Journal of Cybersecurity and Information Management
JCIM
2690-6775
2769-7851
10.54216/JCIM
https://www.americaspg.com/journals/show/3137
2019
2019
Analysis of Wazuh SIEM's Effectiveness in Cloud Security Monitoring
Computer Science Department, College of Science, University of Diyala, Diyala, Iraq
Wasan
Wasan
Computer Science Department, College of Science, University of Diyala, Diyala, Iraq
Ziyad Tariq Mustafa AL-Taâ€
AL-Ta’I
In today’s rapidly evolving digital landscape and interconnected, organizations are increasingly dependent on cloud -based infrastructure, which introduces significant cybersecurity challenges due to escalating cyber threats and attacks. To effectively manage these threats, a central monitoring system is essential. Security Information and Event Management (SIEM) solution address these issues by providing real-time monitoring and analysis of security events. This research investigates the efficiency of the Wazuh SIEM system in monitoring AWS cloud services, EC2 instance, and File integrity. Wazuh automates the collection, centralization, and analysis of security events. This approach enables the detection of unauthorized activities, monitoring of file integrity, and collection of user activity logs in real-time. This study evaluates Wazuh SIEM's capabilities by executing different types of attacks in an AWS cloud environment. The result was that it generated 1774 security alert within one week. The findings demonstrate that Wazuh SIEM provides comprehensive security monitoring and threat detection, offering significant advantages for organizations security that utilize cloud services.
2025
2025
244
250
10.54216/JCIM.150119
https://www.americaspg.com/articleinfo/2/show/3137