Comprehensive SIEM Deployment and Integration
$3000-5000 USD
Pagato alla consegna
I am looking for a seasoned professional with extensive experience in deploying a SIEM system, particularly using Wazuh, for a multi-tenant Cisco ACI Fabric with Nutanix cloud on-prem. The deployment will consist of two sites with High Availability (HA) components.
Key Requirements:
1. Deploy SIEM using Wazuh, ELK stack, Grafana, Suricata, and Graylog, among others.
2. Set up a virtual environment across two sites with active HA components and replication. Kubernates is ideal. Feedback on this.
3. Integrate the SIEM with all sources in the environment, namely ZABBIX, ServiceNow, and Datacenter DCIM.
4. Conduct a one-week online workshop to achieve High Level Design (HLD) and Low Level Design (LLD), and produce the necessary documentation.
5. Provide training for handover, conduct go-live, and assist in acquiring licenses and support for a three-year period.
6. Develop comprehensive security policies tailored to the deployed SIEM system.
7. Create custom dashboards in Grafana for real-time monitoring and alerts specific to our environment.
8. Integrate the SIEM system with an incident response platform for automated threat response.
9. Configure compliance reporting tailored to industry standards such as GDPR, HIPAA, or PCI-DSS.
10. Establish and implement log retention policies to comply with legal and organizational requirements.
11. Design and implement strict user access controls and roles within the SIEM system.
12. Set up and configure custom alerts for specific security events and threshold breaches.
13. Create and document procedures for system backup and restoration to ensure data integrity.
14. Integrate the SIEM with existing ticketing systems for streamlined issue tracking and resolution.
15. Optimize dashboard and query performance for efficient data processing and minimal latency.
Ideal Skills and Experience:
- Proficiency in Wazuh, ELK stack, and other relevant tools.
- Strong background in setting up high-availability virtual environments.
- Experienced in integrating SIEM with various sources.
- Excellent documentation and training skills.
The training sessions should cover a basic overview of the deployment and integration process. The primary objective for integrating the SIEM system with the incident response platform is to enable automated threat response.
Rif. progetto: #38801071
Info sul progetto
14 freelance hanno fatto un'offerta media di $4249 per questo lavoro
Hello, I am confident that my 9+ years of experience make me an ideal candidate for this project. I have a strong background in deploying SIEM systems, particularly using Wazuh, ELK stack, Grafana, and Suricata, in co Altro
Dear epeelea375, I am excited about the opportunity to collaborate on this project and am committed to ensuring your complete satisfaction with the final outcome. Our team consists of experienced professionals wh Altro
Hello, I think my bid is cheaper than others. I can help you to deploy SIEM, and integrate with all the tools needed. I have experience with ELK, Splunk, Wazuh and Logrythm. Let's chat to discuss more.
We are well-versed in all aspects of setting up high-availability virtual environments like Kubernates, a feature your project requires. Additionally, our deep understanding of integrating SIEM systems from ZABBIX to S Altro