SIEM and Log Monitoring Assessment Questionnaire
Help us evaluate your organization's SIEM and log monitoring practices by completing this assessment.
Organization Name
*
Contact Person Full Name
*
First Name
Last Name
Email Address
*
example@example.com
Which SIEM platform(s) does your organization currently use?
*
Splunk
IBM QRadar
LogRhythm
Microsoft Sentinel
Elastic SIEM
Other
Which types of log sources are monitored by your SIEM?
*
Network devices (firewalls, routers, switches)
Servers (Windows, Linux, etc.)
Endpoints (workstations, laptops)
Cloud platforms
Applications
Other
How frequently are logs reviewed or analyzed?
*
Real-time/Continuous
Hourly
Daily
Weekly
Monthly
Please rate the effectiveness of your current SIEM and log monitoring processes.
*
1
2
3
4
5
Please indicate your level of agreement with the following statements regarding your SIEM and log monitoring program.
*
Rows
Strongly Disagree
Disagree
Neutral
Agree
Strongly Agree
Our SIEM covers all critical log sources.
1
2
3
4
5
Alerting thresholds are well-defined and actionable.
6
7
8
9
10
Incident response is integrated with SIEM alerts.
11
12
13
14
15
We regularly tune and update SIEM rules.
16
17
18
19
20
Our team receives adequate SIEM training.
21
22
23
24
25
What are the main challenges you face with SIEM and log monitoring?
Too many false positives
Lack of skilled staff
Data storage/retention issues
Integration with other tools
Cost
Other
How would you rate your incident response process when triggered by SIEM alerts?
*
Poor
1
2
3
4
Excellent
5
1 is Poor, 5 is Excellent
What improvements or additional features would you like to see in your SIEM and log monitoring setup?
Submit Assessment
Should be Empty: