Corelight Recognized as a Leader in the 2025 Gartner® Magic Quadrant™ for Network Detection and Response

Corelight Recognized as a Leader in the 2025 Gartner® Magic Quadrant™ for Network Detection and Response

CONTACT US
Detect and disrupt evasive threats with high-fidelity, multi-layered detection.

Detect and disrupt evasive threats with high-fidelity, multi-layered detection.

SEE HOW

volt-typhoon-warning

Detect advanced attacks with Corelight

SEE HOW

cloud-network

Corelight announces cloud enrichment for AWS, GCP, and Azure

READ MORE

partner-icon-green

Corelight's partner program

BECOME A PARTNER

glossary-icon

10 Considerations for Implementing an XDR Strategy

READ NOW

ad-images-nav_0006_Blog

Don't trust. Verify with evidence

READ BLOG

2025 Gartner® Magic Quadrant for NDR

GET THE REPORT

ad-images-nav_0006_Blog

Detecting 5 Current APTs without heavy lifting

READ BLOG

g2-medal-best-support-spring-2024

Network Detection and Response

SUPPORT OVERVIEW

 

crowdstrike-fal.con-25-wht

 

September 15-18
Las Vegas, NV
MGM Grand

CORELIGHT BOOTH# 1318

Meet us at Fal.Con 2025!

Visit our booth and learn how Corelight expands visibility, improves threat detection coverage, and accelerates incident response by filtering out noise, automating triage, and giving analysts the evidence they need to defend hybrid and multi-cloud environments.

Book a demo with us at Fal.con 2025.

laptop-demo

GET A DEMO

 
guardians-of-network-tshirt

GRAB SOME GEAR

Stay for a demo, get cool stuff.
falcon-badge

NEED A PASS?

Get a 20% 

Corelight Speaking Sessions

 

james-lagermann-headshot

James Lagermann
Director of Tech Alliances
Corelight

Hub theater session

Combat-Tested Intelligence: What the SOC can Learn from the Battlefield

In high-stakes combat zones, military intelligence analysts sift through massive data to find threats fast, prioritize with precision, and act decisively. This session brings those battlefield-honed lessons to the Security Operations Center. We'll explore how the same disciplined approach can be applied to threat intelligence in the SOC to identify early indicators of compromise, eliminate false positives, and focus on mission-critical alerts to reduce alert fatigue and defend more effectively.

Tuesday, September 16th 1:00pm - 1:20pm

dustin-lee

Dusin Lee
Director, Sales Engineering - East
Corelight

Main agenda breakout session

Partnering for Progress: End-to-End SOC Transformation

Experience a comprehensive threat detection and response workflow demonstrating how Consortium, Corelight, CrowdStrike, and Cribl collaborate to showcase groundbreaking security integration. Go inside Consortium's state-of-the-art lab where these industry leaders test and validate complex enterprise security solutions. Learn how Corelight's NTA sensors integrate with Cribl to feed actionable telemetry into Falcon Next-Gen SIEM, and discover practical solutions to real-world challenges with parsers, integrations, and sensor deployment.

This session is perfect for security architects, engineers, and detection developers, this session reveals tested strategies for strengthening platform integrations, reducing operational friction, and implementing MITRE-aligned content. See how this powerful collaboration is transforming enterprise security — from Falcon enrichment to automated detection workflows.

Panelists:

  • Will How, Solution Architect, Alliances, CrowdStrike
  • Jeffrey Serio, Services Manager, Consortium Networks
  • Dustin Lee, Director, Sales Engineering, Corelight
  • Ahmed Kira, Principal Solutions Engineer, Cribl

Thursday, September 18th 1:00pm - 1:45pm

See how Corelight integrates with your toolstack, including:

apex_award_CrowdStrike-1
mandiant logo
microsoft logo
splunk logo
aws logo
googlec cloud logo

Book a demo

Discover how Corelight helps analysts and hunters detect DNS tunneling, find threats in encrypted traffic, and more. Set up a demo with a Corelight expert at Fal.con.

 

demo