STOCK TITAN

CrowdStrike Expands Leadership in Hybrid Identity Protection with Falcon Identity Protection for Microsoft Entra ID

Rhea-AI Impact
(Low)
Rhea-AI Sentiment
(Negative)
Tags

CrowdStrike (NASDAQ: CRWD) has announced the general availability of Falcon Identity Protection for Microsoft Entra ID, enhancing identity security across hybrid environments. This expansion unifies prevention, detection, and response to identity-based attacks by extending inline prevention to cloud-based Microsoft Entra ID.

The solution addresses critical security challenges, as 75% of initial access attacks are now malware-free, with adversaries exploiting trusted identities. Key features include real-time protection for Entra ID, unified identity and endpoint security through Microsoft's External Authentication Method integration, and hybrid risk-based conditional access.

The CrowdStrike Falcon platform leverages advanced AI trained on trillions of security events, native device trust data, and threat intelligence to analyze user behavior and privilege status, making risk-based access decisions for granting, blocking, or challenging initial access.

CrowdStrike (NASDAQ: CRWD) ha annunciato la disponibilità generale di Falcon Identity Protection per Microsoft Entra ID, migliorando la sicurezza dell'identità in ambienti ibridi. Questa espansione unifica la prevenzione, la rilevazione e la risposta agli attacchi basati sull'identità estendendo la prevenzione inline a Microsoft Entra ID basato su cloud.

La soluzione affronta sfide di sicurezza critiche, poiché il 75% degli attacchi di accesso iniziale è ora privo di malware, con avversari che sfruttano identità fidate. Le caratteristiche principali includono protezione in tempo reale per Entra ID, sicurezza unificata dell'identità e dei punti finali attraverso l'integrazione del Metodo di Autenticazione Esterno di Microsoft, e accesso condizionato basato sul rischio ibrido.

La piattaforma CrowdStrike Falcon sfrutta un'AI avanzata addestrata su trilioni di eventi di sicurezza, dati di fiducia dei dispositivi nativi e intelligence sulle minacce per analizzare il comportamento degli utenti e lo stato dei privilegi, prendendo decisioni di accesso basate sul rischio per concedere, bloccare o mettere in discussione l'accesso iniziale.

CrowdStrike (NASDAQ: CRWD) ha anunciado la disponibilidad general de Falcon Identity Protection para Microsoft Entra ID, mejorando la seguridad de la identidad en entornos híbridos. Esta expansión unifica la prevención, detección y respuesta a ataques basados en la identidad al extender la prevención en línea a Microsoft Entra ID basado en la nube.

La solución aborda desafíos críticos de seguridad, ya que el 75% de los ataques de acceso inicial ahora están libres de malware, con adversarios que explotan identidades de confianza. Las características clave incluyen protección en tiempo real para Entra ID, seguridad unificada de identidad y puntos finales a través de la integración del Método de Autenticación Externa de Microsoft, y acceso condicional basado en riesgos híbridos.

La plataforma CrowdStrike Falcon aprovecha una IA avanzada entrenada en billones de eventos de seguridad, datos de confianza de dispositivos nativos e inteligencia de amenazas para analizar el comportamiento del usuario y el estado de privilegios, tomando decisiones de acceso basadas en riesgos para conceder, bloquear o desafiar el acceso inicial.

CrowdStrike (NASDAQ: CRWD)Microsoft Entra ID를 위한 Falcon Identity Protection의 일반 출시를 발표하며 하이브리드 환경에서의 신원 보안을 강화했습니다. 이 확장은 클라우드 기반 Microsoft Entra ID에 대한 인라인 예방을 확장하여 신원 기반 공격에 대한 예방, 탐지 및 대응을 통합합니다.

이 솔루션은 초기 접근 공격의 75%가 이제 악성코드가 없다는 중요한 보안 문제를 해결하며, 적들이 신뢰할 수 있는 신원을 악용하고 있습니다. 주요 기능으로는 Entra ID에 대한 실시간 보호, Microsoft의 외부 인증 방법 통합을 통한 신원 및 엔드포인트 보안 통합, 하이브리드 위험 기반 조건부 접근이 포함됩니다.

CrowdStrike Falcon 플랫폼은 수조 개의 보안 이벤트, 네이티브 장치 신뢰 데이터 및 위협 인텔리전스를 기반으로 훈련된 고급 AI를 활용하여 사용자 행동 및 권한 상태를 분석하고, 초기 접근을 허용, 차단 또는 도전하기 위한 위험 기반 접근 결정을 내립니다.

CrowdStrike (NASDAQ: CRWD) a annoncé la disponibilité générale de Falcon Identity Protection pour Microsoft Entra ID, renforçant la sécurité des identités dans des environnements hybrides. Cette expansion unifie la prévention, la détection et la réponse aux attaques basées sur l'identité en étendant la prévention en ligne à Microsoft Entra ID basé sur le cloud.

La solution répond à des défis de sécurité critiques, car 75 % des attaques d'accès initial sont désormais exemptes de malware, les adversaires exploitant des identités de confiance. Les fonctionnalités clés incluent une protection en temps réel pour Entra ID, une sécurité unifiée des identités et des points de terminaison grâce à l'intégration de la méthode d'authentification externe de Microsoft, et un accès conditionnel basé sur le risque hybride.

La plateforme CrowdStrike Falcon exploite une IA avancée formée sur des billions d'événements de sécurité, des données de confiance des appareils natifs et des renseignements sur les menaces pour analyser le comportement des utilisateurs et le statut des privilèges, prenant des décisions d'accès basées sur les risques pour accorder, bloquer ou contester l'accès initial.

CrowdStrike (NASDAQ: CRWD) hat die allgemeine Verfügbarkeit von Falcon Identity Protection für Microsoft Entra ID angekündigt, um die Identitätssicherheit in hybriden Umgebungen zu verbessern. Diese Erweiterung vereint Prävention, Erkennung und Reaktion auf identitätsbasierte Angriffe, indem die Inline-Prävention auf die cloudbasierte Microsoft Entra ID ausgeweitet wird.

Die Lösung adressiert kritische Sicherheitsherausforderungen, da 75 % der anfänglichen Zugriffsangriffe jetzt malwarefrei sind und Gegner vertrauenswürdige Identitäten ausnutzen. Zu den Hauptmerkmalen gehören der Echtzeitschutz für Entra ID, eine einheitliche Identitäts- und Endpunktsicherheit durch die Integration der externen Authentifizierungsmethode von Microsoft sowie risikobasierter hybrider bedingter Zugriff.

Die CrowdStrike Falcon-Plattform nutzt fortschrittliche KI, die auf Billionen von Sicherheitsereignissen, nativen Gerätvertrauensdaten und Bedrohungsinformationen trainiert wurde, um das Benutzerverhalten und den Berechtigungsstatus zu analysieren und risikobasierte Zugriffsentscheidungen zu treffen, um den Zugriff zu gewähren, zu blockieren oder anzufechten.

Positive
  • Expanded security coverage to Microsoft Entra ID enhances market position
  • AI-powered protection leveraging trillions of security events
  • Unified platform approach reduces complexity in hybrid environments
  • Integration with Microsoft's External Authentication Method (EAM)
Negative
  • None.

Insights

CrowdStrike's release of Falcon Identity Protection for Microsoft Entra ID represents a strategic expansion of its security platform, addressing a critical vulnerability in modern hybrid environments. This move is particularly significant as 75% of initial access attacks now exploit identity systems rather than using traditional malware, making identity security a top priority for organizations.

The new offering strengthens CrowdStrike's competitive position in two key dimensions. First, it extends the company's security umbrella across the full hybrid identity landscape—from on-premises Active Directory to cloud-based identity providers and SaaS applications. Second, it addresses the entire attack lifecycle with both preventative controls and detection/response capabilities, differentiating from point solutions that focus on only one aspect of identity security.

From a business perspective, this release aligns perfectly with CrowdStrike's platform expansion strategy. By integrating identity protection directly into the Falcon platform, CrowdStrike creates natural upsell opportunities within its existing 96.5 billion market cap customer base while potentially increasing switching costs. The integration with Microsoft's External Authentication Method is particularly noteworthy, as it allows CrowdStrike to add value within Microsoft environments while maintaining its independent security position.

This release positions CrowdStrike to capitalize on the market trend toward security consolidation. Organizations increasingly seek to reduce their security vendor footprint, and CrowdStrike's ability to unify endpoint, cloud, and now comprehensive identity security strengthens its value proposition as a platform provider. For investors, this represents potential acceleration in module adoption rates and increased average contract values.

The competitive dynamics with Microsoft bear watching, as Microsoft both partners with CrowdStrike (via this integration) while competing with its own security offerings. CrowdStrike's approach of providing cross-platform protection that extends beyond Microsoft's native capabilities creates a compelling differentiation strategy in this coopetition scenario.

Falcon platform unifies real-time prevention with advanced ITDR, securing the entire identity attack lifecycle—from initial access to lateral movement—across hybrid environments

AUSTIN, Texas--(BUSINESS WIRE)-- CrowdStrike (NASDAQ: CRWD) today announced the general availability of CrowdStrike Falcon® Identity Protection for Microsoft Entra ID, setting a new standard in identity security by unifying prevention, detection and response to identity-based attacks across hybrid environments. With this release, CrowdStrike extends its inline prevention to cloud-based Microsoft Entra ID, expanding its comprehensive identity protection for leading cloud-based identity providers, on-premises Active Directory (AD) and SaaS applications. By unifying real-time prevention with advanced identity threat detection and response (ITDR), the CrowdStrike Falcon® platform is the only cybersecurity platform that secures the entire identity attack lifecyclefrom initial access to lateral movement—across hybrid environments.

Seventy-five percent of attacks to gain initial access are now malware free, with adversaries exploiting trusted identities to infiltrate organizations undetected. Adversary groups like SCATTERED SPIDER and COZY BEAR compromise identity and cloud access points to move laterally across hybrid environments, while FAMOUS CHOLLIMA embeds malicious insiders at organizations to operate from within. Defending against these evolving threats requires organizations to stop external adversaries from gaining access, while rapidly detecting and eliminating threats that may already be inside. With inline prevention for Entra ID combined with advanced ITDR, CrowdStrike secures every part of modern hybrid environments—from prevention to detection to response.

“Identity is at the center of modern cyberattacks, yet organizations are forced to secure it with fragmented solutions that leave dangerous gaps,” said Elia Zaitsev, chief technology officer, CrowdStrike. “CrowdStrike delivers unified, real-time time protection across every area of hybrid environments—stopping adversaries at every stage of the attack. By extending protection to Entra ID, we’re once again raising the bar for identity security.”

As a unified component of the CrowdStrike Falcon® cybersecurity platform, Falcon Identity Protection stops sophisticated cross-domain and insider threats spanning identity, cloud and endpoint. CrowdStrike leverages advanced AI trained on trillions of security events, native device (endpoint) trust data, and industry-leading threat intelligence to analyze user behavior and privilege status, determining whether to grant, block or challenge initial access. Combined with advanced ITDR, it ensures continuous threat detection and rapid mitigation. With Falcon Identity Protection for Entra ID, CrowdStrike makes risk-based access decisions inline with Entra ID authentication flows, and extends protection throughout the identity attack lifecycle. Key features include:

  • Real-time protection for Entra ID: Customers gain AI-powered protection against adversaries leveraging password spraying, phishing and other identity threats to target Entra ID environments and move laterally.
  • Unified identity and endpoint security: By integrating with Microsoft’s External Authentication Method (EAM), Falcon Identity Protection leverages real-time CrowdStrike and Microsoft trust signals to secure access at login. With native endpoint visibility from the Falcon sensor, it enforces security based on both device and identity risk.
  • Hybrid risk-based conditional access: Falcon Identity Protection enforces access controls via a single interface, blocking or dynamically injecting MFA based on real-time threats across on-premises AD, cloud-based identity providers including Entra ID, Okta and Ping, and SaaS applications.

“As organizations like ours adopt hybrid environments to optimize cost and performance, security must evolve just as fast. A user’s identity is becoming much more involved, making it easier for adversaries to exploit and harder for security teams to protect," said Paul Colon, security engineer, information security at Addition Financial. "CrowdStrike continues to innovate Falcon Identity Protection, providing seamless, real-time security across both on-premises and cloud-based systems. By unifying identity protection into a single platform, CrowdStrike helps us stay ahead of emerging threats without introducing complexity.”

To learn more about Falcon Identity Protection for Microsoft Entra ID, read our blog.

About CrowdStrike

CrowdStrike (NASDAQ: CRWD), a global cybersecurity leader, has redefined modern security with the world’s most advanced cloud-native platform for protecting critical areas of enterprise risk – endpoints and cloud workloads, identity and data.

Powered by the CrowdStrike Security Cloud and world-class AI, the CrowdStrike Falcon® platform leverages real-time indicators of attack, threat intelligence, evolving adversary tradecraft and enriched telemetry from across the enterprise to deliver hyper-accurate detections, automated protection and remediation, elite threat hunting and prioritized observability of vulnerabilities.

Purpose-built in the cloud with a single lightweight-agent architecture, the Falcon platform delivers rapid and scalable deployment, superior protection and performance, reduced complexity and immediate time-to-value.

CrowdStrike: We stop breaches.

Learn more: https://www.crowdstrike.com/
Follow us: Blog | X | LinkedIn | Facebook | Instagram
Start a free trial today: https://www.crowdstrike.com/free-trial-guide/

© 2025 CrowdStrike, Inc. All rights reserved. CrowdStrike and CrowdStrike Falcon are marks owned by CrowdStrike, Inc. and are registered in the United States and other countries. CrowdStrike owns other trademarks and service marks and may use the brands of third parties to identify their products and services.

Media Contact

Jake Schuster

CrowdStrike Corporate Communications

press@crowdstrike.com

Source: CrowdStrike

FAQ

What are the key features of CrowdStrike's new Falcon Identity Protection for Microsoft Entra ID?

The solution offers real-time protection for Entra ID, unified identity and endpoint security through Microsoft's EAM integration, and hybrid risk-based conditional access controls across multiple platforms.

How does CRWD's Falcon Identity Protection address modern cyber threats?

It uses AI-powered protection against password spraying and phishing, leverages real-time trust signals, and provides unified prevention, detection, and response across hybrid environments.

What percentage of attacks does CRWD identify as malware-free initial access attempts?

According to CrowdStrike, 75% of attacks to gain initial access are now malware-free, with adversaries exploiting trusted identities.

Which threat groups does CRWD identify as major identity-based attackers?

CrowdStrike identifies SCATTERED SPIDER, COZY BEAR, and FAMOUS CHOLLIMA as major threat groups targeting identity and cloud access points.

Crowdstrike Holdings

NASDAQ:CRWD

CRWD Rankings

CRWD Latest News

CRWD Stock Data

93.54B
241.78M
1.04%
75.68%
3.4%
Software - Infrastructure
Services-prepackaged Software
Link
United States
AUSTIN