I've used Zscaler mostly for URL filtering, SSL Decryption, etc.
Zscaler Cloud IPS enables you to have all threat and alert data in one place. Full user, file and app context is available. Streaming to a SIEM allows further integration into the SOC ecosystem.
The Zscaler Threat Library allows administrators and SOC personnel to drill down on IPS alerts to perform in-depth analysis of threat data within their installation. Search by vulnerability, category or keyword
For more details: https://www.zscaler.com/produc...
Zenith Live, Azure, Carlsberg Group