Science University Research Symposium (SURS)

Mini-SIEM

Publication Date

Fall 11-10-2025

College

College of Sciences & Mathematics

Department

Math and Computer Science, Department of

SURS Faculty Advisor

Dr. Fox

Presentation Type

Poster Presentation

Abstract

This project presents the design and implementation of a mini-Security Information and Event Management (SIEM) system using PostgreSQL and Python. A SIEM enables real-time cybersecurity analytics through log ingestion, normalization, and correlation to identify suspicious behavior. The system developed in this project demonstrates how structured SQL queries can detect common attack patterns such as brute-force authentication attempts, lateral movement across hosts, and data exfiltration events. By building an open-source, database-driven SIEM pipeline, this project highlights the intersection of data engineering and cybersecurity analytics. The final deliverables include a poster presentation and a live demonstration showing how raw JSON logs are transformed into structured security alerts with severity scores, mimicking the functionality of enterprise SIEM platforms such as Splunk and Elastic SIEM

This document is currently not available here.

Share

COinS