21 October, 2019
The SIEM Health Check service consists of a comprehensive analysis of the current state of the implementation of the client’s SIEM solution. The service is vendor agnostic – it can be applied to any SIEM product. As part of the service, a set of dedicated checks is performed.
Checks are grouped into following areas:
The purpose of the SIEM Health Check service is to provide knowledge about the quality of the existing implementation of SIEM system and help to understand what areas are to be improved.
Specifically, the service covers following aspects:
As a result of the service a comprehensive report is provided consisting the summary of performed checks, conclusions and recommendations.
The goal of these checks is to assess of the current architecture of the SIEM system. Specifically, checks include the analysis of:
The goal of these checks is to assess the completeness and quality of data sources currently connected to the SIEM. Specifically, checks include:
The goal of these checks is to assess to quality of the functional configuration of the SIEM. Specifically, checks include:
The goal of these checks is to assess the operational usefulness of the current state of SIEM and the license usage. Specifically, checks include:
Daniela Geretshuber
Member of the Board and People and Corporate Sustainability Leader, PwC Germany