About This Document
This guide provides detailed information on FortiSIEM, a comprehensive Security Information and Event Management (SIEM) solution. It covers various aspects of the product, from initial setup and configuration to advanced operational tasks and analytics.
Key Features and Concepts
Explore the core functionalities of FortiSIEM, including:
- Scale-Out Architecture and Multi-tenancy
- Infrastructure Discovery and Automated CMDB
- High Performance Log Collection and Flexible Parsing
- Performance and Availability Monitoring
- Network Configuration and File Integrity Monitoring
- User Identity and Location Tracking
- External Threat Intelligence Integration
- Distributed Event Correlation and Threat Detection
- Device and User Risk Scoring
- Incident Response and Mitigation
- Advanced Analytics and Reporting
Getting Started and Advanced Operations
Learn how to effectively deploy and manage FortiSIEM. This document guides users through:
- Installation and initial setup
- Configuring collectors and agents
- Managing devices, applications, and users
- Creating and customizing reports and dashboards
- Utilizing advanced features like threat hunting and malware analysis
Resources
For further assistance and resources, please refer to: