Skip to content

Security Information and Event Management (SIEM)

Nick M edited this page Feb 14, 2021 · 2 revisions

SIEM Process

SIEM is essentially the collection of data, aggregating, analysis for threats, and finding & alerting of incidents.

"Security Information and Event Management (SIEM) is a software solution that aggregates and analyzes activity from many different resources across your entire IT infrastructure."

"SIEM collects security data from network devices, servers, domain controllers, and more. SIEM stores, normalizes, aggregates, and applies analytics to that data to discover trends, detect threats, and enable organizations to investigate any alerts."

Clone this wiki locally