Hi Gustavo,
you've listed a lot of keywords and each keyword has it's own complexity..
I think, that's the reason why you are using QRadar SIEM Intelligence. The challenge is to combine all those apps and content available at ibm xforce app exchange.
All those context processed by QRadar in 360 degree view can help you to find answers to your question. That's the good news. Additional consider to apply QNI deep network inspection technologie, which enrichs the network traffic with your mentioned context as well...
Just an idea..
Regards,
Ralph
#QRadar#Support#SupportMigration