SIEM Home Lab — File Integrity Monitoring with Wazuh
Deployed a Wazuh Manager and Dashboard on Ubuntu 24.04 Server and registered a Windows 10
Wazuh Agent over TCP 1514. Configured real-time File Integrity Monitoring (FIM) in
ossec.conf to detect file creation and deletion events on a monitored Windows
directory, validated detection by triggering test alerts, and documented the architecture
and configuration.