# SIEM Integration

You can integrate TF Platform with SIEM tools such as **Microsoft Sentinel, Datadog, Splunk, QRadar, and LogRhythm** to monitor security events in real time for your organization’s console access.

***

### How It Works

1. Connect TF Platform to your SIEM using APIs or custom integrations.
2. Stream events and logs into your SIEM.
3. The SIEM analyzes events for threats and anomalies.
4. Alerts and reports are generated for monitoring and compliance.

{% hint style="info" %}
Tenant-level logs must be configured separately for each tenant.
{% endhint %}
