Citadock Practical Academy
Open-Source Security Tools
Gain practical experience selecting, deploying, configuring, and integrating open-source security tools. Work with platforms for security monitoring, threat intelligence sharing, and incident management. Learn to evaluate tools, build integrations, and maintain deployments in operational environments.
WazuhMISPTheHiveTool IntegrationSecurity Engineering
Cohort Specifics
Cohort Size
Small batch (max 20) for personalized mentor guidance
Format & Delivery
Scheduled live batches delivered online and in person, with hands-on lab work using virtual environments and open-source security platforms.
Verification
Verifiable portfolio projects & capstone validation
Who Is This Program For?
- ✓Security professionals interested in open-source solutions
- ✓IT teams evaluating cost-effective security tooling
- ✓Practitioners building or improving security infrastructure
Core Learning Objectives
Evaluate and select appropriate open-source security tools
Deploy and configure tools in lab environments
Build integrations between complementary security platforms
Understand operational maintenance and updates
Create documentation for tool deployments
Assess the trade-offs of open-source vs. commercial solutions
Curriculum Breakdown
01Open-source security tool landscape
02Security monitoring tools (e.g., Wazuh)
03Threat intelligence platforms (e.g., MISP)
04Incident management tools (e.g., TheHive)
05Tool deployment and configuration
06Integration and automation between tools
07Maintenance, updates, and operational considerations
08Evaluating tools for specific use cases
Practical Lab Exercises & Scenarios
Applied Engineering Labs
>Deploy a security monitoring stack in a lab environment
>Configure a threat intelligence platform for IOC management
>Build an integration between monitoring and incident management tools
>Document a complete tool deployment for operational handover
>Evaluate tools against specific use case requirements
Prerequisites
- •Basic Linux administration skills
- •Understanding of security operations concepts
- •Familiarity with networking fundamentals
Course FAQs
The course covers tools like Wazuh, MISP, and TheHive as primary examples. Specific tools may be updated between batches to reflect the current open-source landscape.
Lab environments will be provided during the course. Guidance for setting up your own practice environment will also be shared.
Apply for this Course
Speak directly with a Citadock course mentor to confirm batch schedules, prerequisites, and syllabus details.
Complementary Tracks
SOC Analyst
Develop core security operations skills including monitoring, alert triage, log analysis, investigation workflows, and incident handling.
AI & Security Automation
Automate security workflows, reduce repetitive tasks, leverage AI-assisted analysis, and build efficient security integrations with human oversight.
Cybersecurity Foundations
Build essential security knowledge covering networking fundamentals, common threats, defensive principles, basic tools, and a foundation for specialisation.