
In Progress
Posted
Paid on delivery
**Project Title: SOC Setup with Wazuh SIEM & Threat Intelligence** **Project Overview:** Looking for a cybersecurity expert to design and implement a Security Operations Center (SOC) using Wazuh SIEM, including threat detection, intelligence integration, and automated response. **Scope of Work:** * Design SOC architecture (include SIEM, Threat Intelligence + 5 components) with workflow and roles * Research and explain 3 threat intelligence sources (e.g., MISP, OTX, VirusTotal) * Deploy and configure Wazuh (manager, dashboard, agents on Windows & Linux) * Collect logs, monitor events, and generate alerts * Simulate and detect 3 cyber attacks with automated responses (XDR concept) * Implement 1 SOAR automation playbook using Shuffle * Integrate threat intelligence sources into Wazuh **Deliverables:** * SOC diagram + brief explanation * Full implementation with screenshots (logs, alerts, responses) * Clear documentation/report **Requirements:** * Experience with Wazuh, SIEM, and SOC operations * Knowledge of threat detection, XDR, and SOAR * Ability to simulate cyber attacks in a lab **Deadline & Budget:** Open to proposals
Project ID: 40399429
24 proposals
Remote project
Active 7 secs ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs

Hi, I have hands-on experience building and engineering Wazuh SOC environments professionally — this project covers exactly what I do. For your scope, I will design the full SOC architecture with a clear diagram covering SIEM, threat intelligence, XDR, SOAR, and defined roles and workflow. I will deploy Wazuh from scratch including the manager, dashboard, and agents on both Windows and Linux. All three threat intelligence sources — MISP, OTX, and VirusTotal — will be researched, explained, and integrated directly into Wazuh. I will simulate and detect three cyber attacks with automated responses aligned to the XDR concept, implement a Shuffle SOAR playbook, and deliver complete documentation with screenshots covering logs, alerts, and responses. What makes me a strong fit for this specifically: I have already integrated VirusTotal and AbuseIPDB into Wazuh detection pipelines in live environments, built MITRE ATT&CK-aligned detection use cases, and developed an AI-powered SOC analyst on Wazuh that auto-investigates alerts and generates structured incident reports. I deliver clean, well-documented work. What is your expected timeline for this project?
$100 USD in 7 days
1.6
1.6
24 freelancers are bidding on average $378 USD for this job

Hello, I'm Sr. Incident Responder at SOC USA Organization and have configured WAZUH in my own home setup lab. interested to show you live as well and complete the setup and reporting with attack and all as mentioned in the description of project. initiate chat with me to discuss , timeline and cost we can discuss as well
$450 USD in 15 days
6.1
6.1

As a seasoned System and Network Administrator with 13 years of experience, I specialize in designing and implementing robust computer networks, making me the ideal candidate for your SOC Consultant role. My proficiency in Amazon Web Services (AWS), Linux system administration, and network management ensures I have the necessary skills to design and set up your desired SOC architecture using Wazuh SIEM. Moreover, my skills extend beyond network design into an understanding of security operations. I am not just knowledgeable in Wazuh SIEM, but also have experience with threat detection, XDR concept (which you requested), and SOAR. These proficiencies make me capable of deploying and configuring Wazuh not just for monitoring events but also simulating and detecting different cyber attacks with automated responses - a critical feature in maintaining an effective SOC. I'll ensure you receive a comprehensive SOC diagram, clear implementations- including screenshots of logs, alerts, responses- as well as an elaborate documentation/report at the end of this project. Give me this chance to apply my diverse skillset and cumulative expertise to enhance your cybersecurity posture.
$140 USD in 2 days
5.6
5.6

I've deployed Wazuh in multi-agent environments before and the SOAR integration with Shuffle is where things get interesting. I'd set up the manager + dashboard on a Linux VM, deploy agents across your Windows/Linux endpoints, then wire in threat intel feeds from MISP and OTX via their APIs. For the attack simulations I'd run brute force, malware execution, and privilege escalation scenarios, then build custom Wazuh rules to trigger automated responses through Shuffle playbooks. The XDR piece ties together endpoint telemetry with centralized detection logic. I've done similar infrastructure work deploying full server stacks under tight timelines, you can check past builds at ffulb.com. Once you share SSH access to the target environment and any existing network diagrams I can assess what's there and start the Wazuh deployment. Should be straightforward but want to verify the setup first.
$140 USD in 7 days
3.7
3.7

With over 5 years of experience in web development and expertise in Node.js, React, and PHP, I am confident in my ability to design and implement a Security Operations Center (SOC) using Wazuh SIEM for your project. I have successfully deployed accounting software and automated Excel processes in the past, showcasing my skills in automation and software integration. I am excited to research and explain threat intelligence sources, simulate cyber attacks, and deliver a comprehensive SOC setup within your desired timeline and budget. Let's get started on securing your systems today!
$125 USD in 7 days
3.1
3.1

Dear Client, I hope you're doing well, I am pleased to submit my proposal for designing and implementing your SOC environment using Wazuh SIEM and Threat Intelligence integration. With extensive hands-on experience in SOC operations, SIEM deployment, and threat detection engineering, I have successfully built and configured security monitoring environments that combine log management, threat intelligence, and automated response (XDR/SOAR concepts). I will design a comprehensive SOC architecture with clearly defined components, workflows, and roles, deploy and configure Wazuh (manager, dashboard, and agents across Windows and Linux systems), and integrate relevant threat intelligence sources to enhance detection capabilities. Additionally, I will simulate real-world cyber attacks, validate detection mechanisms, and implement automated response scenarios, including a SOAR playbook using Shuffle. The final deliverables will include a well-structured report, architecture diagram, and full implementation with supporting screenshots, ensuring clarity and practical value. I am ready to start immediately and deliver a complete, high-quality solution within your timeline. Best regards, Sherif
$140 USD in 7 days
3.4
3.4

As a cybersecurity professional with a deep understanding of SOC design and implementation, I bring a unique value to the table. In my previous roles, I have had extensive exposure to Wazuh SIEM as well as other critical components like threat intelligence and automated response systems. My experience aligns impeccably with your project's goals: from designing SOC architecture, integrating multiple threat intelligence sources, deploying Wazuh SIEM, and even simulating cyber attacks to test the robustness of the system. I am adept at using AI-powered solutions to reduce manual effort and scale operations. Your SOC setup needs the capability of detecting threats effectively and responding promptly - areas that AI agents can be kings at. My skills in building intelligent systems that automate tasks using APIs and custom workflows make me a natural fit for this challenge. Moreover, my expertise in using Python, FastAPI, Automation Tools, among others will ensure a smooth setting up process. Finally, I am highly committed to producing clear and comprehensive documentation as evident by my past projects. This will give your team an invaluable resource long after the SOC is up and running
$240 USD in 6 days
0.0
0.0

As an experienced full-stack developer specializing in MERN stack-based, Ruby on Rails, and ASP.NET web applications, my skill set extends to various technologies vital for setting up a SOC. First and foremost, I am confident in my ability to design SOC architecture with the relevant components, workflow, and roles catered to your needs. My years of expertise will guide me in deploying and configuring Wazuh - an essential element of a SOC - including both the manager, dashboard, and agents required for both Windows and Linux operating systems. My knowledge further encompasses key areas like threat detection, XDR, SIEM operations making me well-equipped to not only integrate necessary threat intelligence sources into Wazuh but also simulate cyber attacks to ensure all security features are effective in place. I can generate comprehensive reports including detailed explanations of presented logs, alerts, responses as well as develop a functional SOAR automation playbook using Shuffle for maximum efficiency. Lastly, my ability to adapt to agile methodologies significantly eases work delivery within budget and deadline while maintaining quality. With a proficiency churned out from long stints as a web developer, plus enriched with profound problem-solving skills; your SOC setup project is in capable hands. Let's discuss how we can combine my diverse experience with your unique project requirements. Thank you.
$140 USD in 7 days
0.0
0.0

Deployed SIEM/SOAR/EDR in high availability on Data center from scratch. Completed the administration and configuration of alerts in SIEM/EDR. Also created various playbooks for SOAR automation. Trained 50+ new analysts on analysis of various kinds of alerts and raising them according to the SOP.
$140 USD in 7 days
0.0
0.0

Drawing from my extensive experience in the cybersecurity field and a solid understanding of SOC operations, I'm confident that I am the best fit for your SOC setup project. I have a nuanced familiarity with Wazuh, SIEM, and SOC operations, which aligns perfectly with your project needs. Moreover, I have honed my skills in threat detection, XDR, and SOAR, all while nurturing a deep interest in staying ahead of emerging trends in the field. As a security specialist, I have built robust infrastructures and orchestrated complex workflows that align with your SOC architecture requirements. I not only possess the capability to execute tasks such as designing the SOC architecture and deploying and configuring Wazuh but also to simulate credible cyber attacks for effective detection trials—a valuable skill in ensuring a practical SOC deployment. Throughout my career, I've worked extensively with various threat intelligence sources like MISP, OTX, and VirusTotal; meaning you can rely on my sharp investigative skills for research purposes. I believe in offering exceptional value for your investment. Therefore, in delivering your projects' needs—SOC diagram with detailed explanation, full implementation with documented snapshots (including logs, alerts, responses), and comprehensive reporting/documentation—you can rest easy knowing you're getting precise execution that captures all project details. Your project is as important to me as it is to you
$150 USD in 7 days
0.0
0.0

Hello, I am currently finalizing a similar SOC project, which means I have the architecture, custom rules, and automation playbooks ready for immediate deployment. What I will deliver: SOC Architecture: Complete design including Wazuh, MISP, Shuffle, TheHive, and Suricata. Deployment: Full configuration of Wazuh Manager/Dashboard and agents (Windows/Linux). Threat Intel: Real-time integration with MISP, OTX, and VirusTotal. XDR & Simulation: I will simulate 3 cyber attacks (e.g., Brute Force, Malware) with automated blocking/responses. SOAR Automation: 1 specialized Shuffle playbook for instant incident response. Full Documentation: Clear diagrams, step-by-step screenshots, and a final technical report. Why choose me? Since I am currently building a nearly identical lab, I can guarantee a fast turnaround and pre-tested configurations that work without trial and error. Ready to start immediately and share my current workflow with you. Best regards, Mohamed Nawar
$235 USD in 7 days
0.0
0.0

Hello, I can design and implement a complete SOC environment using Wazuh SIEM with integrated threat intelligence and automated response. I have hands-on experience with SIEM deployment, log analysis, and security monitoring. For this project, I will: * Design a clear SOC architecture with defined components, workflow, and roles * Deploy and configure Wazuh (manager, dashboard, and agents on Windows & Linux) * Integrate threat intelligence sources such as MISP, OTX, and VirusTotal * Simulate real-world attacks and demonstrate detection with automated responses (XDR concept) * Build a SOAR playbook using Shuffle for incident response automation * Provide full documentation with screenshots of logs, alerts, and responses I will ensure the setup is well-documented, practical, and aligned with real SOC operations. Looking forward to working with you. Best regards
$140 USD in 7 days
0.0
0.0

Dear Client I am writing to express my strong interest in your SOC Setup project. As a Cybersecurity Analyst with hands-on experience in Blue Team operations and deploying open-source security stacks, I have the technical expertise to design and implement a robust, automated, and scalable Security Operations Center for you. My Technical Approach: SOC Architecture: I will design a comprehensive ecosystem featuring the Wazuh core (Manager, Indexer, Dashboard) integrated with MISP for IoC management and Shuffle as the SOAR engine to streamline your security workflow. Threat Intelligence Integration: I will configure API connectors to ingest data from AlienVault OTX, VirusTotal, and AbuseIPDB, enabling Wazuh to cross-reference real-time alerts with global reputation databases. Attack Simulation & XDR: Using frameworks like Atomic Red Team, I will simulate real-world attacks (e.g., Brute Force, Malware execution, and Lateral Movement). I will then configure Active Responses to automatically block malicious IPs or isolate compromised endpoints. SOAR Automation: I will build a custom workflow in Shuffle that triggers on Wazuh alerts, performs automated enrichment, and executes mitigation actions or sends instant notifications (Slack/Email).
$200 USD in 3 days
0.0
0.0

Hello, My name is Devang Jivani, and I have 2+ years of experience in Network Security and Penetration Testing, with hands-on exposure to SIEM tools, log analysis, and attack simulation in lab environments. I can help design and implement a SOC using Wazuh, including architecture planning, agent deployment on Windows/Linux, log collection, and alert configuration. I’m familiar with threat detection workflows and can simulate real-world attack scenarios to validate detection and response. I also have experience working with threat intelligence concepts and can integrate sources like OTX or similar feeds into Wazuh. Additionally, I can assist in creating a basic SOAR playbook using Shuffle to automate response actions. You will receive clear documentation, screenshots, and a structured report covering setup, alerts, and simulated attack detection. My focus is on practical implementation and easy-to-understand outputs. I’m confident I can deliver a functional and well-documented SOC setup. Looking forward to working with you. Best regards, Devang Jivani
$300 USD in 3 days
0.0
0.0

Hi, I've gone through your requirements in detail and I can deliver everything you've listed — here's how: For SOC Architecture, I'll design a complete diagram with 6 components — Wazuh SIEM, XDR, SOAR (Shuffle), Threat Intelligence layer, HIDS, and Log Aggregation pipeline — including data flow, analyst roles, and escalation workflow. For Threat Intelligence, I'll research and document MISP, AlienVault OTX, and VirusTotal, explaining how each works and how they integrate into Wazuh for enriched alerting. For Wazuh Deployment, I'll set up Manager, Indexer, and Dashboard with agents configured on both Windows and Linux — log collection, event monitoring, and alert rules all tested and working. I have already integrated Wazuh with VirusTotal in previous projects, so file hash lookups triggering automatically on suspicious events is something I've implemented and refined before. For Attack Simulations, I'll demonstrate Brute Force with auto-block, Malware Execution with VirusTotal hash check, and Privilege Escalation with detection and response — each with before/after screenshots. For the Shuffle SOAR Playbook, the flow will be: Alert → VirusTotal enrich → analyst notify → IP block automatically. Detailed documentation with screenshots at every stage will be provided. Happy to share previous Wazuh + VirusTotal work before you award. Is this for a lab/VM or production environment?
$140 USD in 7 days
0.0
0.0

Hi, I reviewed your SOC setup requirements and can design and implement a complete Wazuh-based solution with integrated threat intelligence and automated response. I have hands-on experience with SIEM deployment, network security, and VAPT, and I’ve worked on securing infrastructure using real-world attack simulations and monitoring setups. For your project, I will: • Design a complete SOC architecture including SIEM, threat intelligence, log management, detection, and response components with defined workflows and roles • Deploy and configure Wazuh (manager, dashboard, and agents on Windows & Linux) • Integrate threat intelligence sources such as MISP, OTX, and VirusTotal into Wazuh • Collect logs, create detection rules, and generate actionable alerts • Simulate cyber attacks in a lab environment and demonstrate detection with automated responses (XDR approach) • Implement a SOAR playbook using Shuffle for automated incident response You will receive: • SOC architecture diagram with clear explanation • Fully configured environment with screenshots (logs, alerts, responses) • Detailed documentation/report covering setup, detections, and workflows I focus on practical, real-world SOC implementation—ensuring not just deployment, but effective detection and response capabilities. Let’s discuss your timeline and scope in detail. Best regards,
$360 USD in 10 days
0.0
0.0

Hi, This project is very much in my area — I have built and managed a real SOC using Wazuh professionally, not just in a lab. At the British Museum I deployed Wazuh agents across Windows and Linux endpoints, configured detection rules, integrated threat intelligence feeds, and handled live incidents from the alerts it generated. For this project I will deliver everything in scope — SOC architecture diagram with workflow and roles, threat intelligence research covering MISP, OTX and VirusTotal, full Wazuh deployment with manager, dashboard and agents, three simulated attacks mapped to MITRE ATT&CK with automated responses, one complete Shuffle SOAR playbook, and clean professional documentation with screenshots throughout. Everything will be clearly explained, well structured, and easy to follow whether you are presenting it, learning from it, or building on top of it. I also have real experience with Shuffle specifically, having used it as part of an open-source SOC project alongside TheHive and Wazuh — so the SOAR integration will not be a first attempt. Happy to discuss timeline and budget before you decide. Feel free to message me with any questions. Harshil
$350 USD in 7 days
0.0
0.0

Hello, I can help you design and implement a complete SOC using Wazuh SIEM with threat intelligence integration and automated response. I have hands-on experience with Wazuh deployment, log analysis, attack simulation, and SOC workflows in lab environments. For your project, I will: Design a clear SOC architecture (SIEM + Threat Intelligence + 5 key components) with workflow & roles Deploy and configure Wazuh (manager, dashboard, Windows & Linux agents) Integrate threat intelligence sources like MISP, OTX, and VirusTotal Simulate real-world attacks (e.g., brute force, malware, privilege escalation) and detect them Implement automated response (XDR approach) Create a SOAR playbook using Shuffle Provide full documentation with screenshots, alerts, and logs I will ensure the setup is practical, well-documented, and easy to understand. I can deliver this within 12 days with proper testing and reporting. Looking forward to working with you. Thanks, Shahil kumar
$140 USD in 12 days
0.0
0.0

Manama, Bahrain
Payment method verified
Member since Dec 8, 2025
$30-250 USD
$30-250 USD
$30-250 USD
$30-250 USD
$30-250 USD
₹12500-37500 INR
₹12500-37500 INR
$250-750 USD
₹12500-37500 INR
$750-1500 USD
$30-250 USD
₹12500-37500 INR
$15-25 USD / hour
$10000-20000 CAD
₹100000-150000 INR
$30-250 USD
$100-300 USD
$10-30 USD
$30-250 USD
$750-1500 USD
₹12500-37500 INR
$30-250 USD
₹600-1500 INR
$10-30 USD
$25-50 USD / hour