Currently our DLP Team mines our Skype chats for keyword detections. A database query is run every 5 minutes to gather all chat messages sent during the period. Pattern matching is run on the queried data and the conversations/messages that match are sent to Qradar. QRadar reports are generated daily for review.
The content of the chat messages we review includes:
We need a mechanism to extract chat messages from webex and run keywords or pattern matching against them automatically without user intervention. Matches need to be able to be fed into a SIEM for reporting purposes.