Falcon Cloud Worload Protection

CrowdStrike Falcon Cloud Workload Protection provides comprehensive breach protection for workloads and containers, enabling you to build, run, and protect applications with speed and confidence.

Fabricantes: CrowdStrike
Category: Rede/Segurança
Learn more about Falcon Cloud Worload Protection

Request a Quote

What is Falcon Cloud Worload Protection?

CrowdStrike Falcon Cloud Workload Protection provides comprehensive breach protection for workloads and containers, enabling you to build, run, and protect applications with speed and confidence.

BENEFITS

WORKLOAD PROTECTION - FROM HOST TO CLOUD AND EVERYWHERE IN BETWEEN

GET COMPLETE VISIBILITY ACROSS YOUR ENTIRE CLOUD ON A SINGLE PLATFORM

Falcon Cloud Workload Protection provides complete visibility into workload and container events and instance metadata, enabling faster and more accurate threat detection, response, hunting, and investigation to ensure nothing goes unnoticed in your cloud environment.

PREVENT ATTACKS AND PREVENT BUSINESS DISRUPTION

Falcon Cloud Workload Protection protects the entire cloud-native stack, in any cloud, across all Kubernetes workloads, containers, and applications. Automate security and detect and stop suspicious activity, zero-day attacks, and risky behaviors to stay ahead of threats and reduce the attack surface.

ELIMINATE FRICTION AND STAY SAFE WHILE BUILDING IN THE CLOUD

Falcon Cloud Workload Protection core integrations support continuous integration/delivery (CI/CD) workflows, allowing you to protect workloads at the speed of DevOps without sacrificing performance

FEATURES

WHY FALCON CLOUD WORKLOAD PROTECTION

VULNERABILITY SCANNING AND MANAGEMENT

Improve decision making: Gather insights and details about your cloud and container workload – images, records, libraries, and containers generated from those images.

Discover hidden threats: Find hidden malware, embedded secrets, configuration issues, and more in your images to help reduce the attack surface.

Gain visibility into container environments: Gain full visibility into running containers to uncover details related to file access, network communications, and process activity.

Identify vulnerabilities faster: Save valuable time with predefined image scanning policies, allowing you to identify vulnerabilities, misconfigurations, and more.

Eliminate threats before production: Block exploitable vulnerabilities based on IOAs before runtime, eliminating headaches for security teams.

Continuously monitor: Identify new vulnerabilities at run time, alert, and take action without having to re-scan images.

MULTI-CLOUD WORKLOAD DISCOVERY

Continuous feature discovery: Provides insight into the cloud footprint so you can protect all workloads, discover and mitigate risk, and reduce the attack surface.

Automate discovery: Automatically discovers existing cloud workload deployments – without installing an agent – by enumerating AWS EC2 instances, GCP Compute instances, and Azure VMs.

Granular context and insights: Provides real-time information about workloads, including context-rich metadata about system size and configuration, network, and security group information for AWS, GCP, and Azure.

Discover unprotected resources: Identifies workloads that are not protected by the Falcon platform.

AUTOMATED CI/CD PIPELINE SECURITY

Accelerate delivery: Create verified image policies to ensure that only approved images can progress through the pipeline and run them on Kubernetes hosts or clusters.

Identify threats in advance: Continuously scan container images for known vulnerabilities, configuration issues, secrets/keys, and OSS licensing issues.

Assess your pipeline's vulnerability posture: Discover malware not detected by static scanners before containers are deployed.

Improve security operations: Simplify visibility into security operations by providing insights and context for misconfigurations and compliance breaches.

Integrate with developer toolsets: Integrate seamlessly with Jenkins, Bamboo, GitLab, and more to fix and respond faster to the DevOps toolsets you already use.

Enable DevSecOps: Reports and dashboards drive alignment and a shared understanding between security operations, DevOps, and infrastructure teams.

CONTAINER SAFETY

Full visibility of the container environment: Provides complete visibility into the container footprint, including on-premises and cloud deployments.

Prevent attacks in container environments: Reveals hidden threats in open source packages and third-party images to prevent attacks on your container-based applications.

Apply container immutability: Ensures that only secure images can progress through the pipeline and run on Kubernetes clusters or hosts.

Log All: Captures the start, stop, image, runtime information of the container, and all events generated within the container, even if it only runs for a few seconds.

Easily view container usage: Includes trends and uptime, images used, and configuration to identify risky and misconfigured containers.

Secure hosts and containers: Through a single Falcon agent running on the host, and runtime protection protects containers from active attacks.

Accelerate investigations: Easily investigate container incidents when detections are associated with the specific container and not clustered with host events.

RUNTIME PROTECTION

Secure hosts and containers: Falcon runtime protection protects containers from active attacks.

Broad container support: Supports Linux and Kubernetes environments such as EKS. Offers container-as-a-service support, including Fargate, providing the same level of protection. Technology samples available for AKS, GKE, and Red Hat OpenShift.

Leverage industry-leading protection technologies: machine learning (ML), artificial intelligence (AI), attack indicators (IOAs), and custom hash blocking for automatic defense against malware and sophisticated threats targeting containers.

Prevent malicious behavior: The behavioral profile allows you to block activity that violates the policy, with no impact on the legitimate operation of the container.

Investigate container incidents faster: Easily investigate incidents when detections are associated with the specific container and not grouped with host events.

Here's it all: Capture container start, stop, image, runtime information, and all events generated inside the container, even if it's only running for a few seconds.

Deploy seamlessly with Kubernetes: Easily deploy at scale by including it as part of your Kubernetes cluster.

Improve container orchestration: Capture the Kubernetes namespace, pod metadata, processes, files, and network events.

System Requirements:

CPU: 1.8 GHz dual core processor

RAM: 2 GB

HDD/SSD: 50 GB of free space on main drive

Operating system: Microsoft Windows 10, Microsoft Windows 8 32-bit, Microsoft Windows 7 32-bit, and Microsoft Windows Vista 32-bit

Resolution: 1024×768

Supported Operating Systems

Mac OS X 10.5x (Leopard), Mac OS X 10.6 (Snow Leopard), Mac OS X 10.7 (Lion), Mac OS X 10.7 (Mountain Lion), OS X 10.9 (Mavericks), and Mac OS X 10.10 (Yosemite)

Hardware requirements

Memory - 1 GB RAM and more

Free disk space - 50 MB

System type - 32-bit and 64-bit OS

You don't know what software you need or you haven't found what you were looking for?

You don't know what software you need or you haven't found what you were looking for? We have a team ready to help you choose the right software for your company.