Security Monitoring is a combination of people, processes and technology. In a Security Operations Center we need technology to make visible what is going on in a network. We then need security analysts to analyse warnings and events and to take immediate action if necessary. The most commonly used technique for this is Security Information and Event Management (SIEM) which is nowadays often used in combination with advanced User Entity and Behavior Analytics (UEBA) software.