DOI: 10.22184/2070-8963.2024.120.4.74.79

The modern information security monitoring systems are analysed and the MaxPatrol SIEM-system is selected. The principles of event processing in the system are described, and the algorithm of correlation rules building is shown. The architecture, interface and modules of the system are developed.

sitemap

Разработка: студия Green Art