Hi Matt, a possible solution would be logstash (see https://www.elastic.co/guide/en/logstash/current/introduction.html). You could use "file" input plugin, if needed do some filtering, and afterward you send it to your SIEM with the "syslog" output plugin. Regards, Alex