Log management and SIEM are not really spoken about by those outside of security and understood even less. I guess one of the reasons is that unless there are a relatively large number of logs to go through (or there is actually have an interest in doing so) most people will not really do much about it. Hence why I’ve been asked often to explain what a SIEM is, how it differs from Log Management etc. I won’t go into too many details and split hairs, so for the purposes of a high level view on log management, I present to you this video.

