crowdstrike/falcon-devices

VendorCrowdStrike Holdings, Inc.Parsers
AuthorCrowdStrikeDashboards
Version0.1.0Alerts
Minimum LogScale Version1.15.0Actions
  Scheduled Searches

The CrowdStrike Falcon Devices integration package enables security teams to query and manage endpoint device information from the Falcon platform through automated workflows and third-party integrations. It provides access to comprehensive device inventory data including hostname, operating system, network information, sensor status, and security posture details for all endpoints protected by Falcon.

The integration allows organizations to automate device management tasks, enrich security incidents with endpoint context, and maintain visibility across their entire fleet of devices. This helps security and IT operations teams streamline endpoint monitoring, investigation, and response activities by programmatically accessing Falcon's device data.