Science University Research Symposium (SURS)
Mini-SIEM
Publication Date
Fall 11-10-2025
College
College of Sciences & Mathematics
Department
Math and Computer Science, Department of
SURS Faculty Advisor
Dr. Fox
Presentation Type
Poster Presentation
Abstract
This project presents the design and implementation of a mini-Security Information and Event Management (SIEM) system using PostgreSQL and Python. A SIEM enables real-time cybersecurity analytics through log ingestion, normalization, and correlation to identify suspicious behavior. The system developed in this project demonstrates how structured SQL queries can detect common attack patterns such as brute-force authentication attempts, lateral movement across hosts, and data exfiltration events. By building an open-source, database-driven SIEM pipeline, this project highlights the intersection of data engineering and cybersecurity analytics. The final deliverables include a poster presentation and a live demonstration showing how raw JSON logs are transformed into structured security alerts with severity scores, mimicking the functionality of enterprise SIEM platforms such as Splunk and Elastic SIEM
Recommended Citation
McDonald, Jeremiah R., "Mini-SIEM" (2025). Science University Research Symposium (SURS). 272.
https://repository.belmont.edu/surs/272
