The Ultimate Guide to Security Information and Event Management
A curated Irish edition of TechDay news, analysis, interviews, reviews, job moves, and related resources for Security Information and Event Management (SIEM).
What to know about Security Information and Event Management
Security Information and Event Management (SIEM) is a critical component in the cybersecurity landscape, combining real-time analysis of security alerts with centralized data collection to enable effective threat detection, incident response, and compliance management. As cyber threats grow increasingly sophisticated, SIEM platforms have evolved, integrating advanced analytics, artificial intelligence, and cloud capabilities to help organizations stay ahead of attacks.
This tag gathers stories highlighting the ongoing developments and challenges within the SIEM domain, including strategic considerations for security frameworks, innovative product launches, key acquisitions, and partnerships from notable vendors. Readers will find insights into how AI and machine learning are transforming SIEM functionalities, addressing skills shortages, and automating incident response to enhance security operations centers' efficiency.
Additionally, these articles explore the market dynamics of SIEM solutions, from emerging technologies and vendor comparisons to practical guidance on implementing, optimizing, and managing SIEM platforms. Whether you are an IT security professional seeking the latest trends or a business leader aiming to understand the role of SIEM in cyber risk management, this collection offers valuable perspectives to inform your cybersecurity strategy.
Analyst Insights
Research and market analysis connected to Security Information and Event Management
Jamf launches AI governance for Mac as usage rises
Jamf launches AI governance for Mac fleets in enterprises
Fortinet launches FortiSOC cloud security platform
Fortinet launches FortiSOC cloud security platform
Gigamon & Splunk join forces on federated telemetry
Featured News
Expert Columns
Interviews
Interviews and video coverage from the networkRecent Security Information and Event Management News
Sumo Logic unveils new AI tools for security teams
The new release aims to cut investigation time for security teams, with Sumo Logic claiming its own SOC reduced MTTR by 64%.
Proofpoint launches OEM programme for security vendors
Partners can now embed threat intelligence and exploit detection into their tools, as Proofpoint formalises years of OEM deals into a single programme.
Securonix expands SIEM with Sentinel & AI risk tools
Enterprises could cut SIEM data costs by up to 50% as the updated platform adds Microsoft Sentinel analytics and AI risk monitoring.
Exabeam adds behavioural analytics to Google Security
Organisations using Google Security Operations can now spot insider threats faster as Exabeam's behavioural analytics runs natively on Google Cloud.
Team Cymru launches Pure Signal Command for threat response
Security teams could cut incident response from hours to minutes as Team Cymru folds telemetry, investigation and AI access into one platform.
Cato partners with CrowdStrike on security workflow
Security teams will gain a single workflow for incidents as the new tie-up links network and endpoint telemetry across investigations, hunting and visibility.
ExtraHop launches Agentic SOC Alliance with 15 members
Security teams may gain a shared blueprint for autonomous operations as 15 vendors back a new alliance to standardise AI controls.
Approov expands attestation network to fight AI attacks
Broader coverage in Mexico and Milan aims to cut latency for mobile security checks as fake app traffic grows more sophisticated.
Dropzone AI signs QBS for exclusive EMEA channel deal
MSSPs across EMEA could cut alert backlogs as QBS Software adds Dropzone AI's autonomous SOC analyst to its partner network.
SOCRadar cuts threat query times with AlloyDB shift
Faster threat hunting and fewer manual database tasks are helping the cybersecurity firm cope with rising data volumes and alert fatigue.
Exabeam expands AI agent security tools with Claude
Security teams gain wider visibility into risky AI agent activity as Exabeam doubles behavioural detections and adds Claude telemetry.
Silent Push 6.0 adds AI workflows and unified cyber platform
Security teams can now query Silent Push data through Claude and ChatGPT after the platform added AI access, bulk enrichment and reorganised modules.
Klue breach lets attackers steal Salesforce CRM data
Trusted third-party access has let attackers quietly pull large volumes of Salesforce records from enterprise systems via a Klue integration.
GitGuardian launches endpoint protection for laptops
A single compromised laptop can expose thousands of live keys, according to GitGuardian's early field tests, as attacks shift to developer machines.
Imply launches Lumi Loglake to expand object storage search
Teams under pressure from AI-driven telemetry growth can now query logs in object storage without indexing, cutting storage and search costs.
Reco launches Claude security integration for enterprises
Security teams can now trace AI activity across employee and developer environments as Reco links Claude usage to permissions, keys and data paths.
Kaseya opens Intelligence platform to Claude, Copilot
IT teams will be able to use Claude and Microsoft Copilot for real-time Kaseya workflows, with general release due in 2027.
CrowdStrike extends Falcon AI Detection across key gateways
The integrations aim to close security gaps as more firms run AI in production across gateways, APIs and models.
Sumo Logic adds Claude compliance logging integration
Security teams can now track Claude use alongside other enterprise logs, helping firms meet compliance rules and investigate activity more easily.
Sumo Logic adds Claude compliance monitoring integration
It will let security teams fold Claude audit trails into existing monitoring, easing compliance checks as AI use spreads across enterprises.