+1-202-802-9399 U.S. Headquarters

SIEM Integration

Secret Server and SIEM Integration | CEF / Syslog

Secret Server privileged account management software logs events to SIEM platforms that support CEF or Syslog formats.

These events can be correlated on the SIEM (Security Information and Event Management) side so administrators are alerted when specific events occur on the system.

When an administrator sets up a filter for certain events, the events are logged with different alert levels depending on their severity. Examples of events: Unlimited Administration gets turned on, user lockout, Heartbeat failure, Secret Expiration

ArcSight, Splunk, and LogLogic are some of the SIEM and Log Management tools that work with Secret Server. Most SIEM and Log Management tools support Syslog format and are therefore compatible with Secret Server.

Thycotic is an official technology partner with Splunk. There is a Secret Server app in the Splunk apps store which aggregates the data coming from Secret Server around privileged account activity and presents the information in the Splunk dashboard.

Thycotic is also an ArcSight CEF certified partner. (See screenshot below)

If you’d like to try Secret Server with SIEM integration, complete the free trial form to start a 30-day trial.

Or, check out Secret Server’s other user-friendly features. We’re pretty sure you’ll love them!

SIEM Integration - Secret Server

Try Secret Server for 30 Days

  • Full featured, 30-day trial
  • Free enterprise-level support
  • Unlimited Secrets
  • Up and running in 15 mins