Javascript must be enabled to continue!
Open source SIEM solutions for an enterprise
View through CrossRef
Purpose
The security of applications, systems and networks has always been the source of great concern for both enterprises and common users. Different security tools like intrusion detection system/intrusion prevention system and firewalls are available that provide preventive security to the enterprise networks. However, security information and event management (SIEM) systems use these tools in combination to collect events from diverse data sources across the network. SIEM is a proactive tool that processes the events to present a unified security view of the whole network at one location. SIEM system has, therefore, become an essential component of an enterprise network security architecture. However, from various options available, the selection of a suitable and cost-effective open source SIEM solution that can effectively meet most of the security requirements of small-to-medium-sized enterprises (SMEs) is not simple because of the lack of strong analysis.
Design/methodology/approach
In this work, the authors first review the security challenges faced by different SME sectors and then consider a comprehensive comparative analysis of the capabilities of well-known open source SIEM solutions. Based on this, the authors provide requirements based recommendations of open source SIEM solutions for SMEs. This paper aims to provide a valuable resource that can be referred to by SMEs for the selection of a SIEM system best suited to their organization’s security posture.
Findings
Security requirements of SMEs vary according to their network infrastructure; therefore, every open source SIEM solution would not be suitable for an SME. Selection of a SIEM solution from available open source solutions based upon the security requirements of an SME network is a critical task. Therefore, in this work, a meaningful insight for the selection of an appropriate SIEM solution for SMEs is provided.
Originality/value
Major contribution of this work is the mapping of the security requirements of the SME sectors under consideration, against the open source SIEM options to provide meaningful insight for SMEs in the selection of an appropriate solution.
Title: Open source SIEM solutions for an enterprise
Description:
Purpose
The security of applications, systems and networks has always been the source of great concern for both enterprises and common users.
Different security tools like intrusion detection system/intrusion prevention system and firewalls are available that provide preventive security to the enterprise networks.
However, security information and event management (SIEM) systems use these tools in combination to collect events from diverse data sources across the network.
SIEM is a proactive tool that processes the events to present a unified security view of the whole network at one location.
SIEM system has, therefore, become an essential component of an enterprise network security architecture.
However, from various options available, the selection of a suitable and cost-effective open source SIEM solution that can effectively meet most of the security requirements of small-to-medium-sized enterprises (SMEs) is not simple because of the lack of strong analysis.
Design/methodology/approach
In this work, the authors first review the security challenges faced by different SME sectors and then consider a comprehensive comparative analysis of the capabilities of well-known open source SIEM solutions.
Based on this, the authors provide requirements based recommendations of open source SIEM solutions for SMEs.
This paper aims to provide a valuable resource that can be referred to by SMEs for the selection of a SIEM system best suited to their organization’s security posture.
Findings
Security requirements of SMEs vary according to their network infrastructure; therefore, every open source SIEM solution would not be suitable for an SME.
Selection of a SIEM solution from available open source solutions based upon the security requirements of an SME network is a critical task.
Therefore, in this work, a meaningful insight for the selection of an appropriate SIEM solution for SMEs is provided.
Originality/value
Major contribution of this work is the mapping of the security requirements of the SME sectors under consideration, against the open source SIEM options to provide meaningful insight for SMEs in the selection of an appropriate solution.
Related Results
Productivity Measure in Using Enterprise Resource Planning System in Selected Companies in Beijing, China
Productivity Measure in Using Enterprise Resource Planning System in Selected Companies in Beijing, China
With the globalization of economic development and social development, the business environment of enterprises has changed. Only by continuously improving the digital level and man...
Integrating Security Information and Event Management (SIEM) with Data Lakes and AI: Enhancing Threat Detection and Response
Integrating Security Information and Event Management (SIEM) with Data Lakes and AI: Enhancing Threat Detection and Response
The evolving threat landscape in cybersecurity necessitates more advanced and efficient solutions for threat detection and response. Traditional Security Information and Event Mana...
CORPORATE CULTURE AS AN ELEMENT OF THE STRATEGIC MANAGEMENT SYSTEM OF A MACHINE-BUILDING ENTERPRISE
CORPORATE CULTURE AS AN ELEMENT OF THE STRATEGIC MANAGEMENT SYSTEM OF A MACHINE-BUILDING ENTERPRISE
The purpose of the article. The article analyzes the corporate culture as one of the tools with which you can effectively manage the personnel of the enterprise. The structure of c...
Integrating Next-Generation SIEM with Data Lakes and AI: Advancing Threat Detection and Response
Integrating Next-Generation SIEM with Data Lakes and AI: Advancing Threat Detection and Response
The article focuses on how Next-Gen SIEM can be extended with Data Lakes and AI to improve threat detection and response in current threat landscapes. Conventional SIEM tools have ...
Extended‐enterprise systems' impact on enterprise risk management
Extended‐enterprise systems' impact on enterprise risk management
Purpose – This article aims to focus on raising awareness of the limitations of traditional “enterprise‐centric” views of enterprise risk management that ignore the risks that are ...
KOREAN TOURIST BEHAVIORS AND TOURIST ACCOMMODATION IN SIEM REAP, CAMBODIA
KOREAN TOURIST BEHAVIORS AND TOURIST ACCOMMODATION IN SIEM REAP, CAMBODIA
The aim of this research is to study role of Korean tourist in tourism sector in Cambodia. World heritage, Angkor is a marvel that a lot of international tourists would like to vis...
Information systems in support of the mechanism of strategic planning of enterprise development
Information systems in support of the mechanism of strategic planning of enterprise development
The article is devoted to consideration of the issue of technologies and information systems in support of the strategic planning mechanism of enterprise development. The work reve...
Optimization Analysis for Innovative Inputs under the Objective Discrepancy between Government and Enterprise
Optimization Analysis for Innovative Inputs under the Objective Discrepancy between Government and Enterprise
Aiming at the improvement of innovation efficiency after enterprise obtaining subsidies, this paper constructs two-stage innovation benefit model about research and development (R&...

