← Cybersecurity Alphabet Soup

SIEM

Security Information and Event Management

operationsmedium

A SIEM collects and correlates logs and events from across an organization's systems into one searchable platform. No human can watch thousands of log sources manually, so SOC analysts use the SIEM to spot patterns that indicate attacks, investigate incidents, and meet compliance logging requirements.

Sources

More in operations

Go deeper