|
+OPS-13.02B |
1. ÜbersichtOPS-13.02BThe SIEM system is deployed within the cloud environment or externally and includes the following capabilities:1. Standardisation of log data; 2. Automated analysis to identify and correlate potential security incidents; 3. Capabilities to detect unusual behaviour and potential threats; 4. Real-time alerting to inform the incident response team of critical events; 5. Reporting to the incident response team in case new information relevant to an event becomes available; and 6. Automated response mechanisms for addressing security incidents.
1.1 Referenzen1.2 Identifizierte Anforderungen1.2 Related Regulation2. Identifizierte Anforderungen
3. Related Regulations
|