Hey Nicholas,
As Ashley mentioned, many organizations leverage SIEMs to consume data from Netwrix products. Alerts from Netwrix Threat Manager and the raw Active Directory events from Netwrix Threat Prevention are definitely high on the list of event types organizations send to their SIEMs.
Thanks!