Most SIEMS are licensed by devices. So configuring all endpoints to point to SNMP for virus alerts is not a financial gpood thing. Is there anyway to congigure Sophos EM to point to a SIEM, or using my SIEM (Tripwire) how should i point to Sophos EM to pull data?
At this point we dont care about how fast the data gets into the SIEM, we just want the data.
This thread was automatically locked due to age.