Udemy

CrowdStrike: For SOC Analysts

立即報名
  • 10,373 名學生
  • 更新於 11/2025
4.6
(2,011 個評分)
CTgoodjobs 嚴選優質課程,為職場人士提升競爭力。透過本站連結購買Udemy課程,本站將獲得推廣佣金,有助未來提供更多實用進修課程資訊給讀者。

課程資料

報名日期
全年招生
課程級別
學習模式
修業期
3 小時 45 分鐘
教學語言
英語
授課導師
Hailie Shaw
評分
4.6
(2,011 個評分)

課程簡介

CrowdStrike: For SOC Analysts

Disclaimer: This course offered independently by Blue Team Consulting, LLC and is not affiliated with CrowdStrike, Inc.

Module 1: Console Overview Get acquainted with the CrowdStrike console, your command center for proactive threat detection and incident response. Explore its interface, functionalities, and navigation to ensure a solid foundation for the rest of the course.

Module 2: Where to Spend Your Time Learn to prioritize effectively in a dynamic threat landscape. Understand the critical areas of focus within the CrowdStrike console to optimize your time and as it pertains to SOC work.

Module 3: Triaging a Detection Master the art of rapid detection triage. Develop skills to assess the severity of a detection, determine its scope, and decide on appropriate immediate actions.

Module 4: Useful Open Source Tools to Use Discover a curated toolkit of open-source resources that complement the CrowdStrike platform. Explore how to leverage these tools to enhance your threat intelligence and investigative capabilities.

Module 5: Event Search / CQL Delve into advanced event search techniques and learn how to craft powerful queries in CQL. Learn how to conduct host analysis and leveraging endpoint logs to your advantage.

Module 6: Real-Time Response Features Equip yourself with CrowdStrike's real-time response arsenal. Dive into containment strategies, remote actions, scripting, and other instant response capabilities.

Module 7: Sandbox & Blocking Actions Explore the CrowdStrike sandbox environment and understand its role in threat analysis. Learn to implement blocking actions effectively to halt threats in their tracks.

Module 8: Whitelisting / Exclusions Navigate the nuances of whitelisting and exclusions. Gain insights into striking the right balance between security and operational efficiency.

Module 9: Putting It All Together Immerse yourself in realistic scenarios where you'll apply your newfound knowledge. Walk through end-to-end incident response processes, from detection to resolution.

Module 10: Where to Go Next Chart your future course in the realm of cybersecurity. Discover avenues for continued learning, specialization, and skill refinement to stay ahead in the ever-evolving threat landscape.

課程章節

  • 1 個章節
  • 18 堂課
  • 第 1 章 CrowdStrike: for SOC Analysts

課程內容

  • Create Custom Rules and Policies
  • Understand CrowdStrike Fundamentals
  • Analyze Endpoint Data
  • Detect and Investigate Threats
  • Console Navigation and Features
  • Real Time Response Actions and Scripts
  • Threat Hunt in CrowdStrike


評價

  • D
    Devarapallivinay Kumar
    3.0

    ok want deep explanation on live practice and all

  • R
    Riyan S
    4.0

    you should make a demo that there's an alert of domain and it blocked by the cs

  • H
    Hope Barwig
    4.0

    It was good for an introduction and exposure to features of the tool and interface.

  • R
    Rob Austin
    3.0

    Materials are heavily outdated due to Crowdstrike no longer using Splunk for their search functionality within the tool. Other content was fine, but many of the search and correlation modules are irrelevant due to Splunk being replaced with Logscale.

立即關注瀏覽更多

本網站使用Cookies來改善您的瀏覽體驗,請確定您同意及接受我們的私隱政策使用條款才繼續瀏覽。

我已閱讀及同意