Another revolution in cybersecurity from CrowdStrike: top 5 important things to know about Managed XDR (MXDR) News
02.11.2023
Cisco acquires Splunk, but how do you convince Splunk customers that Cisco has advantages
01.11.2023
CrowdStrike provides 100% coverage according to the MITRE Engenuity ATT&CK® Evaluations: round 5
31.10.2023
Top 20 Shocking Data Breach Statistics for 2023
06.09.2023
Adversaries Can “Log In with Microsoft” through the nOAuth Azure Active Directory Vulnerability
06.09.2023
iIT Distribution is the official distributor of LogRhythm!
31.08.2023
Instant replication with NAKIVO Backup & Replication v10.10 Beta
03.08.2023
Effective communication: Email vs. Instant Messaging?
25.07.2023
Infinidat Expands Support for Hybrid Cloud Storage Deployments with InfuzeOS Cloud Edition
14.07.2023
Falcon Insight for ChromeOS: The Industry’s First Native XDR Offering for ChromeOS
03.06.2023
Opening new horizons: iIT Distribution is the official distributor of Gatewatcher
13.05.2023
Another revolution in cybersecurity from CrowdStrike: top 5 important things to know about Managed XDR (MXDR)
09.05.2023
GTB Technologies is the best solution in the DLP industry
04.04.2023
CrowdStrike Falcon Platform Detects and Prevents Active Intrusion Campaign Targeting 3CXDesktopApp Customers
24.03.2023
Labyrinth Deception Platform v2.0.51: Release notes
23.03.2023
SIEM vs Log Management Systems: What you need to know before choosing
15.03.2023
CrowdStrike Falcon Named the Winner of the 2022 AV-TEST Award for Best MacOS Security Product
10.03.2023
CrowdStrike 2023 Global Threat Report: Resilient Businesses Fight Relentless Adversaries
10.03.2023
Threema Work App Update: Encrypted Group Calls Are Now Available on Android Devices
28.02.2023
CrowdStrike Ranked #1 in the IDC Worldwide Endpoint Security Market Shares Report for Third Time in a Row
21.02.2023
Picus Red Report 2023: The Top 10 Most Prevalent MITRE ATT&CK Techniques Used by Attackers
14.02.2023
On leadership in the sphere of high-end unified storage: An exclusive interview with Phil Bullinger, CEO of Infinidat
11.02.2023
Securing PostgreSQL from Cryptojacking Campaigns in Kubernetes
30.01.2023
What's New in NAKIVO Backup & Replication v10.8: Release Overview
16.01.2023
Success Story: Georgian Bank Achieves 100% Backup Success Rate with NAKIVO
12.01.2023
CrowdStrike Named a Leader in Frost & Sullivan’s 2022 Frost Radar for Cyber Threat Intelligence
12.12.2022
DDoS Attack Prevention and DDoS Protection Best Practices
21.11.2022
How Hackers Can Bypass Multi-Factor Authentication
08.11.2022
CrowdStrike Achieves Red Hat OpenShift Certification: Streamlining Visibility and Automating Protection for OpenShift
03.11.2022
Infinidat Recognized as a Leader in Gartner Magic Quadrant for Primary Storage – 5th Year in a Row
19.10.2022
New version of NetBrain Release 11: the key to reducing the cost of NetOps
13.10.2022
With security revenue surging, CrowdStrike wants to be a broader enterprise IT player
05.10.2022
CrowdStrike Announced the Acquisition of Reposify to Bolster Visibility and Reduce Risk Exposure of External Assets
22.09.2022
Kubernetes против Docker: в чем между ними разница?
16.09.2022
Infinidat расширяет функции NVMe/TCP для сред VMware
15.09.2022
Новые возможности InfiniBox от Infinidat: vVols репликация для VMware сред
02.09.2022
Индикаторы атак на основе искусственного интеллекта позволяют максимально быстро прогнозировать и останавливать угрозы
03.08.2022
Истории с Dark Web: Отслеживание подпольной экономики eCrime улучшает эффективность киберзащиты
22.07.2022
Развитие ботнетов и DDoS-атак
15.07.2022
Lookout обнаружила шпионское ПО для Android, развернутое в Казахстане
11.07.2022
Выявление и смягчение атак NTLM-ретрансляции, нацеленных на контроллеры домена Microsoft
20.06.2022
Что такое демократизация данных?
07.06.2022
Неизменные резервные копии: что вам нужно знать, чтобы защитить свои данные
22.05.2022
Украинские Киберактивисты Использовали Скомпрометированные Docker Honeypots Для Антироссийских Dos-Атак
06.05.2022
ЧТО НОВОГО В LABYRINTH DECEPTION PLATFORM: РЕЛИЗ 2.0.32
22.04.2022
PALO ALTO NETWORKS проинформировала об уязвимостях, которые могут разрешить злоумышленникам отключить платформу CORTEX XDR
15.04.2022
INSPUR ВТОРОЙ ГОД ПОДРЯД СТАНОВИТСЯ ОБРАЗЦОВЫМ ПОСТАВЩИКОМ CLOUD-OPTIMIZED ОБОРУДОВАНИЯ ПО ВЕРСИИ GARTNER HYPE CYCLE
08.10.2020
Intelligent IT Distribution взяла участь у Третьому щорічному Міжнародному Форумі «Кібербезпека - Захистимо Бізнес, Захистимо Держава»
29.09.2020
iITD - партнер форуму “Кібербезпека - захистимо бізнес, захистимо державу” 2020
24.09.2020
Компанія IIT Distribution отримала статус дистриб’ютора рішень NetBrain Technologies на території України
28.08.2020
Fal.Con 2020 від CrowdStrike
25.08.2020
Дотримання норм страхування кіберризиків
25.08.2020
Автоматично блокуйте скомпрометовані облікові записи з Lepide Active Directory Self Service 20.1
25.08.2020
Компанія Cossack Labs запрошує відвідати NoNameCon
22.07.2020
Підписання дистриб’юторської угоди з компанією Safe-T
21.07.2020
Міжнародна конференція: "Online Banking - Час інновацій!"
18.06.2020
Глобальний звіт про кіберзагрози 2020
11.06.2020
Четвер, 25 червня 2020 року. Не пропустіть!
05.05.2020
Анонс: нова версія Acra Enterprise забезпечує підвищену гнучкість для високонавантажених систем
13.04.2020
Lepide Remote Worker Monitoring Pack - легка платформа безпеки, яка гарантує негайний захист даних бізнесу протягом непередбаченого періоду віддаленої роботи.
12.04.2020
Забезпечення кібербезпеки для віддалених користувачів
08.04.2020
Labyrinth Technologies пропонує скористатися спеціальною пропозицією - ліцензія на 12 місяців за ціною 6 місяців.
07.04.2020
«CrowdStrike: дистанційна робота та ІТ-безпеку за часів кризи - скорочена ліцензійна програма на 3-6 місяців».
23.03.2020
Компанія iIT Distribution отримала статус дистриб’ютора рішень RedSeal Networks на території України.
23.03.2020
Компанія iIT Distribution отримала статус дистриб’ютора рішень Lepide на території України.
16.03.2020
Компанія iIT Distribution починає дистрибуцію рішень CrowdStrike на території України.
19.02.2020
20 лютого у Києві відбудеться щорічна конференція CISO DX DAY 2020
18.02.2020
Компанія iIT Distribution отримала статус дистриб’ютора рішень Instana на території України.
17.02.2020
Exabeam Security Intelligence Platform допомагає
CrowdStrike, a leading provider of cloud-based endpoint and workload security solutions, is creating new opportunities for partners with an expanded detection and response offering that builds on its popular Managed Detection and Response service, CrowdStrike CEO Daniel Bernard told CRN.
End-To-End XDR
The improvements that endpoint detection and response (EDR) has brought to cybersecurity are unmistakable. Simply put, attacks against endpoint devices such as laptops are getting detected far more often and much faster than they were even just a few years ago. At the same time, today’s threat actors don’t limit themselves to endpoint devices, and are known to move between environments as a standard tactic of modern cyberattacks.
The need to bring detection capabilities to all of an organization’s systems has produced the fast-growing category of XDR, or extended detection and response. XDR aims to improve security by correlating data from across an organization’s environments, and then prioritize the most critical threats for a response. Among the foremost vendors in the XDR market is CrowdStrike, a company that initially made its name on EDR. On Wednesday, the cybersecurity giant announced its next major foray in the XDR space with the unveiling of Falcon Complete XDR, a new managed XDR offering that aims to make the technology applicable to more customers and partners than it has been to date.
In short, XDR can “become the control plane that they use to manage cybersecurity end-to-end,” said CrowdStrike’s chief business officer, Daniel Bernard, in an interview with CRN. “That’s revolutionary in the market. But also, folks need help doing it.”
As a managed XDR (MXDR) offering, Falcon Complete XDR follows the model of CrowdStrike’s popular managed detection and response (MDR) service. CrowdStrike’s MDR offering has provided 24/7 management of the vendor’s EDR technology to customers that lack the resources to do so themselves (which is not at all a rarity, amid the massive talent shortage in cybersecurity). In the same way, the CrowdStrike MXDR aims to offer management of the vendor’s XDR platform to make the technology relevant to more customers and partners, including resellers and managed service providers, Bernard said.
As EDR was getting established, “MDR became something that really helped a lot of organizations move into EDR,” he said. “And likewise, managed XDR becomes an offering that’s really compelling for organizations looking to get into XDR or get the full value out of XDR.”
Below are five key things to know about CrowdStrike's new Managed XDR offering.
Extending Beyond The Endpoint
In addition to the fact that CrowdStrike’s MDR service has primarily focused on management of endpoints, the service has also only worked with CrowdStrike tools, Bernard said. With the debut of CrowdStrike’s managed XDR offering, the company will enable partners and customers to leverage tools from other vendors, as well.
Falcon Complete XDR will integrate tools from vendors in the CrowdXDR Alliance in key segments such as security service edge (Cloudflare, Netskope, Zscaler, Skyhigh Security, Menlo Security); identify security (Okta, ForgeRock, Microsoft Azure Active Directory, Ping Identity); email security (Mimmie, Ping Identity); network detection and response (Corelight, ExtraHop, Vectra); and firewalls (all the major firewall vendors, Bernard said, including Palo Alto Networks and Cisco).
The combining of data feeds from so many major security tools on a single platform, via XDR, is “what we’re delivering the service on top of — and that’s what our partners are able to leverage, too,” Bernard said. In addition to 24/7 management of the XDR platform, the MXDR service also includes threat hunting, monitoring and remediation, CrowdStrike said.
Improving Security
For partners and customers, CrowdStrike’s managed XDR offering ultimately promises improved security outcomes, Bernard told CRN. He offered an example, in the critical area of email security, for how the MXDR offering could enable better cyberdefense. Business email compromise remains a “major attack vector,” Bernard said. Previously, however, “email wasn’t something that was really integrated into the Falcon platform — we’re not an email security vendor.”
“What managed XDR lets us do — and lets our partners do — is, in an integrated fashion from the Falcon console, be able to deal with the telemetry, triage those alerts, take actions. It’s not just ’data in,’ it’s also actioning those alerts for our customers,” he said. “So it limits the amount of time you’ve got to spend into multiple dashboards, it limits the clicks, which ultimately results in faster mean time to detect, faster mean time to respond — which is what customers are really looking for.”
Key Differentiators
Because CrowdStrike’s managed XDR offering works with third-party security tools, Bernard said it will likely have broader appeal among partners and customers than other managed XDR options that are available. Partners and customers that choose Falcon Complete XDR “will not find themselves in a walled garden,” he said. “If you look at a lot of the other vendors in the market, whether it’s an operating system vendor or a firewall vendor, you end up in a walled garden, you have to live in their world.”
“But with CrowdStrike, you can choose the best of breed email security vendor. You can choose us for cloud, you can choose others for cloud,” Bernard said. “You’re able to deliver for your customers the benefits of XDR on your terms — flexibly — and you’re not limited to consuming it in one way.”
Another major differentiator is the way that CrowdStrike’s MXDR platform is integrated, he said. Competing offerings include “an operating system vendor with nine consoles, or 12 consoles” and a “hardware vendor that’s cobbling together multiple products, and they’re all still separate.” With CrowdStrike’s MXDR platform, however, “it’s all part of the Falcon platform and it’s all in an easy to consume UI,” Bernard said. “I think in terms of actually delivering XDR, we’re leaps and bounds ahead of where the market is.”
Partner Opportunities
Bernard, who is responsible for overseeing CrowdStrike's channel partner efforts, said that with Falcon Complete XDR , there are many opportunities for partners. For MSPs, for example, providing managed services to customers in addition to CrowdStrike's managed XDR offering is a good example, he said. "The innovation around XDR is the ability to collect all the data in one place and also take action on those products and do it on the Falcon platform. So, if you're a partner, you can do a lot more."
And “not only is it more capability, it’s also a lot easier for partners to do that, versus building a bunch of custom tooling to try and do that themselves” Bernard said. “So that’s really the exciting piece here — partners are able to manage more offerings and do more across these different tools, faster — because it’s all consolidated.”
The bottom line is that with the CrowdStrike MXDR offering, partners “can customize it for end customers — and ultimately sell more products, sell more services and produce better cybersecurity outcomes.”
XDR For The SMB
While extended detection and response has not typically been thought of as accessible for smaller businesses, CrowdStrike is aiming to change that with Falcon Complete XDR, Bernard said. The managed XDR offering “fits perfectly in [the SMB] world,” he said.
In part, that’s because for SMBs, it’s even more difficult to hire individuals with cybersecurity skills and buy cyber defense products, Bernard noted. All in all, SMBs want to “make it easy to cover their entire organization, and automate as much as possible, and produce a cybersecurity outcome — that they’re not breached,” he said. With CrowdStrike’s focus on making cybersecurity easy, “we are the best positioned to stop the breach for the SMB,” Bernard said.
And when it comes to how CrowdStrike will be looking to deliver that outcome for SMBs going forward, increasingly, managed XDR will become the “how,” he said. “It’s offerings like these that enable us to do it.”
iIT Distribution specializes in distributing only the best security solutions! We are an official distributor of CrowdStrike and provide promotion of its solutions in Ukraine, Kazakhstan, Georgia, Azerbaijan, Estonia, Kyrgyzstan, Latvia, Lithuania, Moldova, Poland, Tajikistan and Uzbekistan, as well as professional support for design and implementation of these solutions.
Back