|
+OPS-13.02B |
1. OverviewOPS-13.02BThe SIEM system is deployed within the cloud environment or externally and includes the following capabilities:1. Standardisation of log data; 2. Automated analysis to identify and correlate potential security incidents; 3. Capabilities to detect unusual behaviour and potential threats; 4. Real-time alerting to inform the incident response team of critical events; 5. Reporting to the incident response team in case new information relevant to an event becomes available; and 6. Automated response mechanisms for addressing security incidents.
1.1 References1.2 Identified Requirements1.2 Related Regulation2. Identified Requirements
3. Related Regulations
|