I will create custom wazuh rules and threat detection

Einige Informationen werden in englischer Sprache angezeigt.

Pakistan

Ich spreche Englisch, Hindi

13 Aufträge abgeschlossen

Cyber Security Analyst, Wazuh SIEM Specialist

3+ years of experience as a Cyber Security Engineer & active Bank SOC/CERT Analyst. I deploy, tune, and scale open-source SIEM architectures - specifically Wazuh - to build production-grade defense pi...
Über diesen Service

Is your Wazuh SIEM installed but missing the security events that matter to you?


I will create, configure, test, and tune custom Wazuh detection rules for your environment.


I specialize in Wazuh SIEM, SOC monitoring, detection engineering, Windows and Linux security events, Sysmon, and MITRE ATT&CK mapping.


What I can build

  • Custom Wazuh rules and decoders
  • Windows and Linux detections
  • Sysmon-based detections
  • Brute-force and suspicious PowerShell detection
  • Privilege escalation detection
  • Malware and IOC detection
  • File Integrity Monitoring (FIM) rules
  • Authentication and login detections
  • MITRE ATT&CK mapping
  • False-positive reduction and rule tuning
  • Detection testing and documentation

My approach

I review your requirements, configure the detection logic, test rules against relevant events, reduce unnecessary alerts, and provide clear documentation.


Best for

  • Existing Wazuh deployments
  • SOC and security teams
  • Small businesses
  • Security engineers
  • Labs and homelabs
  • Windows/Linux environments


Already have Wazuh installed? Send me your detection requirements before ordering, and I will recommend the right package.

Cloud-Provider:

Andere

Expertise:

Installation

Migration

Debuggen

Entwicklung

Cloud-Computing-Ressource:

ELK

Azure Container Instances

Andere

Mein Portfolio