HP ArcSight ESM is the brain of the ArcSight SIEM platform. It analyzes and correlates every event that occurs across the organization – every login, logoff, file access, database query, etc. – to deliver accurate prioritization of security risks and compliance violations. The powerful correlation engine of ArcSight ESM sifts through millions of log records to find the critical incidents that matter. These incidents are then presented through real-time dashboards, notifications or reports to the security administrator.
- Security Incident Graphics
- Security Incident Detection
- SIEM Analysis and Reporting
- Security Incident Management
- Security Event Correlation Rules
- Asset Attributes for Security Monitoring