EDR, SASE, Network Security, Endpoint/Device Security

Cato and CrowdStrike link network and endpoint security data

Mitigating ransomware attacks in cybersecurity strategies for businesses to enhance protection and resilience

Cato Networks and CrowdStrike partnered to launch integrations that connect the Cato SASE Platform with the CrowdStrike Falcon platform, giving security teams a shared view of network and endpoint activity. The integrations are designed to help analysts investigate threats without moving between separate tools and manually piecing together data from different parts of the environment.

Cato XOps will connect with CrowdStrike Falcon Discover to match endpoint detections with network telemetry. The combined data can help analysts see how suspicious activity moved across the network, which devices were involved, and whether an endpoint alert is part of a wider attack. Cato Asset Security will also use Falcon Discover data to add endpoint context to device inventories and security posture assessments.

The partnership also sends Cato network telemetry into CrowdStrike Falcon Next-Gen SIEM. Security teams can use that data for threat hunting, detection development and investigations alongside endpoint and other security signals already collected by the platform. For MSSPs and enterprise security teams, the integration could reduce the amount of manual work required to correlate activity across network and endpoint systems.

The integrations are generally available worldwide through the CrowdStrike Marketplace. The partnership gives Cato and CrowdStrike customers a way to connect two major sources of security data while keeping their existing platforms in place, with the broader goal of making investigations and response easier to manage.

An In-Depth Guide to Network Security

Get essential knowledge and practical strategies to fortify your network security.

You can skip this ad in 5 seconds