-

CrowdStrike Launches Insider Risk Services to Combat Insider Threats

New services integrate industry-leading technology, threat intelligence and human expertise to harden defenses against insider risks

AUSTIN, Texas--(BUSINESS WIRE)--CrowdStrike (NASDAQ: CRWD) today launched CrowdStrike Insider Risk Services, a comprehensive set of offerings designed to help organizations detect and prevent insider threats from negligent employees, malicious insiders and sophisticated adversaries. With CrowdStrike’s new services, organizations can proactively address vulnerabilities, strengthen defenses and mitigate insider risks before they escalate.

The total average cost of activities to resolve insider threats over a 12-month period has risen to $16.2 million, highlighting the impact insider incidents can have on an organization. Insider threats have evolved to include both adversaries posing as legitimate employees to exploit trust and infiltrate environments, as well as internal employees compromising security through negligence or malicious intent. Despite these challenges, many organizations still lack a formal insider risk program, leaving critical gaps in their defenses.

CrowdStrike Insider Risk Services empowers organizations to proactively identify and mitigate insider risks before they escalate. By combining the industry-leading threat detection and response capabilities of the CrowdStrike Falcon® cybersecurity platform with advanced threat intelligence, threat hunting, tailored assessments, program reviews and expert-led incident response, CrowdStrike delivers multi-layered defense strategies that set the standard for insider risk management.

CrowdStrike’s intelligence-driven approach recently uncovered tactics used by the DPRK-nexus adversary FAMOUS CHOLLIMA, a prolific insider threat group that infiltrated over 200 U.S. technology companies by disguising malicious activities as legitimate employment – highlighting the critical need for proactive defenses against insider risks.

Key service offerings include:

  • Insider Risk Program and Technical Reviews: Identify gaps and strengthen security posture using CrowdStrike’s leading intelligence and 24/7 threat hunting capabilities.
  • Tabletop Exercises and Red Team Simulations: Test defenses, enhance detection capabilities and uncover vulnerabilities through real-world insider threat scenarios.
  • Incident Response: Reduce response times to swiftly contain and mitigate risk from insider incidents with expert-led services powered by adversary-driven threat intelligence and telemetry from the Falcon platform.

“Today’s insider risks, whether caused by an accident, negligence, or a sophisticated adversary, demand proactive and comprehensive protection to safeguard critical assets and minimize any potential impact,” said Thomas Etheridge, chief global services officer, CrowdStrike. “With deep adversary insights, extensive experience in countering complex threats and industry-leading visibility and protection provided by the Falcon platform, CrowdStrike Insider Risk Services sets a new standard for combating the modern insider threat.”

To learn more about CrowdStrike Insider Risk Services, please visit our blog and website.

About CrowdStrike

CrowdStrike (NASDAQ: CRWD), a global cybersecurity leader, has redefined modern security with the world’s most advanced cloud-native platform for protecting critical areas of enterprise risk – endpoints and cloud workloads, identity and data.

Powered by the CrowdStrike Security Cloud and world-class AI, the CrowdStrike Falcon® platform leverages real-time indicators of attack, threat intelligence, evolving adversary tradecraft and enriched telemetry from across the enterprise to deliver hyper-accurate detections, automated protection and remediation, elite threat hunting and prioritized observability of vulnerabilities.

Purpose-built in the cloud with a single lightweight-agent architecture, the Falcon platform delivers rapid and scalable deployment, superior protection and performance, reduced complexity and immediate time-to-value.

CrowdStrike: We stop breaches.

Learn more: https://www.crowdstrike.com/

Follow us: Blog | Twitter | LinkedIn | Facebook | Instagram

Start a free trial today: https://www.crowdstrike.com/free-trial-guide/

© 2025 CrowdStrike, Inc. All rights reserved. CrowdStrike and CrowdStrike Falcon are marks owned by CrowdStrike, Inc. and are registered in the United States and other countries. CrowdStrike owns other trademarks and service marks and may use the brands of third parties to identify their products and services.

Contacts

Media Contact
Jake Schuster
CrowdStrike Corporate Communications
press@crowdstrike.com

CrowdStrike, Inc.

NASDAQ:CRWD

Release Versions

Contacts

Media Contact
Jake Schuster
CrowdStrike Corporate Communications
press@crowdstrike.com

More News From CrowdStrike, Inc.

CrowdStrike Named a Customers’ Choice in the 2026 Gartner® Peer Insights™ ‘Voice of the Customer’ for Security Information and Event Management Report

AUSTIN, Texas--(BUSINESS WIRE)--CrowdStrike (NASDAQ: CRWD) has been named a Customers’ Choice in the 2026 Gartner Peer Insights™ ‘Voice of the Customer’ for Security Information and Event Management (SIEM) report.1 CrowdStrike received the most 5-star ratings and the most verified reviews of any vendor in the report, based on 278 overall responses as of 31 January 2026. As organizations face AI-accelerated threats across more systems and data than ever, CrowdStrike Falcon® Next-Gen SIEM deliver...

CrowdStrike Named a Customers’ Choice in the 2026 Gartner Peer Insights™ ‘Voice of the Customer’ for Managed Detection and Response Report

AUSTIN, Texas--(BUSINESS WIRE)--CrowdStrike (NASDAQ: CRWD) today announced it has been recognized as a Customers’ Choice in the 2026 Gartner Peer Insights™ ‘Voice of the Customer’ for Managed Detection and Response (MDR) report. CrowdStrike Falcon® Complete received a 98% willingness to recommend score based on 137 overall responses as of 31 January 2026.1 As adversaries weaponize AI to scale and accelerate attacks against teams stretched thin, CrowdStrike’s Agentic MDR combines elite analyst e...

CrowdStrike and HCLTech Expand Strategic Partnership with AI-Powered Continuous Threat Exposure Management Services

AUSTIN, Texas & NEW YORK & NOIDA, India--(BUSINESS WIRE)--CrowdStrike (NASDAQ: CRWD) and HCLTech today announced an expansion of their strategic partnership with the launch of Continuous Threat Exposure Management (CTEM) services. This joint offering enables continuous, intelligence-led identification, prioritization, and remediation of exposure across endpoints, cloud, identity, applications, and data, helping enterprises maintain an always-on view of exposure and address risk in a more struct...
Back to Newsroom