Prosiding Seminar Nasional Sisfotek (Sistem Informasi dan Teknologi Informasi)
Vol 9 No 1 (2025): SISFOTEK IX 2025

Implementasi Security Information and Event Management (SIEM) Wazuh Untuk Deteksi Malware

Zaenal Mutaqin Subekti (Unknown)
Mami Maryati (Unknown)
Suhadi (Unknown)
Subandri (Unknown)
Sabar Hanadwiputra (Unknown)
Danniswara Putra Patria (Unknown)



Article Info

Publish Date
23 Jan 2026

Abstract

With the development of ICT (Information and Communication Technology), cybersecurity threats to companies are becoming increasingly complex and diverse, one of which is malware that can attack endpoint devices such as computers/laptops and servers in companies. An effective approach in dealing with these challenges is to implement a SIEM (Security Information and Event Management) system that is able to monitor, analyze, and respond to security incidents in real-time by implementing an endpoint security monitoring system using the Wazuh platforsm in a structured corporate network environment. The method used in this study is the PPDIOO Method (Prepare, Plan, Design, Implement, Operate, Optimize). As a stage starting with (a) prepare is used to analyze needs, (b) plan to design IP addresses, (c) design to design network topology, (d) implement, namely implementing SIEM with wazuh installation and configuration by setting Path scanning warning malware files, (e) operate to monitor and test wazuh, (f) optimize to make modifications to improve system performance. The results of this study are that the test that has been carried out wazuh as much as 1 time can detect malware on one endpoint device and On the Wazuh dashboard, an alert notification appears that the desktop endpoint received a real-time malware attack numbering one and malware warning notifications are sent to telegram bots so that users are immediately aware, this shows that wazuh can be used to analyze, monitor and respond to security incidents

Copyrights © 2025






Journal Info

Abbrev

SISFOTEK

Publisher

Subject

Computer Science & IT

Description

Seminar Nasional Sistem Informasi dan Teknologi (SISFOTEK) merupakan ajang pertemuan ilmiah, sarana diskusi dan publikasi hasil penelitian maupun penerapan teknologi terkini dari para praktisi, peneliti, akademisi dan umum di bidang sistem informasi dan teknologi dalam artian ...