Enhancing Cybersecurity with IDS and SIEM Integration Detection
摘要
In the evolving landscape of technology, the rise of cyber- attacks poses a significant threat to information security. This paper presents an approach that integrates an Intrusion Detection System (IDS) with a Security Information and Event Management (SIEM) system to enhance the detection and mitigation of various cyber threats. The pro- posed approach aims to address the challenges of recognizing unknown attacks, false positives, and rapid incident response. The experiments confirm that the proposed approach provides higher performance than traditional IDS system.