تفاصيل العمل

Throughout this project, I worked on implementing a complete SIEM (Security Information and Event Management) setup using IBM QRadar including:

Logs Installing and configuring WinCollect to collect Windows

Setting up Sysmon to monitor detailed system events

Forwarding security logs from Windows to QRadar

Verifying log sources and analyzing security events

Detecting failed login attempts and tracking them in real-time through QRadar

بطاقة العمل

اسم المستقل
عدد الإعجابات
0
عدد المشاهدات
18
تاريخ الإضافة