SIEM Flashcards
1
Q
What are the main SIEM capabilities?
A
- Data aggregation
- Correlation
- Alerting
- Dashboards
- Compliance
- Retention
- Forensics analysis
2
Q
Can you name three SIEM products?
A
HP’s ArcSight
Splunk
IBM’s Tivoli
Tools from LogLogic
Symantec’s security information manager