killchain-compendium/misc/threat_intelligence/siem.md

485 B

Security Information and Event Management (SIEM)

  • Varonis

    • Threat detection
      • Investigation
      • Time to respond
      • Some other SIEM features:
    • Basic security monitoring
      • Advanced threat detection
      • Forensics & incident response
      • Log collection
      • Normalization
      • Notifications and alerts
      • Security incident detection
      • Threat response workflow