As far as I'm aware there's no way to do syslog. We've always had our SIEM scrape the database through an MSSQL query.
After googling what epo/vse event code 1064 Service was started means, I found this: https://github.com/jpalanco/alienvault-ossim/blob/master/os-sim/ossim-mysql/db/p lugins/mcafee-epo.sql
So AlienVault OSSIM (the open source version of their SIEM program) supports it.
I'm still not sure what causes the 1064 message, but still....