-

CrowdStrike Announces General Availability of Falcon XDR, Extending Industry-Leading Threat Detection, Investigation, Response, and Hunting Capabilities Across the Security Stack

Falcon XDR brings together world-class threat hunting, machine learning (ML), artificial intelligence (AI) and indicators of attack (IOAs) with third-party data sources to correlate events and deliver real-time detections

AUSTIN, Texas--(BUSINESS WIRE)--CrowdStrike Holdings, Inc. (Nasdaq: CRWD), a leader in cloud-delivered protection of endpoints, cloud workloads, identity and data, today announced the general availability of its Falcon XDR module, extending CrowdStrike’s industry-leading endpoint detection and response (EDR) capabilities to improve threat visibility across the enterprise, simplify security operations and dramatically speed up response time, containment and remediation of the most sophisticated attacks.

“One of the ways to address the cybersecurity skills gap is to empower security teams to work more effectively," said Amol Kulkarni, chief product and engineering officer at CrowdStrike. "Falcon XDR helps to address this problem by correlating weak, siloed threat signals into prioritized alerts from a centralized console for security teams to ensure their investigations are meaningful and efficient."

Falcon XDR enables security teams to:

  • Unify detection and response security data. Falcon XDR takes third-party data (including network security, email security, web security, cloud security and cloud access security broker [CASB]) from third-party vendors, including CrowdXDR Alliance partners, and correlates it with data from the CrowdStrike Security Cloud to optimize real-time threat detection, investigation, response and hunting.
  • Get the right answers – fast. Falcon XDR speeds up triage and investigation for security operations center (SOC) analysts and threat hunters by delivering one central console for accurate alert prioritization, flexible search scheduling and detection customization, full attack context and interactive graph visualization.
  • Turn XDR insight into action. To orchestrate and automate response across security workflows, Falcon Fusion, a security orchestration, automation and response (SOAR) framework, is built natively into the Falcon platform. Security teams can improve SOC and IT efficiencies by building real-time notification and response capabilities, along with customizable triggers based on detection and incident categorizations. Falcon Fusion is free for CrowdStrike customers.
  • Increase efficiency of SOC operations. Falcon XDR automatically correlates and provides high-quality detection data across the security stack. It dramatically speeds investigation and hunting by providing a common search interface directly from the CrowdStrike Security Cloud.
  • Improve return on investment (ROI) of existing security investments. Falcon XDR uncovers actionable insights from previously siloed data in disparate, disconnected security products from across the IT stack.

“CrowdStrike have spent years building and refining their detection and response automation capabilities,” said Dave Gruber, principal analyst at Enterprise Strategy Group (ESG). “As market interest in XDR continues to accelerate, CrowdStrike is well-positioned to expand into XDR, capitalizing on their existing, mature and scalable EDR infrastructure, as they invest in new data ingest, analysis and advanced threat detection capabilities required to respond to a more sophisticated threat landscape. CrowdStrike’s alliance-driven XDR strategy should enable them to readily ingest telemetry from a broad range of third-party security solutions into their Security Cloud, offering security teams flexibility in their choice of other core security controls.”

For more information on Falcon XDR, please visit our blog.

To watch a Falcon XDR demo, please click here.

About CrowdStrike

CrowdStrike Holdings, Inc. (Nasdaq: CRWD), a global cybersecurity leader, has redefined modern security with one of the world’s most advanced cloud-native platforms for protecting critical areas of enterprise risk – endpoints and cloud workloads, identity and data.

Powered by the CrowdStrike Security Cloud and world-class AI, the CrowdStrike Falcon® platform leverages real-time indicators of attack, threat intelligence, evolving adversary tradecraft and enriched telemetry from across the enterprise to deliver hyper-accurate detections, automated protection and remediation, elite threat hunting and prioritized observability of vulnerabilities.

Purpose-built in the cloud with a single lightweight-agent architecture, the Falcon platform delivers rapid and scalable deployment, superior protection and performance, reduced complexity and immediate time-to-value.

CrowdStrike: We stop breaches.

Learn more: https://www.crowdstrike.com/
Follow us: Blog | Twitter | LinkedIn | Facebook | Instagram
Start a free trial today: https://www.crowdstrike.com/free-trial-guide/

© 2022 CrowdStrike, Inc. All rights reserved. CrowdStrike, the falcon logo, CrowdStrike Falcon and CrowdStrike Threat Graph are marks owned by CrowdStrike, Inc. and registered with the United States Patent and Trademark Office, and in other countries. CrowdStrike owns other trademarks and service marks, and may use the brands of third parties to identify their products and services.

Contacts

Kevin Benacci
CrowdStrike Corporate Communications
press@crowdstrike.com

CrowdStrike Holdings, Inc.

NASDAQ:CRWD

Release Summary
CrowdStrike Announces Availability of Falcon XDR, Extending Industry-Leading Threat Detection, Investigation, Response, and Hunting Capabilities
Release Versions

Contacts

Kevin Benacci
CrowdStrike Corporate Communications
press@crowdstrike.com

More News From CrowdStrike Holdings, Inc.

CrowdStrike, AWS, and NVIDIA Announce Startup Accelerator Finalists Ahead of RSAC™ 2026; Robert Herjavec Joins as Celebrity Judge

AUSTIN, Texas--(BUSINESS WIRE)--CrowdStrike (NASDAQ: CRWD) today announced the six finalists for the third annual Cybersecurity Startup Accelerator with Amazon Web Services (AWS) and NVIDIA through its Inception program – with finalists set to take the stage at Startup Nest, the live pitch event at RSAC™ 2026, where the next generation of cybersecurity leaders is decided. Cybersecurity expert and entrepreneur Robert Herjavec will also join the Startup Nest judging panel. “What CrowdStrike has b...

CrowdStrike Achieves FedRAMP High Authorization for Federal XIoT and OT Security

AUSTIN, Texas & WASHINGTON--(BUSINESS WIRE)--Fal.Con Gov 2026 -- CrowdStrike (NASDAQ: CRWD) today announced that Falcon® for XIoT has achieved Federal Risk and Authorization Management Program (FedRAMP) High Authorization, expanding CrowdStrike’s protection to federal operational and connected infrastructure at the government's highest authorization baseline. Delivered through the FedRAMP High-authorized Falcon® platform in GovCloud, Falcon for XIoT protects the mission-critical systems that po...

CrowdStrike Expands GovCloud Offerings to Advance National Cybersecurity with Speed and Control

AUSTIN, Texas & WASHINGTON--(BUSINESS WIRE)--Fal.Con Gov 2026 - CrowdStrike (NASDAQ: CRWD) today announced expanded capabilities in GovCloud, bringing more of the battle-tested Falcon® platform to U.S. public sector defenders. With new agentic automation, proactive threat defense, unified IT/OT protection, and flexible procurement within its Federal Risk and Authorization Management Program (FedRAMP) High-authorized environment, CrowdStrike is accelerating the public sector’s shift from manual...
Back to Newsroom