IBM QRadarJoin this online user group to communicate across Security product users and IBM experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.
Hello,
Has anyone worked with Symantec EDR? I would like to know which integration is the best: using the Symantec EDR app (which makes API calls to the Symantec server) or simply by using syslog ?
any recommendations?
Thanks
I have such a problem with I have logs sent from SymantecEDR and no DSM parses it. So I would also like to know the best way.