Corelight Bright Ideas Blog: NDR & Threat Hunting Blog

Celebrating CrowdStrike’s New Network Detection Service | Corelight

Written by Allen Marin | Jun 1, 2023 5:00:44 PM

Several months ago, we announced that our strategic alliance partner CrowdStrike decided to use our Open NDR technology across its professional services portfolio. This wasn’t just a meaningful validation for us—it was also a testament to the importance CrowdStrike places in arming its world-class Services teams with the technology that can best ensure the protection of its customers.

As an inaugural CrowdXDR Alliance partner and Falcon Fund investment participant, we couldn’t be more proud to work with a strategic partner that shares our vision and passion for advanced network security. Together, we’re committed to providing joint customers with unparalleled visibility and insight into their network activity, including north-south and east-west traffic, encrypted packets, asset inventory, and evolving zero-day threats across their distributed environments.

With Corelight, CrowdStrike Services teams now have the comprehensive network data to accelerate investigations and hunt for threats across all IT, IoT, and Industrial Control System (ICS) networks. CrowdStrike consultants and analysts can take advantage of the rich, correlated network evidence to detect tactics, techniques, and procedures (TTPs) often missed by legacy network security and endpoint tools. Cyberthreats are always evolving, and the solutions to stop them should too.

To that end, combining network evidence with machine learning from Corelight delivers powerful insights to keep CrowdStrike teams focused on the most critical detections. The result is a solution that increases security for customers by significantly reducing lingering visibility gaps, incident response times, and adversary dwell times.

While we’ve been enabling the global CrowdStrike Services teams on how Corelight can help organizations maintain a more secure posture, CrowdStrike decided to rename its Falcon Network as a Service offering to CrowdStrike Network Detection Service, “powered by Corelight.” The name change reflects new advanced capabilities that include:

  • Visibility to detect threats at the network layer
  • Powerful threat hunting through network protocol metadata analysis
  • Advanced analytics to find command and control (C2) activity in encrypted traffic
  • A fully integrated intrusion detection system
  • Flexible deployment options with physical or virtual sensors for your environment

With a shared mission of helping customers stay ahead of ever-changing cyber attacks, we couldn’t be more honored to be selected by CrowdStrike to bring these advanced offerings to market.

If you’re looking to power your security team with the same advanced network evidence that CrowdStrike Services uses, contact us today.

And to learn more about Corelight’s native integration across the CrowdStrike portfolio, register for our upcoming webinar “Supercharge SecOps with Long-Term Evidence.” Register today.