Audience
Companies from various business spheres and G-sector clients of different size and structure
About SearchInform SIEM
SearchInform SIEM is a system for collecting and analyzing real-time security events, identifying information security incidents and responding to them. The system accumulates information from various sources, analyzes it, records incidents and alerts the designated staff.
How the system works:
•Collects events from various software and hardware sources: network equipment, third-party software, security tools, OS.
•Analyses events and generates incidents in accordance with the rules, detects threats by identifying relationships (correlations, including cross-correlations) of events and/or incidents.
•Automatically notifies employees in charge when incidents occur.
•Normalises and details incidents for further investigation: determines the type and source of the incident, when integrated with AD – identifies the user.
The solution provides 300+ ready-made rules – security policies. What's more, users can edit and customize existing rules and create their own policies.