SIEM
Security Information and Event Management
SIEM platforms collect and correlate log data from across an organization's IT environment to detect threats in real time. They aggregate events from firewalls, endpoints, servers, and applications into a single pane of glass.
Como é usado em cibersegurança
Cybersecurity analysts write correlation rules and monitor SIEM dashboards to spot suspicious activity. SOC teams use SIEM alerts to triage potential incidents and begin investigation workflows. Security engineers tune detection logic to reduce false positives and improve mean time to detect.
Termo relacionado no glossário: siem
As definições são explicações originais escritas para fins de desenvolvimento profissional. Para definições técnicas autoritativas, consulte NIST, ISO ou o órgão de normalização correspondente.