GRENZE International Journal of Engineering and Technology
Vol. 12
(2026), Issue 1
Siem with Protocol Analysis and Comprehensive Suite of Security Tools
Authors
T. Sathya, S. Mohamad Ameen, S. Nithish Kumar, B. Sarvesh
Abstract
The SIEM systems in organizations serve strong functionality under ever-advanced technologies and protocol analysis. This is because cyber-attacks have come to be extremely sophisticated, and SIEM solutions needed that aid in analysis of traffic for malicious behavior detection through a specialized SSH protocol. The added security features include real-time alert generation through REST API, honeypot-based bot blocking, integrity-checking of files through ClamAV, and an easy-to-manage web interface made up in Django, HTML, and CSS for the administration to control security setup, monitor threats, and provide an easy-dash perspective. The project hereby integrates all these components to better the traditional SIEM capabilities, thus improving an organization's entire cyber security posture to allow for proactive threat detection and response. Centralized security dashboard through a Django web interface helps administrators to monitor security events, configuration settings for detection, and get easy-to-read system logs. Coupled with web-based management capabilities, honeypot intrusion detection, file integrity monitoring, and customizable SSH security provide a rugged but agile platform for countering the action of the ever-evolving nature of cyberthreats. This is the consolidated project which combined all these components into an organization and gave it the entire enhance capability on its cyber security posture so as to enable proactive threat detection and response. Centralized security dashboard via a Django web interface would help the administrators in monitoring security events, configuration settings for detection, and getting easy-to-read system logs.
Pages:
3230 - 3234