Wazuh training
This course provides hands-on training in Wazuh for designing architectures, creating custom detection rules and decoders, mapping to MITRE ATT&CK, using OSQuery and Sysmon with Elastic integration. Participants will tune alerts, hunt threats, and build robust security operations for real-world environments, enabling fast improvement in threat detection and response capabilities.

from 4 to 360h flexible workload
valid certificate in your country
What will I learn?
Wazuh Training offers practical guidance on designing, deploying, and optimizing detection systems in live settings. Explore Wazuh architecture, agent installation, and core modules. Gain expertise in decoders, custom rules, and playbooks for threats like SSH, PowerShell, and web attacks. Apply skills in threat hunting, alert correlation, and response to minimize noise, detect genuine threats, and enhance security operations efficiently.
Elevify advantages
Develop skills
- Design Wazuh architecture: deploy agents, managers, and key modules quickly.
- Create custom Wazuh rules: convert attack logic to XML, test, and deploy safely.
- Master advanced log parsing: build decoders, normalize fields, and eliminate SIEM blind spots.
- Conduct threat hunting with Wazuh: pivot using MITRE, OSQuery, Sysmon, and intel feeds.
- Develop incident response playbooks: triage, correlate alerts, and tune rules rapidly.
Suggested summary
Before starting, you can change the chapters and the workload. Choose which chapter to start with. Add or remove chapters. Increase or decrease the course workload.What our students say
FAQs
Who is Elevify? How does it work?
Do the courses have certificates?
Are the courses free?
What is the course workload?
What are the courses like?
How do the courses work?
What is the duration of the courses?
What is the cost or price of the courses?
What is an EAD or online course and how does it work?
PDF Course