CrowdStrike Falcon OverWatch for Defender Extends Managed Threat Hunting to Microsoft Endpoint Customers
For organizations standardized on Microsoft Defender, automated detections alone leave gaps that today's AI-accelerated adversaries are built to exploit. Falcon OverWatch for Defender closes those gaps with continuous, expert-led hunting that identifies and stops threats before they escalate. The announcement builds on
“Today's attacks are stealthy, fast-moving, and designed to evade detection, making expert-led threat hunting essential," said
Proactively Hunting Stealthy Adversaries
According to the
Falcon OverWatch for Defender
Falcon OverWatch for Defender uncovers subtle patterns of attack, escalates high-confidence threats, and guides response to disrupt sophisticated threats that might otherwise go undetected, without impacting existing protections.
Key features and benefits include:
-
Adversary Intelligence-Driven Hunting:
CrowdStrike tracks over 280 of the world’s most sophisticated nation-state, eCrime, and hacktivist groups. The industry’s top threat hunters leverage this intelligence to identify real threat actor behavior, deliver high-confidence detections, and stop sophisticated attacks. - AI-Powered Threat Hunting at Machine Speed and Scale: The OverWatch team leverages patented AI, proprietary detection patterns, and deep adversary expertise to analyze up to 6.2 trillion events per day, uncovering stealthy and novel threats.
-
Power of the Crowd: With visibility across
CrowdStrike's vast global customer base, OverWatch rapidly applies new techniques identified in one environment across others, enabling earlier detection and response. No single-customer deployment can replicate this advantage.
Customer results show Falcon OverWatch can reduce alert volume up to 500x, with 98% true positives, and up to 95% reduction in threat hunting staffing costs. OverWatch for Defender brings these proven outcomes to Microsoft Defender customers.
To learn more about Falcon OverWatch for Defender, read our blog.
*Microsoft and Defender are registered trademarks of Microsoft Corporation.
About
Powered by the CrowdStrike Security Cloud and world-class AI, the CrowdStrike Falcon® platform leverages real-time indicators of attack, threat intelligence, evolving adversary tradecraft, and enriched telemetry from across the enterprise to deliver hyper-accurate detections, automated protection and remediation, elite threat hunting, and prioritized observability of vulnerabilities.
Purpose-built in the cloud with a single lightweight-agent architecture, the Falcon platform delivers rapid and scalable deployment, superior protection and performance, reduced complexity, and immediate time-to-value.
Learn more: https://www.crowdstrike.com/
Follow us: Blog | X | LinkedIn | Instagram
Start a free trial today: https://www.crowdstrike.com/trial
© 2026
View source version on businesswire.com: https://www.businesswire.com/news/home/20260505531987/en/
Media Contact
press@crowdstrike.com
Source: