TechValidate Research on CrowdStrike Threat Intelligence


CrowdStrike Threat Intelligence Case Study

Large Enterprise Consumer Products Company

Introduction

This case study of a large enterprise consumer products company is based on a November 2023 survey of CrowdStrike Threat Intelligence customers by TechValidate, a 3rd-party research service. The profiled company asked to have their name blinded to protect their confidentiality.

“We use the final product intelligence for briefings to executive and risk teams on wider implications of business activity as it relates to cyber threats. We were able to gain insight into actors targeting our ecommerce platforms for fraud.”

Challenges

What challenges did you or your team experience before using Falcon Intelligence Recon+?

  • Our current detection capabilities were mostly internal and we were concerned about underground threats
  • We were concerned about brand abuse on social media or forums
  • Our organization is often hit by phishing campaigns and needed to verify credential theft
  • We often see fake websites impersonating our organization and going after customers.
  • We were concerned about risks to VIPs or executives mentioned on forums

Which other vendors did you consider before selecting CrowdStrike Threat Intelligence?

  • ZeroFox
  • Digital Shadows / Reliaquest
  • Microsoft

Use Case

Which features of Falcon Intelligence Recon+ do you find most useful?

  • Notifications on exposed data, compromised identities, brand abuse, typo-squatting
  • Assistance from CrowdStrike experts pre-filtering alerts
  • Searching across different forums
  • Weekly reports about ransomware families, access brokers, vulnerability exploits

Surveyed user: “I’m part of the security planning team (Info Sec).”

Results

Why did you choose CrowdStrike Falcon Intel Recon + over others?

  • Assistance from CrowdStrike analysts
  • We use the Falcon platform already for other security offerings and want to keep our consoles consolidated
  • CrowdStrike’s expertise in threat intelligence
  • Recon + covers multiple use cases, valuable to multiple teams without increase in costs

Please rate the following capabilities of CrowdStrike Falcon Intel Recon+ compared to the competition:

  • Continuous coverage of underground forums, marketplaces etc: Significantly Better
  • Discovery of typosquatted domains: Better
  • Monitoring assistance from CrowdStrike Experts: Best In Class
  • Advise on how to mitigate discovered threats: Significantly Better
  • User Experience via Falcon Portal: Significantly Better
  • Vulnerability Intelligence: Better

What benefits did your organization realize following the deployment of CrowdStrike Falcon Intelligence Recon+?

  • We now receive early warnings on digital threats not know before
  • We are better prepared to stop threats from criminals or malicious infrastructure targeting our organization
  • Improved awareness of key eCrime trends (Ransomware campaigns, Access Broker trends …)
  • We can inform our leadership more reliable on emerging threats as they unfold

In your best estimate, by what percent did CrowdStrike improve the following?

  • Improved our threat risk awareness: 50-75%
  • Increased depth of incident investigations: 25-50%
  • Helped to mitigate external threats before they became a problem: 75-100%
  • Reduced our global risk posture: 75-100%
  • Improved effectiveness of our patching efforts: 25-50%




About This Data

This data was sourced directly from verified users of CrowdStrike Threat Intelligence by TechValidate.

TechValidate verifies the identity and organizational affiliation of all participants that contribute to published research data. When research participants so desire, we also guarantee their anonymity so that they may share information honestly and freely.


More Research on CrowdStrike Threat Intelligence