{"product_id":"wazuh-for-modern-socs-from-homelab-siem-to-production-grade-threat-detection-and-open-source-soc-operations-9798246347751","title":"Wazuh for Modern SOCs: From Homelab SIEM to Production-Grade Threat Detection and Open-Source SOC Operations","description":"\u003cp\u003e • Author(s): Vihaan Kulkarni\u003cbr\u003e • Publisher: Independently Published\u003cbr\u003e • Publisher Imprint: Independently Published\u003cbr\u003e • BISAC: System Administration - Linux \u0026amp; UNIX Administration\u003c\/p\u003e\u003cp\u003e\u003c\/p\u003e\u003cp\u003e\u003cb\u003eWazuh for Modern SOCs\u003c\/b\u003e is a practical, operator-grade guide to building, running, and validating a \u003cb\u003ereal Security Operations Center\u003c\/b\u003e using open-source tooling-without theory, fluff, or vendor hype.\u003c\/p\u003e\u003cp\u003eThis book is written for practitioners who want more than dashboards and alert noise. It shows you how to design a SOC that \u003cb\u003eactually detects\u003c\/b\u003e, \u003cb\u003eresponds safely\u003c\/b\u003e, \u003cb\u003esurvives failure\u003c\/b\u003e, and \u003cb\u003eearns trust in production environments\u003c\/b\u003e-from a homelab foundation to a production-grade open-source SOC.\u003c\/p\u003e\u003cp\u003eRather than focusing on isolated features, this book walks you through the \u003cb\u003eentire SOC lifecycle\u003c\/b\u003e: \u003c\/p\u003e\u003cul\u003e\n\u003cli\u003eDesigning clean, segmented architectures where telemetry is trustworthy\u003c\/li\u003e\n\u003cli\u003eEngineering detections that map to real attacker behavior, not checkbox compliance\u003c\/li\u003e\n\u003cli\u003eCorrelating endpoint, network, identity, and cloud signals into triage-ready alerts\u003c\/li\u003e\n\u003cli\u003eImplementing response automation with approval gates, rate limits, and rollbacks\u003c\/li\u003e\n\u003cli\u003ePreserving evidence, reconstructing timelines, and explaining incidents clearly\u003c\/li\u003e\n\u003cli\u003eProving readiness through simulations, metrics, upgrade rehearsals, and DR tests\u003c\/li\u003e\n\u003c\/ul\u003e\u003cp\u003eEvery chapter is \u003cb\u003ehands-on and outcome-driven\u003c\/b\u003e. You build detection rules, tune false positives, deploy sensors, onboard endpoints, simulate incidents, execute response playbooks, and validate the SOC under realistic conditions. A full-stack capstone project brings everything together, culminating in a \u003cb\u003eSOC Readiness Report\u003c\/b\u003e that demonstrates operational maturity.\u003c\/p\u003e\u003cp\u003eThis book goes beyond \"how to install Wazuh\" and addresses the problems most SOCs struggle with: \u003c\/p\u003e\u003cul\u003e\n\u003cli\u003eAlert fatigue and poor signal quality\u003c\/li\u003e\n\u003cli\u003eUnsafe automation that breaks production\u003c\/li\u003e\n\u003cli\u003eMissing evidence and weak incident narratives\u003c\/li\u003e\n\u003cli\u003eFragile upgrades and untested disaster recovery\u003c\/li\u003e\n\u003cli\u003eSOC platforms that fail under pressure\u003c\/li\u003e\n\u003c\/ul\u003e\u003cp\u003eBy the end of this book, you will have built a \u003cb\u003edefensible, auditable, production-ready SOC\u003c\/b\u003e-one that prioritizes clarity over noise, safety over speed, and evidence over assumption.\u003c\/p\u003e\u003cb\u003eWho This Book Is For\u003c\/b\u003e\u003cul\u003e\n\u003cli\u003eSOC analysts and detection engineers\u003c\/li\u003e\n\u003cli\u003eBlue team and security operations practitioners\u003c\/li\u003e\n\u003cli\u003eDevOps and platform engineers supporting SOC infrastructure\u003c\/li\u003e\n\u003cli\u003eSecurity professionals building homelab or small-to-mid-scale SOCs\u003c\/li\u003e\n\u003cli\u003eTeams transitioning from tool-centric SIEM setups to behavior-driven detection\u003c\/li\u003e\n\u003c\/ul\u003e\u003cb\u003eWhat You'll Be Able to Do\u003c\/b\u003e\u003cul\u003e\n\u003cli\u003eBuild an open-source SOC from scratch and scale it safely\u003c\/li\u003e\n\u003cli\u003eDesign high-value detections mapped to attacker behavior\u003c\/li\u003e\n\u003cli\u003eCorrelate signals across endpoint, network, identity, and cloud\u003c\/li\u003e\n\u003cli\u003eAutomate response without risking outages\u003c\/li\u003e\n\u003cli\u003eProve SOC readiness with metrics, simulations, and recovery tests\u003c\/li\u003e\n\u003c\/ul\u003eIf you want a SOC that \u003cb\u003eworks in real life\u003c\/b\u003e, not just in demos, this book gives you the architecture, workflows, and discipline to build it-and keep it running.","brand":"Independently Published","offers":[{"title":"Paperback","offer_id":47570723143831,"sku":"9798246347751","price":2822.0,"currency_code":"INR","in_stock":false}],"thumbnail_url":"\/\/cdn.shopify.com\/s\/files\/1\/0666\/3471\/1191\/files\/9798246347751.webp?v=1774883831","url":"https:\/\/atlanticbooks.com\/products\/wazuh-for-modern-socs-from-homelab-siem-to-production-grade-threat-detection-and-open-source-soc-operations-9798246347751","provider":"Atlantic Books","version":"1.0","type":"link"}