← Back to Portfolio
MONITORING

Wazuh Monitoring

Security monitoring and threat detection platform running in my self-hosted home lab. Built to gain hands-on experience with SIEM operations, log analysis, and the security monitoring workflows used by SOC analysts.

SIEM
Platform Type
24/7
Continuous Monitoring
Docker
Deployment Method
SOC
Analyst Workflows

Project Overview

This project demonstrates a self-hosted Wazuh security monitoring lab running in my home network. The goal was to gain hands-on experience with log collection, endpoint monitoring, alert analysis, and SOC-style security operations. Wazuh runs inside Docker on my Raspberry Pi, with agents deployed on monitored systems feeding real-time events into the central manager.

What I Configured

Tools & Technologies

🛡️
Wazuh Manager
🔎
Wazuh Agent
🐳
Docker
🥧
Raspberry Pi
🖥️
Linux
☁️
Cloudflare Tunnel

Skills Demonstrated

Security monitoring
SIEM operations
Log analysis
Linux administration
Docker deployment
Threat detection concepts

What I Learned

Building this Wazuh lab gave me hands-on experience with security monitoring, log analysis, SIEM operations, Docker deployment, and Linux administration. The project helped me understand how SOC analysts investigate alerts and monitor systems for suspicious activity — skills that directly apply to real-world security operations roles.