Back to Projects
Business Systems House 2026

SIEM & Centralized Firewall Syslog Aggregation

SIEM & Centralized Firewall Syslog Aggregation
FortiAnalyzer Syslog-ng SIEM FortiGate Linux (Oracle Linux 9.5) Logrotate

SIEM & Centralized Firewall Syslog Aggregation

Deployed a dedicated Syslog server infrastructure to aggregate and index security event logs from enterprise FortiGate firewalls and core switches.

Key Features & Implementation

  • Centralized Log Ingestion: Standardized Syslog forwarding protocols from perimeter firewalls to an isolated log collector appliance.
  • SIEM Integration & Parsing: Configured log parsing rules and automated alerts for brute-force attacks, policy violations, and anomaly detection.
  • Retention & Compliance: Established automated log compression, rotation, and encrypted long-term storage to meet ISO/UAE compliance.
ROOT ACCESS GRANTED