Can you please help advantages of integrating ArcSight with Qualys logs.
This would be better handled by your SIEM vendor but there can be a million use cases when you can correlate the past events from cross platform log and event sources with what was vulnerable on that host. A good starting point would be your ArcSight smart connector guide.
Under integration of Qualys logs you mine Activity Log, which located in VM/Users/Activity Log or something different?
Retrieving data ...