SIEM "Security Information and Event Management"

No ratings

Presented at SecurityZone 2012 by

"Technology convergence, different modes of transmission and access to the medium etc., requires information security professionals with advanced analytical skills, who are able to respond and control, identify, and document multiple incidents that are present on the network infrastructure. A SIEM solution can identify information security events that are difficult to detect. A very important objective for an information security professional using a SIEM solution is to reduce the false negatives that you'l find on a daily basis. It's very important for the SIEM solutions to include items that are essenstial to security monitoring: Device discovery, vulnerability evaluation, threat detection, and behavior monitoring."