Home » Tech Value Chain » Global Brands » BeyondTrust Adds Identity Security to Falcon SIEM
News Desk -

Share

BeyondTrust has announced new integrations that bring identity security into CrowdStrike Falcon® Next-Gen SIEM.

The integrations connect solutions on the BeyondTrust Pathfinder Platform with Falcon Next-Gen SIEM. BeyondTrust focuses on privilege-centric identity security and protects Paths to Privilege™.

As a result, BeyondTrust’s identity and privilege intelligence now flows directly into the CrowdStrike Falcon® platform. The integrations correlate identity relationships and privilege exposure insights with Falcon threat telemetry. These insights cover human, non-human, and AI agent identities.

Consequently, joint customers can bring additional identity and privilege context into Falcon. This helps reveal attack paths and accelerate investigation and response. Customers also gain a single, correlated view of privilege risk and threat activity.

Meanwhile, security teams are facing attackers who gain access with legitimate, compromised credentials rather than traditional malware. For this reason, identity and privilege have become two of the most consequential risk surfaces in the enterprise.

Recent BeyondTrust Phantom Labs research supports this trend. It found that approximately 75% of modern attack paths exploit identity relationships rather than software vulnerabilities alone. The finding underscores why identity security should be correlated with threat activity.

“Attackers increasingly exploit legitimate identities and privileges to move through enterprise environments, making identity context critical to understanding and responding to threats,” said David Manks, Vice President, Strategic Alliances at BeyondTrust. “By bringing BeyondTrust’s identity and privilege intelligence into CrowdStrike Falcon, joint customers can connect privilege risk with threat activity, bringing identity threat prevention and detection together to accelerate investigation and response.”

In addition, the integrations aim to close the gap between identity prevention and detection. They connect several BeyondTrust Pathfinder Platform solutions with Falcon Next-Gen SIEM.

First, BeyondTrust Endpoint Privilege Management (EPM) surfaces policy changes, privilege elevation requests, and blocked execution events within Falcon. These appear alongside other threat indicators.

Second, BeyondTrust Password Safe® brings privileged access insights into the Falcon console. These insights enrich threat detection with privileged credential context.

Finally, BeyondTrust Privileged Remote Access (PRA) shares configuration changes, console authentications, and session activity. This extends visibility into cloud and network infrastructure.

Notably, the integrations build on BeyondTrust’s Pathfinder platform. The platform already discovers, prioritizes, and remediates privilege risk across human, non-human, and AI agent identities.

The integrations also build on BeyondTrust’s broader vision for privilege-centric identity security across human, non-human, workload, and AI identities. To learn more about these new integrations between BeyondTrust and CrowdStrike, visit the CrowdStrike Marketplace.