Got it

What is SIEM?

Created: Aug 13, 2021 08:51:55Latest reply: Sep 24, 2021 11:07:28 721 9 1 0 0
  HiCoins as reward: 0 (problem unresolved)

Hi team,

What is Security Information and Event Management (SIEM)? Thank you.

Featured Answers

Recommended answer

little_fish
Admin Created Aug 13, 2021 08:54:54

Dear Phany,

SIEM is an umbrella term for security software packages ranging from Log Management Systems to Security Log / Event Management, Security Information Management, and Security Event correlation. More often than not these features are combined for a 360-degree view.

SIEM


While a SIEM system isn’t foolproof, it’s one of the key indicators that an organization has a clearly defined cybersecurity policy. Nine times out of ten, cyber attacks don’t have any clear tells on a surface level. To detect threats, it’s more effective to use the log files. The superior log management capabilities of SIEMs have made them a central hub of network transparency.


Most security programs operate on a micro-scale, addressing smaller threats but missing the bigger picture of cyber threats. An Intrusion Detection System (IDS) alone can seldom do more than monitor packets and IP addresses. Likewise, your service logs only show user sessions and configuration changes. SIEM puts these systems and others like it together to provide a complete overview of any security incident through real-time monitoring and the analysis of event logs.


Thanks.

View more
  • x
  • convention:

Abdussamed
Abdussamed Created Aug 13, 2021 08:55:42 (0) (0)
Wow,
very fast answer!  
Phany
Phany Created Aug 13, 2021 08:56:42 (0) (0)
 
PanchakS
PanchakS Created Sep 24, 2021 11:07:14 (0) (0)
 
All Answers

Dear Phany,

SIEM is an umbrella term for security software packages ranging from Log Management Systems to Security Log / Event Management, Security Information Management, and Security Event correlation. More often than not these features are combined for a 360-degree view.

SIEM


While a SIEM system isn’t foolproof, it’s one of the key indicators that an organization has a clearly defined cybersecurity policy. Nine times out of ten, cyber attacks don’t have any clear tells on a surface level. To detect threats, it’s more effective to use the log files. The superior log management capabilities of SIEMs have made them a central hub of network transparency.


Most security programs operate on a micro-scale, addressing smaller threats but missing the bigger picture of cyber threats. An Intrusion Detection System (IDS) alone can seldom do more than monitor packets and IP addresses. Likewise, your service logs only show user sessions and configuration changes. SIEM puts these systems and others like it together to provide a complete overview of any security incident through real-time monitoring and the analysis of event logs.


Thanks.

View more
  • x
  • convention:

Abdussamed
Abdussamed Created Aug 13, 2021 08:55:42 (0) (0)
Wow,
very fast answer!  
Phany
Phany Created Aug 13, 2021 08:56:42 (0) (0)
 
PanchakS
PanchakS Created Sep 24, 2021 11:07:14 (0) (0)
 
Dear @Phany ,

Huawei HiSec Insight Security Situation Awareness System defends against an Advanced Persistent Threat (APT) attacks by utilizing technologies such as Big Data analytics and machine learning. To guard key information assets, the system accurately identifies and defends against APT attacks. It can restore the kill chain of an APT by extracting key information from mass data, assessing risks in multiple dimensions, and correlating isolated anomalies based on Big Data analytics.

You can see HiSec Insight Reviews at
https://www.gartner.com/reviews/market/security-information-event-management/vendor/huawei/product/hisec-insight/ratings

Hope this information is useful.

Warmest Regards,
Suryadi
View more
  • x
  • convention:

PanchakS
PanchakS Created Sep 24, 2021 11:07:21 (0) (0)
 
Hi friend!
Security information and event management (SIEM) is an approach to security management that combines SIM (security information management) and SEM (security event management) functions into one security management system. The acronym SIEM is pronounced "sim" with a silent e.

The underlying principles of every SIEM system is to aggregate relevant data from multiple sources, identify deviations from the norm and take appropriate action. For example, when a potential issue is detected, a SIEM system might log additional information, generate an alert and instruct other security controls to stop an activity's progress.


Thanks!
View more
  • x
  • convention:

user_4397771
user_4397771 Created Sep 24, 2021 11:09:28 (0) (0)
good  
cool
View more
  • x
  • convention:

Comment

You need to log in to comment to the post Login | Register
Comment

Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " User Agreement."

My Followers

Login and enjoy all the member benefits

Login

Block
Are you sure to block this user?
Users on your blacklist cannot comment on your post,cannot mention you, cannot send you private messages.
Reminder
Please bind your phone number to obtain invitation bonus.