The Vectra AI Platform integration with CrowdStrike Falcon Insight XDR Endpoint Detection and Response enables security teams to unify network, cloud, identity, SaaS, and endpoint context to detect, verify, and isolate cyberattacks in the enterprise quickly and automatically. Together Vectra AI and CrowdStrike solve the most persistent security problems facing enterprise organizations today: finding and stopping active cyberattacks and optimizing the time and resources of IT security teams.
From within the Vectra AI Platform, customers can leverage Vectra AI Attack Signal Intelligence and rich EDR context from CrowdStrike to gain coverage with attack visibility and context across surfaces, clarity that reduces alert noise and prioritizes critical threats and control to see and stop threats across an existing stack.
CrowdStrike Falcon Insight XDR Platform detects suspicious activity on an endpoint and sends context to the Vectra AI Platform. From there CrowdStrike EDR host context enriches the Vectra AI Platform prioritized entity, which pulls in all relevant detections based on Vectra AI Attack Signal Intelligence. If deemed malicious, the Vectra AI Platform will communicate with the CrowdStrike Falcon Insight XDR Platform to isolate and lockdown the suspected endpoint. For further investigation of the endpoint detection, users can single-click pivot from the Vectra AI Platform into the CrowdStrike Falcon Insight XDR Platform for deeper analysis.