CYBERSECURITY GLOSSARY Malware and viruses CYBERSECURITY GLOSSARY Attacks and techniques CYBERSECURITY GLOSSARY Detection and response CYBERSECURITY GLOSSARY Identity and access CYBERSECURITY GLOSSARY Cloud and infrastructure CYBERSECURITY GLOSSARY Compliance and management CYBERSECURITY GLOSSARY Continuity and metrics CYBERSECURITY GLOSSARY Privacy and OSINT CYBERSECURITY GLOSSARY Cybersecurity
← Back to the glossary Cybersecurity glossary · Detection and response

Logs (event logs)

Logs, or event logs, are the files where systems, applications and network devices automatically record what happens: sign-ins, errors, configuration changes or connections. In cybersecurity they are the evidence used to detect attacks and investigate incidents, which is why they are centralized in a SIEM and kept for a defined period.

How TecnetOne handles it: TecnetSOC

event logs, security logs, log management, log retention, audit logs

Ready to put this into practice in your operation?

Tell us what you need and a TecnetOne engineer will get back to you.

Talk to an engineer