SIEM (Security Information and Event Management) plays a key role in a Security Operations Center because it helps teams monitor, detect, and respond to threats in real time. It works by collecting data from multiple sources, analyzing it, and highlighting suspicious activity so analysts can focus on the most critical incidents. To help you dive deeper into SIEM, I’ve put together a list of useful learning resources. General: - Windows Logging Basics - https://lnkd.in/grKYFQzJ - Jose Bravo - What is a SIEM? (5 Vídeos): https://lnkd.in/gc2UDpeD - PowerSIEM Analyzing Sysmon Events with PowerShell: https://lnkd.in/g_8Eq8vm QRadar: - Jose Bravo - QRadar (38 Vídeos): https://lnkd.in/gd7V_4pe - QRadar 101 - https://lnkd.in/esbz2RjK - QRadar SIEM Foundation: https://lnkd.in/es8NAdAw - Ariel Query Language Guide: https://lnkd.in/eAMKy25q Splunk: - Course Catalog - https://lnkd.in/ekm6RekE - Basic Searching: https://lnkd.in/gygnTMfD - Practical Splunk - Zero to Hero: https://lnkd.in/ePF_3PWj - Splunk Use Cases - https://lnkd.in/eJ4CTNV2 - Exploring Splunk: https://lnkd.in/e8gVvMuu Microsoft Sentinel: - What is Microsoft Sentinel: https://lnkd.in/gdB7dAdU - Microsoft Sentinel Level 400 training: https://lnkd.in/ezDkpWmx - SOC 101: https://lnkd.in/evnF6kNm FortiSIEM: https://lnkd.in/e5TvYZYt - AlienVault OSSIM - Cybrary - AlienVault OSSIM: https://lnkd.in/gRZAansT Elastic SIEM - Fundamentals: https://lnkd.in/gYNYs9vS