TechValidate Research on CrowdStrike Threat Intelligence

These pages present data that TechValidate has sourced via direct research with verified customers and users of CrowdStrike Threat Intelligence. TechValidate stands behind the authenticity of all published data. Learn more »



174 Customers Surveyed

1,332 Data Points Collected

19 Published TechFacts

8 Published Case Studies



Selected Research Highlights


CrowdStrike Threat Intelligence Customer Testimonial

CrowdStrike Threat Intelligence Customer Testimonial

We are better able to secure our environment and meet the requirements for doing business with the government.

Small Business Industrial Manufacturing Company

CrowdStrike Threat Intelligence Case Study

Large Enterprise Consumer Products Company

Introduction

This case study of a large enterprise consumer products company is based on a November 2023 survey of CrowdStrike Threat Intelligence customers by TechValidate, a 3rd-party research service. The profiled company asked to have their name blinded to protect their confidentiality.

“We use the final product intelligence for briefings to executive and risk teams on wider implications of business activity as it relates to cyber threats. We were able to gain insight into actors targeting our ecommerce platforms for fraud.”

Challenges

What challenges did you or your team experience before using Falcon Intelligence Recon+?

  • Our current detection capabilities were mostly internal and we were concerned about underground threats
  • We were concerned about brand abuse on social media or forums
  • Our organization is often hit by phishing campaigns and needed to verify credential theft
  • We often see fake websites impersonating our organization and going after customers.
  • We were concerned about risks to VIPs or executives mentioned on forums

Which other vendors did you consider before selecting CrowdStrike Threat Intelligence?

  • ZeroFox
  • Digital Shadows / Reliaquest
  • Microsoft

Use Case

Which features of Falcon Intelligence Recon+ do you find most useful?

  • Notifications on exposed data, compromised identities, brand abuse, typo-squatting
  • Assistance from CrowdStrike experts pre-filtering alerts
  • Searching across different forums
  • Weekly reports about ransomware families, access brokers, vulnerability exploits

Surveyed user: “I’m part of the security planning team (Info Sec).”

Results

Why did you choose CrowdStrike Falcon Intel Recon + over others?

  • Assistance from CrowdStrike analysts
  • We use the Falcon platform already for other security offerings and want to keep our consoles consolidated
  • CrowdStrike’s expertise in threat intelligence
  • Recon + covers multiple use cases, valuable to multiple teams without increase in costs

Please rate the following capabilities of CrowdStrike Falcon Intel Recon+ compared to the competition:

  • Continuous coverage of underground forums, marketplaces etc: Significantly Better
  • Discovery of typosquatted domains: Better
  • Monitoring assistance from CrowdStrike Experts: Best In Class
  • Advise on how to mitigate discovered threats: Significantly Better
  • User Experience via Falcon Portal: Significantly Better
  • Vulnerability Intelligence: Better

What benefits did your organization realize following the deployment of CrowdStrike Falcon Intelligence Recon+?

  • We now receive early warnings on digital threats not know before
  • We are better prepared to stop threats from criminals or malicious infrastructure targeting our organization
  • Improved awareness of key eCrime trends (Ransomware campaigns, Access Broker trends …)
  • We can inform our leadership more reliable on emerging threats as they unfold

In your best estimate, by what percent did CrowdStrike improve the following?

  • Improved our threat risk awareness: 50-75%
  • Increased depth of incident investigations: 25-50%
  • Helped to mitigate external threats before they became a problem: 75-100%
  • Reduced our global risk posture: 75-100%
  • Improved effectiveness of our patching efforts: 25-50%

CrowdStrike Threat Intelligence Case Study

Medium Enterprise Pharmaceuticals Company

Introduction

This case study of a medium enterprise pharmaceuticals company is based on a November 2023 survey of CrowdStrike Threat Intelligence customers by TechValidate, a 3rd-party research service. The profiled company asked to have their name blinded to protect their confidentiality.

“One more step closer to validating the exposed data and threat actor.”

“Pre-filter results with follow-up calls with analysts are helpful.”

Challenges

The business challenges that led the profiled company to evaluate and ultimately select CrowdStrike Threat Intelligence:

  • What challenges did you or your team experience before using Falcon Intelligence Recon+?
    • Our current detection capabilities were mostly internal and we were concerned about underground threats
    • We were concerned about brand abuse on social media or forums
    • We were concerned about risks to VIPs or executives mentioned on forums

Use Case

The key features and functionalities of CrowdStrike Threat Intelligence that the surveyed company uses:

  • The surveyed user is part of the Cyber Security Oversight & Risk Team.
  • Which features of Falcon Intelligence Recon+ do you find most useful?
    • Assistance from CrowdStrike experts pre-filtering alerts
    • Domain “take-down” reports and assistance

Results

The surveyed company achieved the following results with CrowdStrike Threat Intelligence:

  • Why did you choose CrowdStrike Falcon Intel Recon + over others?
    • Assistance from CrowdStrike analysts
    • Recon + covers multiple use cases, valuable to multiple teams without an increase in costs
  • Please rate the following capabilities of CrowdStrike Falcon Intel Recon+ compared to the competition:
    • Continuous coverage of underground forums, marketplaces, etc: Better
    • Discovery of typo squatted domains: Better
    • Monitoring assistance from CrowdStrike Experts: Significantly Better
    • User Experience via Falcon Portal: Better
    • Notification capabilities to other members inside our outside the team: Better
    • Vulnerability Intelligence: Better
  • What benefits did your organization realize following the deployment of CrowdStrike Falcon Intelligence Recon+?
    • Improved awareness of key eCrime trends (Ransomware campaigns, Access Broker trends …)
    • We can inform our leadership more reliably about emerging threats as they unfold
  • In your best estimate, by what percent did CrowdStrike improve the following?
    • Improved our threat risk awareness: 50-75%
    • Increased depth of incident investigations: 50-75%
    • Helped to mitigate external threats before they became a problem: 25-50%
    • Reduced our global risk posture: 25-50%
    • Improved effectiveness of our patching efforts: 50-75%

CrowdStrike Threat Intelligence Customer Testimonial

CrowdStrike Threat Intelligence Customer Testimonial

The Sandbox helps us be better prepared against phishing, malicious documents, and questionable third-party software. As we mature, CrowdStrike Threat Intelligence will help us focus on the most worthwhile defenses against the most likely threats.

SOC Manager or Director, Medium Enterprise Construction Company



More to Explore



About CrowdStrike Threat Intelligence

Powered by the CrowdStrike Security Cloud, the CrowdStrike Falcon® platform leverages real-time indicators of attack, threat intelligence, evolving adversary tradecraft and enriched telemetry from across the enterprise to deliver hyper-accurate detections, automated protection and remediation, elite threat hunting and prioritized observability of vulnerabilities. Purpose-built in the cloud with a single lightweight-agent architecture, the Falcon platform enables customers to benefit from rapid and scalable deployment, superior protection and performance, reduced complexity and immediate time-to-value.

CrowdStrike Threat Intelligence Website   CrowdStrike Website