-

CrowdStrike Launches Insider Risk Services to Combat Insider Threats

New services integrate industry-leading technology, threat intelligence and human expertise to harden defenses against insider risks

AUSTIN, Texas--(BUSINESS WIRE)--CrowdStrike (NASDAQ: CRWD) today launched CrowdStrike Insider Risk Services, a comprehensive set of offerings designed to help organizations detect and prevent insider threats from negligent employees, malicious insiders and sophisticated adversaries. With CrowdStrike’s new services, organizations can proactively address vulnerabilities, strengthen defenses and mitigate insider risks before they escalate.

The total average cost of activities to resolve insider threats over a 12-month period has risen to $16.2 million, highlighting the impact insider incidents can have on an organization. Insider threats have evolved to include both adversaries posing as legitimate employees to exploit trust and infiltrate environments, as well as internal employees compromising security through negligence or malicious intent. Despite these challenges, many organizations still lack a formal insider risk program, leaving critical gaps in their defenses.

CrowdStrike Insider Risk Services empowers organizations to proactively identify and mitigate insider risks before they escalate. By combining the industry-leading threat detection and response capabilities of the CrowdStrike Falcon® cybersecurity platform with advanced threat intelligence, threat hunting, tailored assessments, program reviews and expert-led incident response, CrowdStrike delivers multi-layered defense strategies that set the standard for insider risk management.

CrowdStrike’s intelligence-driven approach recently uncovered tactics used by the DPRK-nexus adversary FAMOUS CHOLLIMA, a prolific insider threat group that infiltrated over 200 U.S. technology companies by disguising malicious activities as legitimate employment – highlighting the critical need for proactive defenses against insider risks.

Key service offerings include:

  • Insider Risk Program and Technical Reviews: Identify gaps and strengthen security posture using CrowdStrike’s leading intelligence and 24/7 threat hunting capabilities.
  • Tabletop Exercises and Red Team Simulations: Test defenses, enhance detection capabilities and uncover vulnerabilities through real-world insider threat scenarios.
  • Incident Response: Reduce response times to swiftly contain and mitigate risk from insider incidents with expert-led services powered by adversary-driven threat intelligence and telemetry from the Falcon platform.

“Today’s insider risks, whether caused by an accident, negligence, or a sophisticated adversary, demand proactive and comprehensive protection to safeguard critical assets and minimize any potential impact,” said Thomas Etheridge, chief global services officer, CrowdStrike. “With deep adversary insights, extensive experience in countering complex threats and industry-leading visibility and protection provided by the Falcon platform, CrowdStrike Insider Risk Services sets a new standard for combating the modern insider threat.”

To learn more about CrowdStrike Insider Risk Services, please visit our blog and website.

About CrowdStrike

CrowdStrike (NASDAQ: CRWD), a global cybersecurity leader, has redefined modern security with the world’s most advanced cloud-native platform for protecting critical areas of enterprise risk – endpoints and cloud workloads, identity and data.

Powered by the CrowdStrike Security Cloud and world-class AI, the CrowdStrike Falcon® platform leverages real-time indicators of attack, threat intelligence, evolving adversary tradecraft and enriched telemetry from across the enterprise to deliver hyper-accurate detections, automated protection and remediation, elite threat hunting and prioritized observability of vulnerabilities.

Purpose-built in the cloud with a single lightweight-agent architecture, the Falcon platform delivers rapid and scalable deployment, superior protection and performance, reduced complexity and immediate time-to-value.

CrowdStrike: We stop breaches.

Learn more: https://www.crowdstrike.com/

Follow us: Blog | Twitter | LinkedIn | Facebook | Instagram

Start a free trial today: https://www.crowdstrike.com/free-trial-guide/

© 2025 CrowdStrike, Inc. All rights reserved. CrowdStrike and CrowdStrike Falcon are marks owned by CrowdStrike, Inc. and are registered in the United States and other countries. CrowdStrike owns other trademarks and service marks and may use the brands of third parties to identify their products and services.

Contacts

Media Contact
Jake Schuster
CrowdStrike Corporate Communications
press@crowdstrike.com

CrowdStrike, Inc.

NASDAQ:CRWD

Release Versions

Contacts

Media Contact
Jake Schuster
CrowdStrike Corporate Communications
press@crowdstrike.com

More News From CrowdStrike, Inc.

CrowdStrike Falcon Cloud Security Delivered a 264% Return on Investment Over Three Years, with a Payback Period of Under Six Months

AUSTIN, Texas--(BUSINESS WIRE)--CrowdStrike (NASDAQ: CRWD) today announced the findings of a commissioned Total Economic Impact™ (TEI) study, conducted by Forrester Consulting on behalf of CrowdStrike. The study found that a composite organization representative of interviewed customers that deployed CrowdStrike Falcon® Cloud Security achieved a 264% return on investment (ROI) by unifying posture management and runtime protection on a single platform that secures cloud workloads and AI infrastr...

CrowdStrike Named Google Cloud Security Partner of the Year for the Second Consecutive Year

AUSTIN, Texas--(BUSINESS WIRE)--CrowdStrike (NASDAQ: CRWD) today announced it has been named the 2026 Google Cloud Security Partner of the Year for Infrastructure Protection, marking the second consecutive year Google Cloud has recognized CrowdStrike’s leadership in securing modern cloud and AI environments. CrowdStrike was also named a Google Agent Cloud Ecosystem launch partner, reinforcing its role as the security platform of choice as organizations build and scale AI-driven applications. As...

CrowdStrike Extends Its Real-Time Cloud Detection and Response to Google Cloud

AUSTIN, Texas--(BUSINESS WIRE)--Google Cloud Next 2026 — CrowdStrike (NASDAQ: CRWD) today announced the expansion of its Cloud Detection and Response (CDR) capabilities to Google Cloud. As adversaries weaponize AI to infiltrate cloud environments and move laterally across systems faster than ever, CrowdStrike CDR detects and stops cloud attacks the moment they begin. CrowdStrike’s CDR accelerates the shift from fragmented, posture-only cloud security tools to unified, real-time protection acros...
Back to Newsroom