SecurityBrief Australia - Technology news for CISOs & cybersecurity decision-makers
Story image
Cado Security integrates with AI-based CrowdStrike Falcon for swift forensics
Thu, 8th Feb 2024

Cado Security, the pioneering provider of a cloud-based forensics and incident response platform, has announced a novel integration with the AI-based CrowdStrike Falcon platform. The collaboration aims to enhance forensics investigations and expedite response times. The integration is available in the CrowdStrike Marketplace, where organisations can employ the Cado Security platform alongside the Falcon platform for automatic access to forensic data, thus adding substantial depth to incident probes.

The integration will allow CrowdStrike Falcon Insight XDR to facilitate security teams in conducting investigations and responding more promptly to threats. To do so, it will use the enriched security telemetry from the Falcon platform. The Cado Platform takes advantage of the scale and speed of cloud technology to automate the entire response to an incident, from the capture and processing of forensic data right up to the investigation and response.

Once the Falcon platform detects any malicious activity, the Cado platform employs CrowdStrike's real-time response (RTR) capabilities. It automatically sources and analyses forensic data from the systems affected by the customers' operations. This optimised process permits security teams to swiftly undertake root cause analysis and pinpoint the scope and impact, thereby significantly accelerating the response to an incident.

The integration has several notable benefits. It enables rapid response times via automated end-to-end incident response. From data collection and processing to investigation and response, nearly all aspects of the process become more efficient. Customers also gain immediate access to strong forensic evidence and vital incident details to speed up investigations. Moreover, this automation helps improve productivity by eliminating tedious investigative tasks. It also ensures comprehensive visibility, allowing for forensic investigations across a variety of environments: on-premises, hybrid, and cloud-based.

The CrowdStrike Marketplace acts as a bridge, connecting CrowdStrike customers with the Cado platform. Thanks to this thorough integration with the Falcon platform, customers can streamline their security stacks, thereby reducing operational costs and managing complexities efficiently.

"The union of CrowdStrike and Cado Security equips security teams with the full capabilities necessary to identify, scrutinise, and address incidents swiftly, thereby setting a benchmark for speed and effectiveness," says Chris Doman, CTO and Co-Founder of Cado Security. He adds that the CrowdStrike Marketplace provides an easy platform for reaching customers and enabling the simple procurement of new applications for purchase directly.