Published July 12, 2021 | Version v1
Journal article Open

Security Information and Event Management (SIEM): Analysis, Trends, and Usage in Critical Infrastructures

Description

Security Information and Event Management (SIEM) systems have been widely deployed as a powerful tool to prevent, detect, and react against cyber-attacks. SIEM solutions have evolved to become comprehensive systems that provide a wide visibility to identify areas of high risks and proactively focus on mitigation strategies aiming at reducing costs and time for incident response. Currently, SIEM systems and related solutions are slowly converging with big data analytics tools. We survey the most widely used SIEMs regarding their critical functionality and provide an analysis of external factors affecting the SIEM landscape in mid and long-term. A list of potential enhancements for the next generation of SIEMs is provided as part of the review of existing solutions as well as an analysis on their benefits and usage in critical infrastructures.

Files

sensors-21-04759-v2.pdf

Files (414.7 kB)

Name Size Download all
md5:e72f5ec0c126c5cd3d8853d7deba3866
414.7 kB Preview Download

Additional details

Funding

Cyber-MAR – Cyber preparedness actions for a holistic approach and awareness raising in the MARitime logistics supply chain 833389
European Commission