Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Apple’s original cloud photo sync service shuts down this summer

    May 30, 2023

    Cloud-based IT operations are on the rise

    May 26, 2023

    Twitter Is a Far-Right Social Network

    May 25, 2023
    Facebook Twitter Instagram
    Your Infotech
    • Data

      Are Your APIs Leaking Sensitive Data?

      May 23, 2023

      6 barriers to becoming a data-driven company

      May 18, 2023

      How to explain data meshes, fabrics, and clouds

      May 16, 2023

      Crypto Price Today: Bitcoin holds above $27,600, focus on US CPI data

      May 12, 2023

      How To Delete Your Data From ChatGPT

      May 10, 2023
    • Cloud

      Apple’s original cloud photo sync service shuts down this summer

      May 30, 2023

      Cloud-based IT operations are on the rise

      May 26, 2023

      Google Cloud upgrades with next-gen accelerator that embiggens its VMs

      May 24, 2023

      Dark cloud over ChatGPT revolution: the cost

      May 22, 2023

      Google Cloud launches A.I.-powered tools to accelerate drug discovery, precision medicine

      May 19, 2023
    • Networking

      Twitter Is a Far-Right Social Network

      May 25, 2023

      Meta Platforms scoops up AI networking chip team from Graphcore

      May 15, 2023

      What Is Bluesky? The Twitter Alternative With Promising Networking Technology

      April 24, 2023

      Enterprise networking sees age of SASE and network as a service

      April 19, 2023

      Computer Networks: Myths, Missteps, and Mysteries – Radia Perlman at QCon London

      April 11, 2023
    • Virtualization

      Imagination and Telechips drive automotive display diversity with hardware virtualization

      March 16, 2023

      Device virtualization is key to IoT adoption

      March 3, 2023

      Discover how virtualization can transform your business with this online training

      February 7, 2023

      Server Virtualization Software Market Next Big Thing | Major Giants IBM, Oracle, Microsoft

      February 2, 2023

      Global Data Virtualization Market Report 2022: Featuring Oracle, IBM, Cisco, Salesforce, Workday, Alteryx, Domo, Ceros, Cluvio & Qliktech International

      January 26, 2023
    • IT Infrastructure

      TCS+ | The need for speed: Braintree’s Heath Huxtable on modern IT infrastructure

      March 13, 2023

      The race to net zero: Six ways to slash IT infrastructure emissions

      March 10, 2023

      Vertiv and TechAccess partner to boost African IT infrastructure solutions

      February 28, 2023

      It Infrastructure Market Size 2023 Research Report with Technological Factors and Forecast till 2025

      February 21, 2023

      Geojit to build 1.25 lakh sq ft IT infrastructure in Infopark

      February 14, 2023
    Your Infotech
    Home»Virtualization»Microsoft Debuts as ‘Leader’ in New SIEM (Security) Research Report
    Virtualization

    Microsoft Debuts as ‘Leader’ in New SIEM (Security) Research Report

    yourinfotechBy yourinfotechNovember 4, 2022Updated:November 10, 2022No Comments4 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp VKontakte Email
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Microsoft didn’t make it into Gartner’s 2020 research report on Security Information and Event Management (SIEM) vendors, but in the new 2022 report it’s grouped in the “leaders” section and actually leads everyone on the “ability to execute” axis.

    That’s because the company’s SIEM offering, Microsft Sentinel, didn’t debut until late 2019 (as Azure Sentinel), though it did make the 2021 report as a “visionary” offering in the research firm’s famed “Magic Quadrant” report format that also includes “challengers” and “niche players.”

    Here’s how Gartner describes SIEM:

    SIEM aggregates the event data that is produced by monitoring, assessment, detection and response solutions deployed across application, network, endpoint and cloud environments. Capabilities include threat detection, through correlation and user and entity behavior analytics (UEBA), and response integrations commonly managed through security orchestration, automation and response (SOAR). Security reporting and continuously updated threat content through threat intelligence platform (TIP) functionality are also common integrations. Although SIEM is primarily deployed as a cloud-based service, it may support on-premises deployment.

    Microsoft rode the success of Microsoft Sentinel to join four other vendors who were also named leaders last year (IBM, Splunk, Securonix and Exabeam), while two vendors (LogRhythm and Rapid7) dropped out of the leaders box and into the challengers quadrant.

    “Microsoft is a Leader in this Magic Quadrant,” the report said. “Its SIEM product, Microsoft Sentinel, is delivered only as SaaS via Microsoft’s Azure data centers. Microsoft has a large and diverse customer base, catering for large and small customers alike, and offering the SIEM product in multiple settings internationally. Licensing is based on the volume of data ingested, via reserved capacity, or pay-as-you-go. However, many of the Microsoft enterprise tiers for Microsoft 365 include credit for Sentinel and Defender usage. Enhanced data storage, complementary Microsoft ecosystem capabilities (such as Defender for Endpoint and Defender for IoT) are available at extra cost.”

    Sentinel’s strengths were listed as a rich ecosystem of highly integrated security products, a fast-developing roadmap and tiered/hybrid operations. On the flip side, Gartner issued cautions about the company’s difficult-to-understand pricing, potential for vendor lock-in and limited out-of-box content.

    In a market overview, Gartner said, “The SIEM market is maturing at a rapid pace and continues to be extremely competitive. The reality of what SIEM was just five years ago is starting to detach from what SIEM is and provides today.

    “SIEM is now widely supporting exposure management capabilities by leveraging data points such as configuration status of cloud assets, risk profiling across users and entities, asset inventory and criticality rating, with the purpose of delivering a real time risk posture. This combination of use cases helps security and risk management (SRM) leaders build a compelling business case for purchasing based on outcome-delivered metrics, which can answer questions from the business about what value a SIEM will deliver rather than focusing on how much it costs.”

    The firm also said the SIEM market has been moving toward a feature-rich security solution to offer clients numerous options to address their security needs, including:

    Threat detection:
    Real-time analytics
    Batch analytics
    Data science algorithms
    User- and entity-based analytics
    Response:
    SOAR
    Incident management
    Collaboration
    Exposure management:
    Asset details (criticality, grouping, location, patch status, etc.)
    User details (criticality, peer grouping, business unit, role, incident history, etc.)
    Configuration posture (cloud asset configuration, GPO settings, etc.)
    Poly-cloud visibility and unified exposure understanding
    Threat detection framework alignment
    Compliance:
    Reporting
    Continuous monitoring requirements
    Audits
    Security system of record
    Along with that movement, Gartner noted that, in seeking easier deployments, scalability and flexibility, the most prominent deployment architecture is no longer client-hosted and managed, but rather as cloud-native Software-as-a-Service (SaaS) or cloud-delivered (hosted). As the market evolves, other solutions will compete with SIEM, such as extended detection and response (XDR), which targets organizations with a less mature security operations posture, or are unable to run a complex SIEM solution.

    “SIEM vendors have already begun to invest in (or acquire) telemetry collection solutions to deliver a prebuilt ecosystem of security technologies for buyers who are looking for an encapsulated security solution,” Gartner said. “One that delivers threat detection, security log retention, compliance reporting, behavioral analytics, automation, investigation and response actions. SIEM, UEBA, SOAR, TIP, EDR, NDR and cloud security solutions in a packaged offering are already on the market, and the expectation is that this trend will continue to grow.

    “This aligns to the concept of the cybersecurity mesh and a composable security architecture. However, it is unrealistic to expect that every organization will want a single vendor to provide its entire security stack, which will allow the vendor choice option to persist well into the future.”

    Gartner cautioned that its report should only be used as one tool in an organization’s broader effort to evaluate SIEM vendors.

    While the research firm typically charges for such reports, licensed-for-distribution versions can usually be accessed for free from vendors who were covered, easily found with a quick web search.

    Share. Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp Email
    Previous ArticleWhat is a network router?
    Next Article Oracle Cloud Native Environment 1.5.7 highlights Kubernetes
    yourinfotech
    • Website

    Related Posts

    Imagination and Telechips drive automotive display diversity with hardware virtualization

    March 16, 2023

    Device virtualization is key to IoT adoption

    March 3, 2023

    Discover how virtualization can transform your business with this online training

    February 7, 2023

    Server Virtualization Software Market Next Big Thing | Major Giants IBM, Oracle, Microsoft

    February 2, 2023

    Leave A Reply Cancel Reply

    Our Picks

    Subscribe to Updates

    Get the latest creative news from Your Infotech about Information Technology.

    About Us
    About Us

    We provide a wide range of customized, integrated B2B and B2C digital marketing services solutions that are ideal for your business.

    We're accepting new partnerships right now.

    Email Us: info@yourmartech.com
    Contact: +1-530-518-1420

    Our Brands
    • Your Martech
    • Your HR Tech
    • Your Fin Tech
    • Your Revenue
    • Your Bio Tech
    • Your POS Tech
    • Your Health Tech
    SUBSCRIBE NOW
    Loading
    LinkedIn
    • Privacy Policy
    © 2023 Vigarbiz Inc. Designed by Vigarbiz Media.

    Type above and press Enter to search. Press Esc to cancel.