When implementing a SIEM tool there are a number of tick boxes that must be met to ensure a successful, scalable, solution.
There are a number of SIEM vendors in the market, below is an alphabetical list of the larger vendors that have a broad range of installed base.
Tip #1 – Ask your potential vendor if they are a SIM, SEM or SIEM solution, you most likely want a full SIEM solution even if you end up using one part more than the other.
Security Information Management (SIM) is often referred to as the dumb portion of SIEM, and is typically a Log Management solution. Log management solutions will collect logs from different log sources at high volumes and store them for future reference.
Security Information Event Management is normally referred to as SIEM and is typically a collection of two technologies, Security Information Management (SIM) and Security Event Management (SEM).