CrowdStrike

Endpoint agents cannot reach most of the devices that influence a physical process. Dragos and CrowdStrike close that gap, pairing the Dragos Platform’s xOT-native asset visibility and threat detection with CrowdStrike Falcon® endpoint data so both consoles work from one accurate picture of operations.

The Power of the Dragos Platform + CrowdStrike Falcon

CrowdStrike Falcon

CrowdStrike Falcon® provides endpoint detection and response where agents can be deployed: the servers, workstations, and edge devices that support operations. The Dragos Platform goes where agents cannot, monitoring passively across 600+ industrial protocols without adding operational risk. Two integrations connect the platforms so asset data flows in both directions.

Analysts investigating an alert see OT assets alongside the rest of the estate in the console they already use. Shared asset context speeds root cause analysis across IT and OT, shortens investigations, and reduces mean time to recovery (MTTR).

Enhance Your IT/OT Security with Dragos and CrowdStrike

  • See every asset that influences operations. The Dragos Platform discovers and profiles every asset in the OT environment, from traditional control systems to the newest devices on the network, passively and with complete context.
  • Bring OT inventory into Falcon. The Dragos Platform Data Connector sends Dragos-discovered asset inventory into CrowdStrike Falcon® Discover for IoT, including PLCs, RTUs, HMIs, historians, and engineering workstations, with segmentation context across virtual zones, Purdue levels, and ICS protocols.
  • Enrich OT assets with endpoint detail. Dragos Endpoint Asset Enrichment pulls Falcon endpoint data into the Dragos Platform. Operators review match evidence and approve each endpoint-to-asset mapping before it is committed, so the inventory stays accurate.
  • Fix the vulnerabilities that matter first. “Now, Next, Never” prioritization focuses teams on the 3 to 6 percent of OT vulnerabilities requiring immediate action (Dragos 2026 Year in Review), with endpoint context from Falcon sharpening the call.
  • Respond without stopping production. Falcon detections on edge ICS devices generate notifications in the Dragos Platform, paired with response playbooks built to prioritize operational uptime alongside threat mitigation.
Explore Partner Resources
Related Partner Resources
Press Release
Dragos integrates with CrowdStrike Falcon Next-Gen SIEM to deliver enhanced OT threat detection, visibility, and protection for industrial networks.
Press Release
Dragos and CrowdStrike expand collaboration to deliver advanced visibility, detection, and response across IT and OT networks, enhancing industrial cybersecurity.