TechValidate Research on CrowdStrike Threat Intelligence

These pages present data that TechValidate has sourced via direct research with verified customers and users of CrowdStrike Threat Intelligence. TechValidate stands behind the authenticity of all published data. Learn more »



174 Customers Surveyed

1,332 Data Points Collected

19 Published TechFacts

8 Published Case Studies



Selected Research Highlights


CrowdStrike Threat Intelligence Customer Testimonial

CrowdStrike Threat Intelligence plays a very important role in covering our stakeholders Priority Intelligence Requirements. Using the intel provided by CrowdStrike we are able to collect, analyze, and provide the stakeholders with the data they need. CrowdStrike Intelligence supports our mail goal to provide stakeholders and leadership with the intelligence necessary to make strategic, operational, or tactical decisions to reduce risk to the organization.

Threat Analyst / Threat Investigator (post alert), Fortune 500 Insurance Company

CrowdStrike Threat Intelligence Case Study

Large Enterprise Consumer Products Company

Introduction

This case study of a large enterprise consumer products company is based on a November 2023 survey of CrowdStrike Threat Intelligence customers by TechValidate, a 3rd-party research service. The profiled company asked to have their name blinded to protect their confidentiality.

“We use the final product intelligence for briefings to executive and risk teams on wider implications of business activity as it relates to cyber threats. We were able to gain insight into actors targeting our ecommerce platforms for fraud.”

Challenges

What challenges did you or your team experience before using Falcon Intelligence Recon+?

  • Our current detection capabilities were mostly internal and we were concerned about underground threats
  • We were concerned about brand abuse on social media or forums
  • Our organization is often hit by phishing campaigns and needed to verify credential theft
  • We often see fake websites impersonating our organization and going after customers.
  • We were concerned about risks to VIPs or executives mentioned on forums

Which other vendors did you consider before selecting CrowdStrike Threat Intelligence?

  • ZeroFox
  • Digital Shadows / Reliaquest
  • Microsoft

Use Case

Which features of Falcon Intelligence Recon+ do you find most useful?

  • Notifications on exposed data, compromised identities, brand abuse, typo-squatting
  • Assistance from CrowdStrike experts pre-filtering alerts
  • Searching across different forums
  • Weekly reports about ransomware families, access brokers, vulnerability exploits

Surveyed user: “I’m part of the security planning team (Info Sec).”

Results

Why did you choose CrowdStrike Falcon Intel Recon + over others?

  • Assistance from CrowdStrike analysts
  • We use the Falcon platform already for other security offerings and want to keep our consoles consolidated
  • CrowdStrike’s expertise in threat intelligence
  • Recon + covers multiple use cases, valuable to multiple teams without increase in costs

Please rate the following capabilities of CrowdStrike Falcon Intel Recon+ compared to the competition:

  • Continuous coverage of underground forums, marketplaces etc: Significantly Better
  • Discovery of typosquatted domains: Better
  • Monitoring assistance from CrowdStrike Experts: Best In Class
  • Advise on how to mitigate discovered threats: Significantly Better
  • User Experience via Falcon Portal: Significantly Better
  • Vulnerability Intelligence: Better

What benefits did your organization realize following the deployment of CrowdStrike Falcon Intelligence Recon+?

  • We now receive early warnings on digital threats not know before
  • We are better prepared to stop threats from criminals or malicious infrastructure targeting our organization
  • Improved awareness of key eCrime trends (Ransomware campaigns, Access Broker trends …)
  • We can inform our leadership more reliable on emerging threats as they unfold

In your best estimate, by what percent did CrowdStrike improve the following?

  • Improved our threat risk awareness: 50-75%
  • Increased depth of incident investigations: 25-50%
  • Helped to mitigate external threats before they became a problem: 75-100%
  • Reduced our global risk posture: 75-100%
  • Improved effectiveness of our patching efforts: 25-50%

CrowdStrike Threat Intelligence Customer Testimonial

With Crowdstrike Threat Intelligence we are better informed of threat actors targeting our sector and the relevant TTPs to focus on.

SOC Manager or Director, Educational Institution

CrowdStrike Threat Intelligence Case Study

Large Enterprise Hospitality Company

Introduction

This case study of a large enterprise hospitality company is based on a November 2023 survey of CrowdStrike Threat Intelligence customers by TechValidate, a 3rd-party research service. The profiled company asked to have their name blinded to protect their confidentiality.

“Turnkey, quick response from CrowdStrike managed team.”

“Things matter outside of the big-breaches. 1,000,000 cuts can still slowly kill.”

Challenges

What challenges did you or your team experience before using Falcon Intelligence Recon+?

  • Our current detection capabilities were mostly internally and we were concerned about underground threats
  • We were concerned about brand abuse on social media or forums
  • Day-to-day value is from retail-specific use cases (fraud, abuse techniques, non-breach things)

Which other vendors did you consider before selecting CrowdStrike Threat Intelligence?

  • Recorded Future
  • Mandiant / Google
  • ZeroFox

Use Case

Which features of Falcon Intelligence Recon+ do you find most useful?

  • Assistance from CrowdStrike experts pre-filtering alerts
  • Searching across different forums

The surveyed user is part of relative small security team ( 5 – 10 members) covering many security areas.

Results

Why did you choose CrowdStrike Falcon Intel Recon + over others?

  • Assistance from CrowdStrike analysts
  • We use the Falcon platform already for other security offerings and want to keep our consoles consolidated
  • Cost / Value was substantially higher compared to other vendors


More to Explore



About CrowdStrike Threat Intelligence

Powered by the CrowdStrike Security Cloud, the CrowdStrike Falcon® platform leverages real-time indicators of attack, threat intelligence, evolving adversary tradecraft and enriched telemetry from across the enterprise to deliver hyper-accurate detections, automated protection and remediation, elite threat hunting and prioritized observability of vulnerabilities. Purpose-built in the cloud with a single lightweight-agent architecture, the Falcon platform enables customers to benefit from rapid and scalable deployment, superior protection and performance, reduced complexity and immediate time-to-value.

CrowdStrike Threat Intelligence Website   CrowdStrike Website