoint StandardDirect & IndirectGoogle GCP Security Operations, IBM QRadar
VMware Carbon Black Cloud Enterprise EDRDirect & IndirectGoogle GCP Security Operations, Sumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk
VMware Carbon Black On-Prem EDRDirect & IndirectGoogle GCP Security Operations, IBM QRadar
VMware ESXiIndirectCrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Palo Alto Networks Cortex XSIAM, Google GCP Security Operations, IBM QRadar, Cisco Splunk
VMware vCenterIndirectMicrosoft Azure Sentinel, IBM QRadar, Palo Alto Networks Cortex XSIAM, Cisco Splunk, Google GCP Security Operations, CrowdStrike Falcon Next-Gen SIEM
Varonis DatAdvantageIndirectCrowdStrike Falcon Next-Gen SIEM, Google GCP Security Operations, IBM QRadar, Sumo Logic Log Analytics Platform
Varonis DatAlertIndirectSumo Logic Log Analytics Platform, IBM QRadar, Cisco Splunk, Google GCP Security Operations
Vectra AI PlatformDirect
Veeam Data PlatformIndirectSumo Logic Log Analytics Platform, Cisco Splunk, IBM QRadar, Datadog Cloud SIEM, Google GCP Security Operations
Verizon DDoS ShieldIndirectGoogle GCP Security Operations, Cisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar
Versa Networks Next Generation Firewall (NGFW)IndirectGoogle GCP Security Operations
Wallix ONEIndirectCrowdStrike Falcon Next-Gen SIEM
WatchGuard FireboxIndirectIBM QRadar, Google GCP Security Operations
Wazuh Open Source Security PlatformIndirectCrowdStrike Falcon Next-Gen SIEM
Wiz Cloud Security Platform CloudDirect & IndirectSentinelOne Singularity AI SIEM, Cisco Splunk, Sumo Logic Log Analytics Platform, IBM QRadar, Google GCP Security Operations, Microsoft Azure Sentinel
Wiz Cloud Security Platform DefendDirect
Workday Enterprise Management CloudIndirectDevo Platform, The OpenSearch Project OpenSearch, Microsoft Azure Sentinel, Sumo Logic Log Analytics Platform, Google GCP Security Operations, Cisco Splunk
Zscaler Internet Access (ZIA)Direct & IndirectSumo Logic Log Analytics Platform, Google GCP Security Operations, IBM QRadar, CrowdStrike Falcon Next-Gen SIEM, Microsoft Azure Sentinel, Cisco Splunk, SentinelOne Singularity AI SIEM, Exabeam New-Scale SIEM, Devo Platform
Zscaler Private Access (ZPA)IndirectSumo Logic Log Analytics Platform, Microsoft Azure Sentinel
iboss ZeroTrust SASEDirect

ReliaQuest will make reasonable efforts to maintain support for the direct and indirect technology sources described in the above table. The supported technology sources are subject to change from time-to-time. ReliaQuest cannot guarantee the connectivity or availability of any or all technology sources, nor be responsible for changes or errors in the technology sources or how they interface or connect with GreyMatter. In addition, GreyMatter’s connection to any technology sources may involve the use of compute power, storage capacity, or other licensing-based metrics or restrictions. Customers are solely responsible for verifying and complying with the terms, conditions, and costs associated with any such connectivity.