A real time system which maintains profiles about individuals, threats, or other entities and in real time processes events and returns alerts about profiles and their risks. Also think of SIEM, a SOC and SOAR etcetera.
Main situation to think about is what a solution or service will bring you when they ask you to take actions. Do you have all relevant details at hand to decide or take appropriate actions.