Throughout this project, I worked on implementing a complete SIEM (Security Information and Event Management) setup using IBM QRadar including:
Logs Installing and configuring WinCollect to collect Windows
Setting up Sysmon to monitor detailed system events
Forwarding security logs from Windows to QRadar
Verifying log sources and analyzing security events
Detecting failed login attempts and tracking them in real-time through QRadar