CrowdStrike is a leading cybersecurity company offering cloud-native endpoint protection, threat intelligence, identity security, and extended detection and response (XDR) capabilities through its Falcon platform.
Vendors looking to integrate CrowdStrike into their security products can use Synqly's normalized connector to access endpoint telemetry, detections, and threat data from the Falcon platform. Integrate CrowdStrike to power detection, response, and asset workflows without per-product API development.
Configuration for CrowdStrike Falcon® Next-Gen SIEM.
[Configuration guide](https://docs.synqly.com/guides/provider-configuration/crowdstrike-siem-setup)
Integration Use Cases
Post Events
Writes a batch of `Event` objects to the SIEM configured with the token used for authentication.
Query Alerts
Queries alerts from the SIEM configured with the token used for authentication.
Query Events
Queries events from the SIEM configured with the token used for authentication.
Query Log Providers
Queries available log providers in the source SIEM