July 30, 2010

Security Information Management - What is it?

Definitions of Security Information Management (SIM) by leading users and experts, including definitions of Security Event Management (SEM) and Security Information and Event Management (SIEM). A great starting point to learn about SIM.

How To Prepare For a Security Information and Event Management Deployment
"[A SIEM system] takes input logs and alerts from a range of systems (firewalls, routers, anti-malware, servers, etc) and informs IT teams of unusual occurrences which warrant further investigation. As well as collecting and storing this raw log data, the system safeguards the data for subsequent audit needs and for compliance-aligned reporting. This same source data satisfies multiple needs and functions, in that the security team will use it to see if any breaches have occurred; the IT team will check to see if network devices are working correctly; the compliance team will check to see that security breaches have not occurred, and so on."
Jason Holloway, Help Net Security

Magic Quadrant for Security Information and Event Management
"SIM provides reporting and analysis of data primarily from host systems and applications, and secondarily from security devices to support security policy compliance management, internal threat management and regulatory compliance initiatives. SIM can be used to support the activities of the IT security, internal audit and compliance organizations."
Gartner

SIM (Security information management)
"Security information-management (SIM) products (also referred to as Security Event Management wares) automate the manual process of collecting security-specific event-log data from file systems, security appliances and other network devices. The latter include firewalls, proxy servers, intrusion-detection systems, intrusion-prevention systems, routers and switches, and antispam, antivirus and antispyware software. SIM has data-aggregation and network event-correlation features similar to those found in network management software."
Network World

« 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | next »

New! Download the Campus Network Security Reports