CrowdStrike unveils new services to combat insider threats
CrowdStrike has announced the launch of its Insider Risk Services, aimed at helping organisations detect and prevent insider threats posed by negligent employees, malicious insiders, and sophisticated adversaries.
The average cost of addressing insider threats over a 12-month period has increased to USD $16.2 million, underscoring the significant impact these incidents can have on organisations. Insider threats include not only external adversaries masquerading as employees to exploit trust but also internal employees who may compromise security through negligence or malicious intent. Despite these risks, many organisations still do not have a formal insider risk programme, leaving critical vulnerabilities in their security.
The new services from CrowdStrike aim to enable organisations to proactively identify and mitigate insider threats before they escalate. By integrating the threat detection and response capabilities of the CrowdStrike Falcon cybersecurity platform with advanced threat intelligence, threat hunting, tailored assessments, programme reviews, and expert-led incident response, the company aims to deliver multi-layered defence strategies.
"Today's insider risks, whether caused by an accident, negligence, or a sophisticated adversary, demand proactive and comprehensive protection to safeguard critical assets and minimise any potential impact," said Thomas Etheridge, Chief Global Services Officer at CrowdStrike. "With deep adversary insights, extensive experience in countering complex threats and industry-leading visibility and protection provided by the Falcon platform, CrowdStrike Insider Risk Services sets a new standard for combating the modern insider threat."
The services being introduced include Insider Risk Program and Technical Reviews, which focus on identifying security gaps and strengthening posture using CrowdStrike's intelligence and threat hunting expertise. Tabletop Exercises and Red Team Simulations are also part of the offerings, designed to test defences and enhance detection capabilities through realistic insider threat scenarios. Additionally, a rapid Incident Response service will help organisations swiftly contain and mitigate risks stemming from insider incidents, using adversary-driven threat intelligence and telemetry from the Falcon platform.
CrowdStrike's intelligence-driven approach recently highlighted the tactics of FAMOUS CHOLLIMA, a DPRK-related threat group that infiltrated over 200 U.S. technology companies by disguising malicious activities as legitimate employment. This example signifies the critical need for proactive defences against insider threats.