{"id":3045,"date":"2020-05-29T16:58:46","date_gmt":"2020-05-29T20:58:46","guid":{"rendered":"https:\/\/solutionsreview.com\/security-information-event-management\/?p=3045"},"modified":"2020-05-29T16:59:46","modified_gmt":"2020-05-29T20:59:46","slug":"revisiting-whether-soar-will-replace-siem-in-business-cybersecurity","status":"publish","type":"post","link":"https:\/\/solutionsreview.com\/security-information-event-management\/revisiting-whether-soar-will-replace-siem-in-business-cybersecurity\/","title":{"rendered":"Revisiting Whether SOAR Will Replace SIEM in Business Cybersecurity"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-2358\" src=\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/12\/The-Top-6-SIEM-Vendors-to-Watch-in-2019-By-Solutions-Review-MOD.jpg\" alt=\"Revisiting Whether SOAR Will Replace SIEM In Business Cybersecurity\" width=\"800\" height=\"450\" srcset=\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/12\/The-Top-6-SIEM-Vendors-to-Watch-in-2019-By-Solutions-Review-MOD.jpg 800w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/12\/The-Top-6-SIEM-Vendors-to-Watch-in-2019-By-Solutions-Review-MOD-300x169.jpg 300w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/12\/The-Top-6-SIEM-Vendors-to-Watch-in-2019-By-Solutions-Review-MOD-768x432.jpg 768w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/12\/The-Top-6-SIEM-Vendors-to-Watch-in-2019-By-Solutions-Review-MOD-480x270.jpg 480w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/12\/The-Top-6-SIEM-Vendors-to-Watch-in-2019-By-Solutions-Review-MOD-144x81.jpg 144w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/12\/The-Top-6-SIEM-Vendors-to-Watch-in-2019-By-Solutions-Review-MOD-320x180.jpg 320w\" sizes=\"(max-width: 800px) 100vw, 800px\" \/><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Not long ago, Solutions Review posted \u201c<\/span><a href=\"https:\/\/solutionsreview.com\/security-information-event-management\/will-soar-cybersecurity-replace-siem-in-the-near-future\/\" target=\"_blank\" rel=\"noopener noreferrer\"><span style=\"font-weight: 400\">Will SOAR Cybersecurity Replace SIEM in the Near Future?<\/span><\/a><span style=\"font-weight: 400\">\u201d This article debated the merits between two of the more complex but still vital branches of the modern cybersecurity tree. Ultimately, we left it to the reader to decide, while exploring the merits of both solutions\u2014SOAR (Security Operations, Automation, and Response) and SIEM (Security Information and Event Management).\u00a0\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Here\u2019s what we said:\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400\"><br \/>Widget not in any sidebars<br \/><\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">\u201cSome security experts read the rise of SOAR as a response to the problems of SIEM. Indeed, there is some validity to this reading, as SIEM can still pose a labor challenge to the uninitiated or unprepared.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">However, this neglects the fact that SOAR solutions often draw from SIEM solutions. After all, SIEM aggregates critical logs and alert information. With it, SOAR would lose a vital source of insight into enterprise networks. Further, SOAR works through integration, binding SIEM to other critical cybersecurity solutions like endpoint security and identity management.\u201d<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Meanwhile, in a recent interview with <\/span><a href=\"https:\/\/solutionsreview.com\/security-information-event-management\/top-down-siem-an-interview-with-avi-chesla-of-empow\/\" target=\"_blank\" rel=\"noopener noreferrer\"><span style=\"font-weight: 400\">Avi Chesla of empow<\/span><\/a><span style=\"font-weight: 400\">, he shared his thoughts on the matter. \u201cSOAR is a collection of features\u2014workflows\u2014that take best practices in the SOC and try to automate them. It tries to answer the question: \u2018what do I need to do manually so that I can just automate instead?\u2019\u201d<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">\u201cI believe that SOAR, as a collection of features, is part of the solution, and should be consolidated with the SIEM and behavioral analytics technologies in order to really provide the top-down SIEM. We\u2019re already seeing that happening through acquisitions such as Palo Alto Networks acquisition of Demisto. Specific SOAR capabilities can work top-down, but enterprise can\u2019t rely on SOAR alone.\u201d<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Instead, he points out that SOAR works when unified under a language of cybersecurity.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Where do you fall on the debate? Will SOAR replace SIEM? Download the <a href=\"https:\/\/solutionsreview.com\/security-information-event-management\/siem-buyers-guide-security-information-and-event-management\/\" target=\"_blank\" rel=\"noopener noreferrer\">SIEM Buyer\u2019s Guide<\/a> and the <a href=\"https:\/\/solutionsreview.com\/security-information-event-management\/soar-buyers-guide-security-orchestration-automation-and-response\/\" target=\"_blank\" rel=\"noopener noreferrer\">SOAR Buyer\u2019s Guide<\/a> and share your thoughts with us on social media.<\/span><\/p>\n<p><span style=\"font-weight: 400\"><br \/>Widget not in any sidebars<br \/><\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Not long ago, Solutions Review posted \u201cWill SOAR Cybersecurity Replace SIEM in the Near Future?\u201d This article debated the merits between two of the more complex but still vital branches of the modern cybersecurity tree. Ultimately, we left it to the reader to decide, while exploring the merits of both solutions\u2014SOAR (Security Operations, Automation, and [&hellip;]<\/p>\n","protected":false},"author":41,"featured_media":2358,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[1,3],"tags":[353,95,145,1313,112,86,1326,21,57,22,1092],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v23.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Revisiting Whether SOAR Will Replace SIEM in Business Cybersecurity<\/title>\n<meta name=\"description\" content=\"Not long ago, Solutions Review posted \u201cWill SOAR Cybersecurity Replace SIEM in the Near Future?\u201d This article debated the merits between two of the more\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/solutionsreview.com\/security-information-event-management\/revisiting-whether-soar-will-replace-siem-in-business-cybersecurity\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Revisiting Whether SOAR Will Replace SIEM in Business Cybersecurity\" \/>\n<meta property=\"og:description\" content=\"Not long ago, Solutions Review posted \u201cWill SOAR Cybersecurity Replace SIEM in the Near Future?\u201d This article debated the merits between two of the more\" \/>\n<meta property=\"og:url\" content=\"https:\/\/solutionsreview.com\/security-information-event-management\/revisiting-whether-soar-will-replace-siem-in-business-cybersecurity\/\" \/>\n<meta property=\"og:site_name\" content=\"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors\" \/>\n<meta property=\"article:published_time\" content=\"2020-05-29T20:58:46+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2020-05-29T20:59:46+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/12\/The-Top-6-SIEM-Vendors-to-Watch-in-2019-By-Solutions-Review-MOD.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"800\" \/>\n\t<meta property=\"og:image:height\" content=\"450\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Ben Canner\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Ben Canner\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/revisiting-whether-soar-will-replace-siem-in-business-cybersecurity\/\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/revisiting-whether-soar-will-replace-siem-in-business-cybersecurity\/\",\"name\":\"Revisiting Whether SOAR Will Replace SIEM in Business Cybersecurity\",\"isPartOf\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/revisiting-whether-soar-will-replace-siem-in-business-cybersecurity\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/revisiting-whether-soar-will-replace-siem-in-business-cybersecurity\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/12\/The-Top-6-SIEM-Vendors-to-Watch-in-2019-By-Solutions-Review-MOD.jpg\",\"datePublished\":\"2020-05-29T20:58:46+00:00\",\"dateModified\":\"2020-05-29T20:59:46+00:00\",\"author\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541\"},\"description\":\"Not long ago, Solutions Review posted \u201cWill SOAR Cybersecurity Replace SIEM in the Near Future?\u201d This article debated the merits between two of the more\",\"breadcrumb\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/revisiting-whether-soar-will-replace-siem-in-business-cybersecurity\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/solutionsreview.com\/security-information-event-management\/revisiting-whether-soar-will-replace-siem-in-business-cybersecurity\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/revisiting-whether-soar-will-replace-siem-in-business-cybersecurity\/#primaryimage\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/12\/The-Top-6-SIEM-Vendors-to-Watch-in-2019-By-Solutions-Review-MOD.jpg\",\"contentUrl\":\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/12\/The-Top-6-SIEM-Vendors-to-Watch-in-2019-By-Solutions-Review-MOD.jpg\",\"width\":800,\"height\":450,\"caption\":\"Expert 2021 Cybersecurity Predictions (Insight Jam Roundup)\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/revisiting-whether-soar-will-replace-siem-in-business-cybersecurity\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/solutionsreview.com\/security-information-event-management\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Revisiting Whether SOAR Will Replace SIEM in Business Cybersecurity\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#website\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/\",\"name\":\"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors\",\"description\":\"Buyer&#039;s Guide and Best Practices\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/solutionsreview.com\/security-information-event-management\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541\",\"name\":\"Ben Canner\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g\",\"caption\":\"Ben Canner\"},\"description\":\"Ben Canner is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in English from Clark University in Worcester, MA. He previously worked as a corporate blogger and ghost writer. You can reach him via Twitter and LinkedIn.\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/author\/bcanner\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Revisiting Whether SOAR Will Replace SIEM in Business Cybersecurity","description":"Not long ago, Solutions Review posted \u201cWill SOAR Cybersecurity Replace SIEM in the Near Future?\u201d This article debated the merits between two of the more","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/solutionsreview.com\/security-information-event-management\/revisiting-whether-soar-will-replace-siem-in-business-cybersecurity\/","og_locale":"en_US","og_type":"article","og_title":"Revisiting Whether SOAR Will Replace SIEM in Business Cybersecurity","og_description":"Not long ago, Solutions Review posted \u201cWill SOAR Cybersecurity Replace SIEM in the Near Future?\u201d This article debated the merits between two of the more","og_url":"https:\/\/solutionsreview.com\/security-information-event-management\/revisiting-whether-soar-will-replace-siem-in-business-cybersecurity\/","og_site_name":"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors","article_published_time":"2020-05-29T20:58:46+00:00","article_modified_time":"2020-05-29T20:59:46+00:00","og_image":[{"width":800,"height":450,"url":"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/12\/The-Top-6-SIEM-Vendors-to-Watch-in-2019-By-Solutions-Review-MOD.jpg","type":"image\/jpeg"}],"author":"Ben Canner","twitter_misc":{"Written by":"Ben Canner","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/revisiting-whether-soar-will-replace-siem-in-business-cybersecurity\/","url":"https:\/\/solutionsreview.com\/security-information-event-management\/revisiting-whether-soar-will-replace-siem-in-business-cybersecurity\/","name":"Revisiting Whether SOAR Will Replace SIEM in Business Cybersecurity","isPartOf":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#website"},"primaryImageOfPage":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/revisiting-whether-soar-will-replace-siem-in-business-cybersecurity\/#primaryimage"},"image":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/revisiting-whether-soar-will-replace-siem-in-business-cybersecurity\/#primaryimage"},"thumbnailUrl":"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/12\/The-Top-6-SIEM-Vendors-to-Watch-in-2019-By-Solutions-Review-MOD.jpg","datePublished":"2020-05-29T20:58:46+00:00","dateModified":"2020-05-29T20:59:46+00:00","author":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541"},"description":"Not long ago, Solutions Review posted \u201cWill SOAR Cybersecurity Replace SIEM in the Near Future?\u201d This article debated the merits between two of the more","breadcrumb":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/revisiting-whether-soar-will-replace-siem-in-business-cybersecurity\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/solutionsreview.com\/security-information-event-management\/revisiting-whether-soar-will-replace-siem-in-business-cybersecurity\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/revisiting-whether-soar-will-replace-siem-in-business-cybersecurity\/#primaryimage","url":"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/12\/The-Top-6-SIEM-Vendors-to-Watch-in-2019-By-Solutions-Review-MOD.jpg","contentUrl":"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/12\/The-Top-6-SIEM-Vendors-to-Watch-in-2019-By-Solutions-Review-MOD.jpg","width":800,"height":450,"caption":"Expert 2021 Cybersecurity Predictions (Insight Jam Roundup)"},{"@type":"BreadcrumbList","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/revisiting-whether-soar-will-replace-siem-in-business-cybersecurity\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/solutionsreview.com\/security-information-event-management\/"},{"@type":"ListItem","position":2,"name":"Revisiting Whether SOAR Will Replace SIEM in Business Cybersecurity"}]},{"@type":"WebSite","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#website","url":"https:\/\/solutionsreview.com\/security-information-event-management\/","name":"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors","description":"Buyer&#039;s Guide and Best Practices","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/solutionsreview.com\/security-information-event-management\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541","name":"Ben Canner","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g","caption":"Ben Canner"},"description":"Ben Canner is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in English from Clark University in Worcester, MA. He previously worked as a corporate blogger and ghost writer. You can reach him via Twitter and LinkedIn.","url":"https:\/\/solutionsreview.com\/security-information-event-management\/author\/bcanner\/"}]}},"_links":{"self":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/posts\/3045"}],"collection":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/users\/41"}],"replies":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/comments?post=3045"}],"version-history":[{"count":0,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/posts\/3045\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/media\/2358"}],"wp:attachment":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/media?parent=3045"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/categories?post=3045"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/tags?post=3045"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}