Why we chose it
Falcon brings endpoint detection, identity monitoring and log collection together on one sensor. For a team running a SOC, that unity matters more than the performance of each brick taken separately: it removes the delays and the information loss between tools, which is exactly where attackers gain time.
What we operate
We integrate and run the platform for our clients, with our own detection rules and response playbooks. The subscription stays in the client's name: there is no lock-in with us.
Our assessment, without varnish
The July 2024 update incident was a reminder that an agent present across the whole estate is also a single point of failure. We drew concrete conclusions from it about how we stage sensor rollouts and how we monitor our own update chains. That subject is part of our conversations with the vendor.
CrowdStrike solutions in our catalogue.
- EDREndpoint
Falcon — Endpoint Detection & Response
Detection and response on endpoints, the foundation of any defence chain. One lightweight agent, one console, and the ability to isolate a machine before the attacker spreads.
Learn more - ITPIdentity
Falcon Identity Threat Protection
Monitoring of Active Directory and cloud directories: privilege escalation, forgotten service accounts, abnormal authentication, and conditional blocking in real time.
Learn more - SIEMDetection
Falcon Next-Gen SIEM
The collection and correlation platform that brings together endpoint, identity, cloud and third-party data, and on which our analysts work every day.
Learn more
A question? A project?
Our security specialists are available to you. A NextGen-SOC demonstration, an audit, or simply a conversation — start here.
