Project Description:
Logging, Monitoring and Detection platform responsible for collecting logs from various applications,
databases, firewalls, proxy servers, etc to maintain it in a single logging platform for various monitoring and
detection purposes, easy identification of application and other services issues, proactive monitoring by
sending various alert to respective stakeholders
Roles and Responsibilities:
● Planning, architecting and installation of elasticsearch nodes to form a high availability cluster by
forecasting the storage and search requirements
● Estimation and expansion of cluster with respect to the requirements periodically
● Automating the installation of elasticsearch components, logstash,kibana and beats by writing ansible roles
and playbooks for easier installation and expansion
● Setting up of kafka topics and brokers to stream logs from various sources and monitoring its health using
beats
● Installation of Prometheus and grafana components for monitoring kubernetes components
● Planning for movement of data from one cluster to another cluster to archive it for a longer period
● Preparing for periodic upgrades of elastic cluster whenever required
● Monitoring of Kubernetes cluster using prometheus and Grafana
● Implementation of elastic SIEM to enable threat alerts and analysis
● Implementation of APM module to continuously monitor various application performance
● Setting up of live application endpoint monitoring using heartbeat and sending alert for faulty applications
● Setting up of RBAC for various users across various application
● Creation and enhancement of kibana dashboard and visuals for various applications
● Implementation of kibana watcher to alert faulty systems
● Generation of monthly kibana reports for various streams for data analytics