
CrowdStrike launches new AI security & readiness services for SOCs
CrowdStrike has introduced two new services targeting the security and operationalisation of artificial intelligence systems in security operations centres (SOCs).
The company's new offerings, AI Systems Security Assessment and AI for SecOps Readiness, are aimed at supporting organisations as they secure AI technologies powering their business processes and integrate AI into their security operations.
These services build on CrowdStrike's AI Red Team Services from 2024 as businesses increasingly incorporate technologies such as large language models (LLMs), copilots, and agentic tools. The use of these technologies introduces new forms of risk, such as shadow AI, configuration errors, and the emergence of autonomous agents acting with privileged access. Simultaneously, cyber adversaries are adopting AI-driven methods to automate reconnaissance, generate targeted phishing campaigns, and bypass established security controls.
Service aims
The AI Systems Security Assessment is designed to help organisations gain oversight of where and how AI is being used within their infrastructure, identify sources of risk, and make improvements in governance and protection. This service leverages existing CrowdStrike solutions, including the Falcon platform and relevant add-ons such as Falcon Shield, Falcon Cloud Security AI-SPM, and AI Model Scanning. It is intended to provide both technical and practical evaluations of an organisation's AI security posture.
Features of the AI Systems Security Assessment include real-time visibility into AI usage across software-as-a-service (SaaS), cloud environments, and endpoints through Falcon-native telemetry. It also involves risk assessments using threat-informed testing that mimic real-world adversaries. The service concludes with direct recommendations to strengthen the governance and architectural security for AI-driven systems, including those based on LLMs and autonomous agents.
The AI for SecOps Readiness service is aimed at enabling security teams to safely and efficiently leverage AI across detection, investigation, and response processes. This assessment evaluates the readiness of existing staff, tools, and workflows for AI adoption, identifies opportunities for deploying AI within SOC operations, and provides reference architectures and integration strategies. The service outputs a prioritised roadmap for integrating both Falcon-native and third-party AI technologies.
Industry challenges
According to CrowdStrike, the convergence of evolving AI systems and adversarial use of AI is creating a dual challenge for cybersecurity teams.
"Security teams are under pressure on both sides, to protect rapidly evolving AI systems and to bring AI into the SOC without introducing new risk," said Tom Etheridge, Chief Global Services Officer, CrowdStrike. "These services are purpose-built to meet that dual challenge head-on, combining the power of the Falcon platform, threat intelligence, and expert guidance to help organizations reduce risk, improve resilience, and move faster with confidence."
For the AI Systems Security Assessment, CrowdStrike emphasises technical functions such as AI risk discovery, powered by the Falcon platform, which surfaces unmonitored shadow AI deployments, misconfigurations, and exposures including autonomous agents operating undetected with privileged credentials.
The service also incorporates threat-informed testing, which uses industry benchmarks and simulated adversary behaviours to assess real-world risks to AI models and their supporting infrastructure. CrowdStrike provides actionable guidance designed to enhance AI model governance and architectural security, reducing complexity and risk across various AI deployments.
Operational readiness
The AI for SecOps Readiness service is designed to match the evolving threat landscape, where adversaries are utilising AI to speed up their attack chains. CrowdStrike's service evaluates security operations for AI integration readiness, identifies high-value use cases such as AI-driven alert triage and investigations, and supports organisations in architecting their own responsible, scalable AI adoption strategies.
Specific deliverables from this service include a structured assessment of SOC workflows, alignment of AI opportunities with business maturity, advice on whether to build or buy AI tools, and a prioritised implementation plan that spans both CrowdStrike's own Falcon platform and external AI solutions. The roadmap aims to lower the barriers to AI adoption in security operations while mitigating potential new risks and delivering tangible operational improvements.