I will deploy and manage your siem soc and soar security automation
About this Gig
Protect your business with a fully automated SOC & SIEM pipeline.
I'm a Cybersecurity & Digital Forensics graduate and active SOC Analyst / SIEM Engineer. I design, deploy, and automate defensive security operations from log monitoring to full incident response pipelines for businesses that need real protection without hiring a full in-house SOC team.
What you get:
- SIEM deployment & tuning (Wazuh, Splunk) log ingestion, custom detection rules, false-positive reduction
- SOAR automation (Shuffle) automated enrichment via VirusTotal, case creation in DFIR-IRIS, Slack alerting
- Endpoint & network monitoring Windows/Linux telemetry, File Integrity Monitoring, traffic analysis
- Vulnerability assessments (Nessus/OpenVAS) with clear remediation guidance
- Full documentation architecture diagrams, detection logic, and a handover walkthrough
Why work with me:
I don't just install tools I build pipelines that actually reduce analyst workload and speed up response time, using the same architecture I run for managed SOC clients (detect enrich case notify).
Message me before ordering so I can scope your environment properly and recommend the right package.
My Portfolio
FAQ
Do I need to already have a server or VPS set up?
No — I can help you provision one, or work with your existing server/cloud environment. Just let me know what infrastructure you have during the initial message.
What's the difference between the Basic and Premium package?
Basic covers core SIEM setup and alerting. Premium adds full SOAR automation, threat intel enrichment, and case management integration — essentially a hands-off automated SOC pipeline instead of just monitoring.
Can you work with tools other than Wazuh, like Splunk or Microsoft Sentinel?
Yes, I have experience with Splunk and Sentinel as well — let me know your preferred stack before ordering so I can confirm scope and timeline.
Will I get documentation for the setup?
Yes — every package includes a summary of what was configured, and Standard/Premium include a more detailed architecture writeup so your team can maintain it going forward.
Do you offer ongoing monitoring after delivery?
The gig covers setup and configuration. If you'd like ongoing managed monitoring, message me — I offer that as a separate custom arrangement.

