We've had a number questions come up recently about how to get a new data source into Threat Monitor. We do this using plugins. Plugins are basically parsers used to extract the relevant data from the events wtihin the data source and normalize them for upstream processing within Threat Monitor. If you need a plugin for a new data source, you simply need to open a support request. You'll need to include the following information:
Depending on the collection mechanism, what we know about the data, what we can learn about the data from you and the vendor, we can usually turn a plugin around pretty quickly. Although we do not have an SLA, we will strive to build the plugin for you as quickly as possible.