Udemy
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
Turn what you know into an opportunity and reach millions around the world.
Learn More
Your cart is empty.
Keep shopping
CrowdStrike Falcon Next-Gen SIEM Bootcamp (Training)
Rating: 3.8 out of 5(68 ratings)
1,369 students

CrowdStrike Falcon Next-Gen SIEM Bootcamp (Training)

This will help you to get Crowdstrike SIEM Engineer Certification
Last updated 1/2026
English

What you'll learn

  • Core architecture and concepts of CrowdStrike Falcon Next-Gen SIEM
  • Setting up and managing users, roles, and permissions
  • Onboarding data and fleet management
  • Creating custom parsers and normalizing log data
  • Writing efficient and advanced CQL queries
  • Designing dashboards
  • Creating detection rules and managing alerts and leads
  • Case management and investigation workflows
  • Automating response using Fusion SOAR
  • Building custom apps using Falcon Foundry

Course content

10 sections26 lectures3h 32m total length
  • Getting Started4:52

    In this video, you’ll get a clear introduction to Crowdstrike Next-Gen SIEM, including what it is, how it differs from legacy SIEMs, and the key benefits of a modern, cloud-native SIEM approach. We’ll also compare Legacy SIEM vs Next-Gen SIEM to highlight architectural and operational differences and finish with a guided walkthrough of the Next-Gen SIEM interface so you know where everything lives before diving deeper into the platform.

Requirements

  • Basic understanding of cybersecurity concepts (logs, alerts, incidents)
  • Familiarity with SIEM or SOC workflows is helpful but not mandatory
  • No prior CrowdStrike experience required

Description

Falcon Next-Gen SIEM Bootcamp is a comprehensive, hands-on course designed to take you from foundational concepts to advanced, real-world implementation of CrowdStrike Falcon Next-Gen SIEM. This course is built for security analysts, SIEM engineers, SOC teams, and cybersecurity professionals who want to move beyond traditional SIEM limitations and master a modern, scalable, cloud-native SIEM platform.

You’ll start by understanding how Next-Gen SIEM differs from legacy SIEM solutions and why organizations are shifting toward CrowdStrike’s unified security and observability approach. From there, the course walks you step-by-step through environment setup, user management, data onboarding, parsing, querying, dashboards, detections, automation, and custom application development.

This is not a theory-only course. Every module focuses on practical implementation, real SOC use cases, and best practices used in production environments. You’ll learn how to transform raw logs into structured data, build powerful queries using CrowdStrike Query Language (CQL), design actionable dashboards, create high-fidelity detections, automate response using Fusion SOAR, and extend Falcon capabilities by building custom apps using Falcon Foundry.

By the end of this bootcamp, you will have the confidence and skills to design, deploy, and operate Falcon Next-Gen SIEM in an enterprise environment, whether you are managing a SOC, supporting customers, or preparing for SIEM engineering roles.

Who this course is for:

  • SIEM Engineers and Security Architects
  • SOC Analysts and SOC Leads
  • Threat Hunters and Detection Engineers
  • Cybersecurity Consultants and MSSP professionals
  • Blue Team and Incident Response professionals
  • Anyone looking to upskill into Next-Gen SIEM and CrowdStrike Falcon