Integrating CrowdStrike Falcon Next-Gen SIEM with the Delinea Platform

This integration connects CrowdStrike Falcon Next-Gen SIEM with the Delinea Platform to forward audit logs via webhooks using the HTTP Event Connector (HEC).

By implementing this integration, administrators can centralize Delinea Platform security events in CrowdStrike Falcon for correlation and analysis, providing comprehensive visibility into privileged access activities across the organization.

Prerequisites

The integration of CrowdStrike Falcon Next-Gen SIEM with the Delinea Platform requires that the following requirements be met.

Delinea Platform Requirements

  • The Delinea Platform is properly provisioned and configured in your environment. For more information about provisioning and configuring the Delinea Platform, see the Delinea Platform documentation.

  • You have administrator permissions for managing webhooks in the Delinea Platform.

CrowdStrike Falcon Requirements

  • A subscription to Falcon Next-Gen SIEM or Falcon Next-Gen SIEM 10 GB.

  • CrowdStrike Falcon Administrator or Connector Manager privileges.

  • Access to the CrowdStrike Falcon console.

Network Requirements

Firewall rules allow outbound HTTPS traffic to the CrowdStrike API endpoint.

To learn more about this integration, see the Delinea Platform documentation.