To address issues related to privileged users identified in an IS audit, management implemented a security information and event management (SIEM) system. Which type of control is in place?
A SIEM system collects, aggregates, and analyzes security event data from various sources within an IT infrastructure. It then generates alerts or reports on potential security incidents or policy violations, allowing security teams to detect and investigate suspicious activities.
While a SIEM system can help identify and respond to security issues related to privileged users, its primary function is to detect and analyze security events rather than prevent them from occurring.
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Swallows
1 month, 1 week agoChangwha
12 months ago