Security information and event management

Understanding what's going on inside your network is the key element to securing it and ensuring continued surveillance. Managing the data feed coming from servers as well as security devices on activity and the use of these available services is key to providing this security. SIEM is a tool which aggregates incoming information from network sensors such as IPS, IDS, Honeypot, firewalls, or anything which can detect security events and feed information to the SIEM tool. SIEM provides you with the current state of your network and offers a 360-degree view of the IT environment. The correlation with log events makes it possible to view what is going on in your network, and including this feature means ...

Get Practical Network Scanning now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.