SIEM (Security Information and Event Management)
A SIEM aggregates security-relevant logs from the entire IT landscape and correlates them into detection use cases. Market leaders: Microsoft Sentinel, Splunk, IBM QRadar, Elastic Security. Core functions: log ingestion, normalised schemas, alert rules, dashboards, compliance reporting.