The integration capability is very good - the ClearSkies SaaS NG SIEM team is collaborative. We've integrated most of our systems, including EDR and NDR. They have agents to collect events from servers and assets.
The main issue for improvement is the platform's slowness in presenting information. Retrieving information can take a little time when clicking on something.
Chief Information Security Officer (CISO) at a financial services firm with 51-200 employees
Jun 2, 2021
They can add behavior analytics and AI or machine learning technology. They also improve their correlation engine. In addition to collecting logs from devices, they can collect the traffic and then correlate these logs and the traffic information.