Problem Statement
Which statement best describes the role of a Security Information and Event Management (SIEM) system?
Explanation
A SIEM system aggregates logs and events from firewalls, servers, endpoints, applications, and network devices. It normalises and correlates data, applies rules or machine-learning models, and alerts analysts to potential incidents. It’s central to monitoring and response operations in many modern organisations and shows interviewers you understand how operational security works at scale.
