Configuring Host-Based Intrusion Detection When to Use Use this skill when: - Deploying HIDS agents (Wazuh, OSSEC, AIDE) across Windows and Linux endpoints - Configuring file integrity monitoring (FIM) for compliance (PCI DSS 11.5, NIST SI-7) - Monitoring system configuration changes, rootkit detection, and security policy violations - Integrating HIDS alerts with SIEM platforms for centralized monitoring Do not use this skill for network-based IDS (Suricata, Snort) or for EDR deployment. Prerequisites - Wazuh server (manager) deployed and accessible from endpoints - Administrative access to…