Press Releases
ExtraHop® Automates Detection and Response Workflows for Customers with CrowdStrike Falcon® Next-Gen SIEM
September 17, 2024
Network telemetry from ExtraHop RevealX™ helps SOC analysts reveal and stop threats faster
LAS VEGAS – September 17, 2024 – ExtraHop®, a leader in cloud-native network detection and response (NDR), today announced customers can now automate detection, investigation and mitigation workflows leveraging network telemetry from the ExtraHop RevealX™ platform in the CrowdStrike Falcon® cybersecurity platform.
Today’s SOCs struggle to keep up with adversaries, burdened by an industry talent shortage, siloed tools, and alert overload. To improve operational efficiency, speed up response times, and build resilience, SOC analysts are increasingly looking for ways to automate tedious tasks and quickly respond to risks across the network, endpoints, and other third-party tools.
Joint customers ingesting network telemetry from the ExtraHop RevealX platform in CrowdStrike Falcon® Next-Gen SIEM can now orchestrate that data in Falcon Foundry, CrowdStrike’s low-code application development platform, to build custom detection and response workflows. When ExtraHop RevealX detects abnormal network behaviors, Falcon Next-Gen SIEM ingests the alert, correlates it with EDR and other data, and can use that intelligence within Foundry apps and Fusion workflows.
With streamlined and customized workflows, customers can benefit from:
- Rapid detection and investigation: Anomalous network detections are investigated through automated workflows, instantaneously.
- Reduced manual intervention: Automated responses for low-priority detections empower analysts to allocate more time to mission-critical tasks.
- Scalability: Customized workflows designed to scale with an organization ensures security processes remain effective with growth.
“The ExtraHop RevealX NDR platform gives enterprises unique visibility into security threats as they propagate through the network and reveals risks that may not be visible through other security tools,” said Kanaiya Vasani, Chief Product Officer, ExtraHop. “The breadth and depth of telemetry ExtraHop gathers from the network when combined with other data sources such as EDR, and the ability to build custom workflows to investigate a range of detections, helps customers accelerate response to security threats.”
“With access to CrowdStrike’s robust data and threat intelligence, Falcon Foundry enables users to establish creative solutions and workflows tailored to their organization’s unique needs,” said Daniel Bernard, Chief Business Officer at CrowdStrike. “By adding network data from ExtraHop RevealX, a critical accelerant in understanding and closing security gaps, our partnership with ExtraHop elevates the speed in which joint customers respond to both endpoint and network threats.”
Fal.Con attendees can learn how to start building automated workflows by joining ExtraHop and CrowdStrike on Wednesday, September 18 at 3 p.m. PDT for “Integrating NDR, EDR, and SIEM for Advanced Threat Detection (DEV42).”
For more about the ExtraHop and CrowdStrike partnership:
- Visit ExtraHop Booth #2901 at Fal.Con September 16-20.
- Learn more about the ExtraHop and Crowdstrike partnership.
- Watch the ExtraHop webinar, “Harness the Power of the Network and Endpoint Data to Stop Material Breaches.”
About ExtraHop
ExtraHop is a leader in real-time network intelligence, empowering organizations with the high-fidelity context they need to power security and IT AI automation, detect risks faster, and respond with confidence.
ExtraHop anchors AI agents with the real-time, ground-truth foundation they need to operate reliably in the SOC and NOC. For security, that means surfacing threats and providing definitive evidence to investigate and respond to novel AI attacks and unsanctioned usage at machine speed. For IT operations, it means identifying and resolving performance issues in seconds to keep critical systems running.
Engineered for unmatched scale, the ExtraHop RevealX platform delivers a complete, unified view of the network for the largest enterprises in the world. Capturing and analyzing network data across data centers, campus, branch, cloud, and AI environments, ExtraHop combines behavioral analysis with deep visibility into encrypted traffic to uncover what others miss.
To learn more, visit www.extrahop.com or follow us on LinkedIn.
© 2026 ExtraHop Networks, Inc., RevealX, RevealX 360, RevealX Enterprise, and ExtraHop are registered trademarks or trademarks of ExtraHop Networks, Inc.





