SIEM (Security Information and Event Management)
Also known as: Security Information and Event Management, SIEM platform
A security platform that collects and analyzes event data so teams can detect, investigate, document, and respond to threats.
Security Information and Event Management combines log collection, normalization, search, correlation, detection, investigation, case management, reporting, and response support. A SIEM is only as useful as the data it receives and the work built around it. Buyers should check data-source coverage, parsing, retention, evidence, detection quality, permissions, service ownership, and total operating cost rather than comparing feature labels alone.