Report cover image

IDC PeerScape: SIEM Practices for Enabling a Trusted Tool

Publisher IDC
Published Sep 30, 2022
Length 6 Pages
SKU # IDC17414699

Description

IDC PeerScape: SIEM Practices for Enabling a Trusted Tool

This IDC PeerScape discusses the security information and event management (SIEM) practices that enable a trusted tool."A SIEM is one of the most complex and costly tools in the security operations center," said Michelle Abraham, research director, Security and Trust at IDC. "It is incumbent upon security teams to maximize the detection and correlation capabilities of the SIEM in their differentiated environment by ingesting necessary log sources and tuning the rules to reduce noise while ensuring critical alerts are examined."

Please Note: Extended description available upon request.

Table of Contents

6 Pages
IDC PeerScape Figure
Executive Summary
Peer Insights
Practice 1: Know Your Log Source Options Before Choosing Your SIEM Vendor
Challenge
Example
Guidance
Practice 2: Understand the Care and Feeding Required to Maintain the SIEM
Challenge
Example
Guidance
Practice 3: Adjust the SIEM to Your Environment by Tweaking Detections as Needed
Challenge
Example
Guidance
Practice 4: Squeeze the Value Out of the SIEM by Using Its Full Capabilities
Challenge
Example
Guidance
How Do Licenses Work?
Head shot

Questions or Comments?

Our team has the ability to search within reports to verify it suits your needs. We can also help maximize your budget by finding sections of reports you can purchase.