Hello STF,
The "Symantec™ Event Collector 4.3 for Symantec Endpoint Protection 11.0 Quick Reference" that is attached below, is helpful and has some good examples, but I don't believe that it is comprehensive. I'm not aware of any comprehensive list.
Admins can configure the type and frequency of events that are exported from the SEPM to a syslog server.
The following article may help, and there is mor ein the SEPM's built-in help files:
Exporting data to a Syslog server (http://www.symantec.com/docs/HOWTO27571)
You can also check the Administration guide found in the URL below for more info:
ftp://ftp.symantec.com/public/english_us_canada/products/symantec_endpoint_protection/11.0/manuals/
Hope that helps!!