I will deploy and configure wazuh siem for threat detection
About this Gig
Your servers generate thousands of log events daily without a SIEM watching them, and an intrusion can go unnoticed for weeks. I'll change that.
I'm a SOC Analyst and SIEM Engineer with real, hands-on experience deploying Wazuh, including a High-Availability cluster architecture built for enterprise-grade fault tolerance. I'll install, configure, and tune Wazuh SIEM for your environment, turning raw logs into real, actionable security alerts.
What I offer:
- Wazuh Manager + Agent installation (single-node or HA-ready)
- Custom detection rules and decoders tuned to your logs
- Kibana/OpenSearch dashboards for full visibility
- Suricata IDS integration for network-layer detection
- TLS-secured, production-ready configuration
- Clear documentation so your team can manage it independently
Why work with me:
- Real SOC Analyst experience, I know what alerts actually matter, not just default noise
- Rules mapped to MITRE ATT&CK where relevant
- Documented, reproducible deployments, no black-box setups
Send me a message before ordering if your setup is unusual happy to scope it first.
Device:
Desktop
•
Laptop
•
Server
Operating system:
Windows
•
Linux
•
Ubuntu
My Portfolio
FAQ
What do you need from me to start?
Server access (SSH credentials or key), your OS version, and how many endpoints/agents you need monitored.
Can you deploy on AWS, Azure, DigitalOcean, or a local VPS?
Yes — cloud or on-premises, as long as I have access to the environment.
Will I be able to see logs and alerts after delivery?
Yes, you'll get a fully working Wazuh/Kibana dashboard with real-time alerts.
Do you offer support after deployment?
Not included in the base packages, but available as a paid extra (see Gig Extras) or a custom offer for ongoing
I'm not technical — can you explain what I'm getting?
Absolutely. I'll walk you through what's set up and how to read your dashboard, no jargon.

