Security Information and Event Management

Overview#

Security Information and Event Management (SIEM) and the related Security Event Manager (SEM) and Security Information Management (SIM) are computer security disciplines that use data inspection tools to centralize the storage and interpretation of logging files or events generated by other applications running on a network.

The typical organization's security implementation is capable of generating an exorbitant amount of data and Big data technologies are often implemented.

Detecting failed authentication events for the same Digital Identity multiple IDM enable systems in any environment is a daunting task. The Security Information and Event Management products provide a solution to this problem.

The typical system will aggregate and correlate logging, Auditing allowing IT security to prioritize security Incidents. The goal of the Security Information and Event Management products is to allow security pros to detect and react more quickly to Item of Interest

Security Information and Event Management products also help to help with transaction integrity, specifically around fraud prevention and enterprise applications. Some Security Information and Event Management integrate with existing third-party fraud prevention tools and based on models of risk activity, monitor transactions for fraudulent patterns. Similarly, Security Information and Event Management vendors are writing connectors to enterprise applications such as SAP, Oracle and various flavors of CRM to begin watching those types of transactions.

Capabilities/Components#

There might be more information for this subject on one of the following: