Zscaler Internet Access
Experience the power of CompassOne
Get a DemoIntegrate. Simplify. Protect.
Collect and store Zscaler Internet Access (ZIA) logs while increasing Blackpoint’s threat detection capabilities and giving your organization visibility into web activity, security events, and data loss prevention. With OCSF field mapping, advanced search, and 12 months of included storage, this integration strengthens both your security posture and your compliance coverage.
Zscaler Internet Access + CompassOne Overview
01Collect ZIA web and security logs
Forward network activity logs, security alerts, and DLP activity from Zscaler Internet Access into CompassOne via syslog, all indexed, mapped to OCSF, and ready for search and analysis.
02Increase threat detection capabilities
Zscaler Internet Access logs provide additional telemetry that increases Blackpoint’s ability to detect threats and support security investigations across your environment.
03Maintain compliance and Zero Trust visibility
Retain a normalized record of user internet activity, policy enforcement, and security events to meet regulatory standards, satisfy cyber insurance requirements, and support audit cycles.
04Precise log search
Search Zscaler Internet Access events using time and field filters, keyword matching, and advanced query syntax to pinpoint exactly what you need during audits, investigations, or policy reviews.
05Standardized schema for consistency
CompassOne maps Zscaler Internet Access logs to the Open Cybersecurity Schema Framework (OCSF), making them structured, searchable by field, and compatible with third-party tools for parsing, visualization, and analysis.
06Included storage with flexible retention
Get 12 months of Zscaler Internet Access log storage at no additional cost. Longer retention is available at a predictable monthly rate.
07Connected in minutes
Set up the Blackpoint Agent for syslog collection, configure Zscaler’s Nanolog Streaming Service (NSS) to forward logs to the agent, and Zscaler Internet Access events start flowing into CompassOne.