Formal detection scenarios are defined to identify known threats using collected log data
Sekit's SIEM use cases policy is a topic-specific policy under A.5.1 that documents which threat scenarios the monitoring platform is expected to detect, rather than leaving coverage to vendor defaults.
Documenting which threat scenarios the monitoring platform must detect turns detection coverage into a deliberate choice, the scoping A.8.16 depends on.