https://store-images.s-microsoft.com/image/apps.47351.2b4ebd21-b244-49a6-844d-0555bb565971.5acccdcc-9929-4e74-9bb0-96ce7fed3d0e.92b05772-5c80-40c0-800c-a45b21db1abc

CrowPilot - Crowdstrike Agent for Security Copilot

Security Risk Advisors Intl, LLC

CrowPilot - Crowdstrike Agent for Security Copilot

Security Risk Advisors Intl, LLC

A free agent for Security Copilot that enables interaction with the Crowdstrike Falcon EDR platform

CrowPilot is an agent run in your Azure environment and allows Security Copilot to control and interact with your Crowdstrike Falcon EDR platform. It enables you and Security Copilot to:

  1. Retrieve host information
  2. List all incidents
  3. Get details of a specific incident
  4. Perform an On Demand Scan
  5. Check the health of their configuration
  6. Isolate a host
  7. Reverse isolation of a host
  8. Hide a host
  9. Unhide a host
  10. Move a host to a new host group
  11. Block an IOC
  12. Unblock an IOC
  13. Retrieve a Zero Trust Score
  14. Suppress a detection
  15. Unsuppress a detection

Once deployed, within Security Copilot just copy and paste (or grab the file and upload) this link as the 'Plugin' Installation

For further installation instructions and permissions guidance, see https://sra.io/crowpilot
https://store-images.s-microsoft.com/image/apps.18208.2b4ebd21-b244-49a6-844d-0555bb565971.10ded7c0-dc48-4500-83a1-b314264abacd.c916c5c8-e22e-4a1a-a38c-8359a7c0e5d7
https://store-images.s-microsoft.com/image/apps.18208.2b4ebd21-b244-49a6-844d-0555bb565971.10ded7c0-dc48-4500-83a1-b314264abacd.c916c5c8-e22e-4a1a-a38c-8359a7c0e5d7