Skip to content

Security Information and Event Management

What is Security Information and Event Management?

A platform that aggregates and analyzes security log data from across an organization's infrastructure to provide real-time threat detection and compliance reporting.

Information Security

Each of these is named in at least one of the same controls as security information and event management. The number is how many controls name both.

What the standards actually require on security information and event management

Requirements naming security information and event management across 6 standards, quoted from the control text.

Collects security-centric information for analysis to refine policies and warn of possible active attacks against enterprise assets.

SP800-207-SUP-SIEM · Security Information and Event Management (SIEM) System
ISMAP (Japan)1 control

ISMAP Cloud Operations covers the day-to-day security operations of cloud services. (1) Cloud Security Monitoring and Logging: 24x7 Security Operations Center (SOC) + SIEM Security Information and Event Management (Splunk + Microsoft Sentinel + IBM QRadar + Su...

ISMAP-CloudOperations-Monitoring-Logging-IncidentResponse-NISC-Reporting-Vulnerability-Change-SLA · ISMAP Cloud Operations - Security Monitoring + SIEM + Logging + Incident Response + NISC Reporting + Vulnerability Management + Penetration Testing + Change Management + SLA Management

Kuwait NCF Detect function. Security Monitoring and Logging: comprehensive logging (Identity + Network + Endpoint + Cloud + Application + Database + Privileged Access + Network Devices + Cloud Trail + Container + IoT/OT) + centralised log management + Security...

KNCF-Detect-Monitoring-SIEM-SOC-Threat-Intel-CTI-MITRE-ATT-CK-EDR-XDR-MDR-24-7-Continuous · Kuwait NCF Detect + Monitoring + SIEM + SOC + Threat Intel + EDR + XDR + 24/7

Lloyds MS11.7 Threat Detection and Security Monitoring - 24/7/365 Security Operations Centre (SOC) capability internal or via Managed Security Service Provider (MSSP) + Security Information and Event Management (SIEM) covering identity + network + endpoint + c...

LLOYDS-MS11-Threat-Detection-Security-Monitoring-Email-Phishing-Defences-MS11-7-12-SOC-EDR-XDR-SIEM · Lloyds MS11 Threat Detection + Security Monitoring + Email + Phishing + MS11.7-12
MARS-E1 control

Implement NIST 800-53 AU Audit and Accountability family + CM Configuration Management family + Information System Continuous Monitoring (ISCM) program per MARS-E v2.0.

MARS-E-Audit-Accountability-Continuous-Monitoring-AU-Family-CM-Family-SIEM-Log-Retention-IRS-Pub-1075 · MARS-E Audit + Accountability + Continuous Monitoring + AU + CM Families + SIEM + IRS Pub 1075

Questions people ask about security information and event management

What is Security Information and Event Management?
A platform that aggregates and analyzes security log data from across an organization's infrastructure to provide real-time threat detection and compliance reporting.
Why is Security Information and Event Management important for compliance?
Security Information and Event Management is a key concept in Information Security. Understanding security information and event management helps organizations meet regulatory requirements, reduce risk, and demonstrate due diligence during audits. Our compliance platform maps 686 frameworks with 311K cross-framework control mappings.
Which compliance frameworks address Security Information and Event Management?
Security Information and Event Management appears in the requirement text of NIST SP 800-207, ISMAP (Japan), Japan FSA Cybersecurity Guidelines for Financial Institutions, Kuwait National Cybersecurity Framework, Lloyd's Minimum Standards - Cyber Security. Across these standards we have identified 6 controls that name it directly, each linked to the control text on the compliance platform.
Where can I learn more about Security Information and Event Management?
Explore our compliance framework pages to see how security information and event management applies across different standards and regulations. Our implementation guides provide step-by-step guidance, and the compliance platform offers AI-powered analysis of how this concept maps across 686 frameworks.

See how Security Information and Event Management applies across compliance frameworks

Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.

Written and maintained by Gerard Blokdyk, The Art of Service.