<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://cio-wiki.org//index.php?action=history&amp;feed=atom&amp;title=Security_Information_Management_%28SIM%29</id>
	<title>Security Information Management (SIM) - Revision history</title>
	<link rel="self" type="application/atom+xml" href="https://cio-wiki.org//index.php?action=history&amp;feed=atom&amp;title=Security_Information_Management_%28SIM%29"/>
	<link rel="alternate" type="text/html" href="https://cio-wiki.org//index.php?title=Security_Information_Management_(SIM)&amp;action=history"/>
	<updated>2026-06-03T23:34:19Z</updated>
	<subtitle>Revision history for this page on the wiki</subtitle>
	<generator>MediaWiki 1.35.1</generator>
	<entry>
		<id>https://cio-wiki.org//index.php?title=Security_Information_Management_(SIM)&amp;diff=7675&amp;oldid=prev</id>
		<title>User: The LinkTitles extension automatically added links to existing pages (https://github.com/bovender/LinkTitles).</title>
		<link rel="alternate" type="text/html" href="https://cio-wiki.org//index.php?title=Security_Information_Management_(SIM)&amp;diff=7675&amp;oldid=prev"/>
		<updated>2021-02-06T18:13:47Z</updated>

		<summary type="html">&lt;p&gt;The LinkTitles extension automatically added links to existing pages (https://github.com/bovender/LinkTitles).&lt;/p&gt;
&lt;table class=&quot;diff diff-contentalign-left diff-editfont-monospace&quot; data-mw=&quot;interface&quot;&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;tr class=&quot;diff-title&quot; lang=&quot;en&quot;&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;← Older revision&lt;/td&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;Revision as of 18:13, 6 February 2021&lt;/td&gt;
				&lt;/tr&gt;&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot; id=&quot;mw-diff-left-l1&quot; &gt;Line 1:&lt;/td&gt;
&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 1:&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;−&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #ffe49c; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;'''Security Information Management (SIM)''' is a series of processes through which data from computer event and activity logs is compiled, monitored, and analyzed. SIM refers specifically to the part of this process having to do with historical log analysis and reporting, while Security Event Management (SEM) refers to the real-time activities involved in gathering and analyzing logs. Together, these processes form a complete Security Information and Event Management (SIEM) solution.&amp;lt;ref&amp;gt;Definition - What is Security Information Management (SIM)? [https://www.solarwinds.com/security-event-manager/use-cases/sim-security-information-management Solarwinds]&amp;lt;/ref&amp;gt; Security information management (SIM) is an information security industry term for the collection of data such as log files into a central repository for trend analysis.&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;'''Security Information &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;[[&lt;/ins&gt;Management&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;]] &lt;/ins&gt;(SIM)''' is a series of processes through which &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;[[&lt;/ins&gt;data&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;]] &lt;/ins&gt;from &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;[[&lt;/ins&gt;computer&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;]] &lt;/ins&gt;event and activity logs is compiled, monitored, and analyzed. SIM refers specifically to the part of this &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;[[&lt;/ins&gt;process&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;]] &lt;/ins&gt;having to do with historical log analysis and reporting, while &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;[[&lt;/ins&gt;Security Event Management (SEM)&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;]] &lt;/ins&gt;refers to the real-time activities involved in gathering and analyzing logs. Together, these processes form a complete Security Information and Event Management (SIEM) solution.&amp;lt;ref&amp;gt;Definition - What is Security &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;[[&lt;/ins&gt;Information Management&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;]] &lt;/ins&gt;(SIM)? [https://www.solarwinds.com/security-event-manager/use-cases/sim-security-information-management Solarwinds]&amp;lt;/ref&amp;gt; Security information management (SIM) is an information security &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;[[&lt;/ins&gt;industry&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;]] &lt;/ins&gt;term for the collection of data such as log files into a central repository for trend analysis.&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;Security information management systems may:&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;Security information management systems may:&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot; id=&quot;mw-diff-left-l10&quot; &gt;Line 10:&lt;/td&gt;
&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 10:&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;*Provide automated incidence response.&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;*Provide automated incidence response.&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;*Send alerts and generate reports.&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;*Send alerts and generate reports.&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;−&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #ffe49c; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;Commercial SIM products include ArcSight ESM, nFX's SIM One, Network Intelligence's enVision, Prism Microsystems' EventTracker, Trigeo, Symantec's Security Information Manager, Cisco Security MARS and Snare. Open source SIM products include OSSIM, a product of the Open Source Security Information Management initiative, and Prelude, from PreludeIDS.&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;Commercial SIM products include ArcSight ESM, nFX's SIM One, &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;[[&lt;/ins&gt;Network&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;]] &lt;/ins&gt;Intelligence's enVision, Prism Microsystems' EventTracker, Trigeo, Symantec's Security Information &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;[[&lt;/ins&gt;Manager&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;]]&lt;/ins&gt;, Cisco Security MARS and Snare. Open source SIM products include OSSIM, a &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;[[&lt;/ins&gt;product&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;]] &lt;/ins&gt;of the &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;[[&lt;/ins&gt;Open Source&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;]] &lt;/ins&gt;Security Information Management initiative, and Prelude, from PreludeIDS.&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;−&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #ffe49c; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;Although SIM products can automate many tasks around security information gathering and processing, they can't operate effectively without significant effort and investment on the part of the organization in question. According to Neil Roiter, Senior Technology Editor of Information Security magazine, &amp;quot;Security information and event management (SIEM) products are only as good as the policies and processes they support, and the analyst resources that a company can pour into them.&amp;quot;&amp;lt;ref&amp;gt;What is the Function of Security Information Management? [https://searchsecurity.techtarget.com/definition/security-information-management-SIM techtarget]&amp;lt;/ref&amp;gt;&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;Although SIM products can automate many tasks around security information gathering and processing, they can't operate effectively without significant effort and investment on the part of the &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;[[&lt;/ins&gt;organization&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;]] &lt;/ins&gt;in question. According to Neil Roiter, Senior Technology Editor of &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;[[&lt;/ins&gt;Information Security&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;]] &lt;/ins&gt;magazine, &amp;quot;Security information and event management (SIEM) products are only as good as the policies and processes they support, and the analyst resources that a company can pour into them.&amp;quot;&amp;lt;ref&amp;gt;What is the Function of Security Information Management? [https://searchsecurity.techtarget.com/definition/security-information-management-SIM techtarget]&amp;lt;/ref&amp;gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;

&lt;!-- diff cache key ciowiki:diff::1.12:old-6581:rev-7675 --&gt;
&lt;/table&gt;</summary>
		<author><name>User</name></author>
	</entry>
	<entry>
		<id>https://cio-wiki.org//index.php?title=Security_Information_Management_(SIM)&amp;diff=6581&amp;oldid=prev</id>
		<title>User at 14:56, 1 February 2021</title>
		<link rel="alternate" type="text/html" href="https://cio-wiki.org//index.php?title=Security_Information_Management_(SIM)&amp;diff=6581&amp;oldid=prev"/>
		<updated>2021-02-01T14:56:08Z</updated>

		<summary type="html">&lt;p&gt;&lt;/p&gt;
&lt;table class=&quot;diff diff-contentalign-left diff-editfont-monospace&quot; data-mw=&quot;interface&quot;&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;tr class=&quot;diff-title&quot; lang=&quot;en&quot;&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;← Older revision&lt;/td&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;Revision as of 14:56, 1 February 2021&lt;/td&gt;
				&lt;/tr&gt;&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot; id=&quot;mw-diff-left-l1&quot; &gt;Line 1:&lt;/td&gt;
&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 1:&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;−&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #ffe49c; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;'''Security &lt;del class=&quot;diffchange diffchange-inline&quot;&gt;event management &lt;/del&gt;(&lt;del class=&quot;diffchange diffchange-inline&quot;&gt;SEM&lt;/del&gt;)''' is the &lt;del class=&quot;diffchange diffchange-inline&quot;&gt;[[Process|&lt;/del&gt;process&lt;del class=&quot;diffchange diffchange-inline&quot;&gt;]] of identifying&lt;/del&gt;, gathering, &lt;del class=&quot;diffchange diffchange-inline&quot;&gt;monitoring &lt;/del&gt;and &lt;del class=&quot;diffchange diffchange-inline&quot;&gt;reporting &lt;/del&gt;security-&lt;del class=&quot;diffchange diffchange-inline&quot;&gt;related &lt;/del&gt;events in a &lt;del class=&quot;diffchange diffchange-inline&quot;&gt;[[Software|software]]&lt;/del&gt;, &lt;del class=&quot;diffchange diffchange-inline&quot;&gt;system or [[&lt;/del&gt;Information &lt;del class=&quot;diffchange diffchange-inline&quot;&gt;Technology (IT)|IT]] environment&lt;/del&gt;. &lt;del class=&quot;diffchange diffchange-inline&quot;&gt;SEM enables &lt;/del&gt;the &lt;del class=&quot;diffchange diffchange-inline&quot;&gt;recording &lt;/del&gt;and &lt;del class=&quot;diffchange diffchange-inline&quot;&gt;evaluation of events&lt;/del&gt;, and &lt;del class=&quot;diffchange diffchange-inline&quot;&gt;helps security or system administrators to analyze&lt;/del&gt;, &lt;del class=&quot;diffchange diffchange-inline&quot;&gt;adjust &lt;/del&gt;and &lt;del class=&quot;diffchange diffchange-inline&quot;&gt;manage &lt;/del&gt;the &lt;del class=&quot;diffchange diffchange-inline&quot;&gt;[[&lt;/del&gt;Information Security&lt;del class=&quot;diffchange diffchange-inline&quot;&gt;|&lt;/del&gt;information &lt;del class=&quot;diffchange diffchange-inline&quot;&gt;security]] architecture&lt;/del&gt;, &lt;del class=&quot;diffchange diffchange-inline&quot;&gt;policies &lt;/del&gt;and &lt;del class=&quot;diffchange diffchange-inline&quot;&gt;procedures&lt;/del&gt;.&amp;lt;ref&amp;gt;&lt;del class=&quot;diffchange diffchange-inline&quot;&gt;Definition - &lt;/del&gt;What is Security Information Management &lt;del class=&quot;diffchange diffchange-inline&quot;&gt;(SIM)&lt;/del&gt;? [https://&lt;del class=&quot;diffchange diffchange-inline&quot;&gt;www&lt;/del&gt;.&lt;del class=&quot;diffchange diffchange-inline&quot;&gt;techopedia&lt;/del&gt;.com/definition&lt;del class=&quot;diffchange diffchange-inline&quot;&gt;/25763&lt;/del&gt;/security-&lt;del class=&quot;diffchange diffchange-inline&quot;&gt;event&lt;/del&gt;-management &lt;del class=&quot;diffchange diffchange-inline&quot;&gt;Techopedia&lt;/del&gt;]&amp;lt;/ref&amp;gt;&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;'''Security &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;Information Management &lt;/ins&gt;(&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;SIM&lt;/ins&gt;)''' is &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;a series of processes through which data from computer event and activity logs is compiled, monitored, and analyzed. SIM refers specifically to &lt;/ins&gt;the &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;part of this &lt;/ins&gt;process &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;having to do with historical log analysis and reporting&lt;/ins&gt;, &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;while Security Event Management (SEM) refers to the real-time activities involved in &lt;/ins&gt;gathering &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;and analyzing logs. Together&lt;/ins&gt;, &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;these processes form a complete Security Information &lt;/ins&gt;and &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;Event Management (SIEM) solution.&amp;lt;ref&amp;gt;Definition - What is Security Information Management (SIM)? [https://www.solarwinds.com/security-event-manager/use-cases/sim-&lt;/ins&gt;security-&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;information-management Solarwinds]&amp;lt;/ref&amp;gt; Security information management (SIM) is an information security industry term for the collection of data such as log files into a central repository for trend analysis.&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt; &lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt; &lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt; &lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;Security information management systems may:&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt; &lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;*Monitor &lt;/ins&gt;events in &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;real time.&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt; &lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;*Display &lt;/ins&gt;a &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;real-time view of activity.&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt; &lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;*Translate event data from various sources into a common format, typically XML.&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt; &lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;*Aggregate data.&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt; &lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;*Correlate data from multiple sources.&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt; &lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;*Cross-correlate to help administrators discern between real threats and false positives.&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt; &lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;*Provide automated incidence response.&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt; &lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;*Send alerts and generate reports.&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt; &lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;Commercial SIM products include ArcSight ESM, nFX's SIM One, Network Intelligence's enVision, Prism Microsystems' EventTracker, Trigeo&lt;/ins&gt;, &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;Symantec's Security &lt;/ins&gt;Information &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;Manager, Cisco Security MARS and Snare&lt;/ins&gt;. &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;Open source SIM products include OSSIM, a product of &lt;/ins&gt;the &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;Open Source Security Information Management initiative, &lt;/ins&gt;and &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;Prelude&lt;/ins&gt;, &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;from PreludeIDS.&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt; &lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt; &lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt; &lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;Although SIM products can automate many tasks around security information gathering &lt;/ins&gt;and &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;processing&lt;/ins&gt;, &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;they can't operate effectively without significant effort &lt;/ins&gt;and &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;investment on the part of &lt;/ins&gt;the &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;organization in question. According to Neil Roiter, Senior Technology Editor of &lt;/ins&gt;Information Security &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;magazine, &amp;quot;Security &lt;/ins&gt;information &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;and event management (SIEM) products are only as good as the policies and processes they support&lt;/ins&gt;, and &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;the analyst resources that a company can pour into them&lt;/ins&gt;.&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;&amp;quot;&lt;/ins&gt;&amp;lt;ref&amp;gt;What is &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;the Function of &lt;/ins&gt;Security Information Management? [https://&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;searchsecurity&lt;/ins&gt;.&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;techtarget&lt;/ins&gt;.com/definition/security-&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;information&lt;/ins&gt;-management&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;-SIM techtarget&lt;/ins&gt;]&amp;lt;/ref&amp;gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;

&lt;!-- diff cache key ciowiki:diff::1.12:old-6579:rev-6581 --&gt;
&lt;/table&gt;</summary>
		<author><name>User</name></author>
	</entry>
	<entry>
		<id>https://cio-wiki.org//index.php?title=Security_Information_Management_(SIM)&amp;diff=6579&amp;oldid=prev</id>
		<title>User: Created page with &quot;'''Security event management (SEM)''' is the process of identifying, gathering, monitoring and reporting security-related events in a software, system...&quot;</title>
		<link rel="alternate" type="text/html" href="https://cio-wiki.org//index.php?title=Security_Information_Management_(SIM)&amp;diff=6579&amp;oldid=prev"/>
		<updated>2021-02-01T14:50:06Z</updated>

		<summary type="html">&lt;p&gt;Created page with &amp;quot;&amp;#039;&amp;#039;&amp;#039;Security event management (SEM)&amp;#039;&amp;#039;&amp;#039; is the &lt;a href=&quot;/wiki/Process&quot; title=&quot;Process&quot;&gt;process&lt;/a&gt; of identifying, gathering, monitoring and reporting security-related events in a &lt;a href=&quot;/wiki/Software&quot; title=&quot;Software&quot;&gt;software&lt;/a&gt;, system...&amp;quot;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;'''Security event management (SEM)''' is the [[Process|process]] of identifying, gathering, monitoring and reporting security-related events in a [[Software|software]], system or [[Information Technology (IT)|IT]] environment. SEM enables the recording and evaluation of events, and helps security or system administrators to analyze, adjust and manage the [[Information Security|information security]] architecture, policies and procedures.&amp;lt;ref&amp;gt;Definition - What is Security Information Management (SIM)? [https://www.techopedia.com/definition/25763/security-event-management Techopedia]&amp;lt;/ref&amp;gt;&lt;/div&gt;</summary>
		<author><name>User</name></author>
	</entry>
</feed>