For log management I'm looking for:

-changes on the servers (change management)
-event logging for security/application
-logging on the firewalls of denied packets/drops
-IDS correlation to other logs to create incidents, some type of ticketing system
-auditing of users changes create/delete/kill services on all devices
-database logging for changes