AlienApp for Crowdstrike Falcon

Protect endpoints with the AlienApp for Crowdstrike Falcon.

  • Crowdstrike Falcon
  • Endpoint
  • Detection
  • Response

See All AlienApps + Plug-ins >
AlienApps extend USM Anywhere’s threat detection and orchestration capabilities to other security tools at no additional cost.
Learn more ›

The AlienApp for Crowdstrike Falcon enhances the threat detection capabilities of USM Anywhere by enabling you to monitor and respond to Crowdstrike Falcon events from the USM dashboard.

The AlienApp for Crowdstrike Falcon collects and analyzes log data from Crowdstrike endpoint protection agents and provides orchestration actions to streamline incident response activities, including as isolating a Crowdstrike endpoint in response to threats identified by USM Anywhere.

The AlienApp includes the following capabilities:

  • Collect log messages from Crowdstrike via API
  • Use Crowdstrike detection rules to trigger alarms
  • Use the Crowdstrike “containment” response action to remove endpoints from the production network while threats are being remediated.
  • Use the “Lift Containment” action to return infected devices to the network after they have been cleaned.
  • Trigger actions manually or using automated rules.

USM Anywhere diagram

Why you’ll love the AlienApp for Crowdstrike Falcon

View all Crowdstrike Falcon events and alarms through a consolidated dashboard

Accelerate time to detection & response

  • Investigate incidents efficiently with contextualized threat data
  • Automatically isolate compromised endpoints

Extend your security monitoring capabilities

  • Gain a centralized view of your entire environment directly from USM Anywhere and easily identify which of your business-critical endpoints are most risk
  • Aggregate alerts and events from Crowdstrike Falcon

Direct access to actionable, community-powered threat data

  • Quickly prioritize threats and improve detections with threat intelligence from AT&T Alien Labs and Open Threat Exchange (OTX)

Save time and expense

  • Reduce the time and expense of integrating multiple security products
Get price Free trial