Commvault has introduced a new integration with CrowdStrike, allowing its cyber recovery actions to be seamlessly incorporated into workflows within Charlotte Agentic SOAR. This step enables organizations to automate recovery measures, thereby streamlining response efforts and enhancing forensic investigations while minimizing manual coordination between security and recovery teams.
In an era where AI-driven automation is pivotal in managing threats at rapid speeds, disjointed tools and workflows often hinder security operations during critical periods. The newly developed connector provides a solution by enabling security teams to integrate Commvault's cyber recovery capabilities directly into Charlotte Agentic SOAR's orchestrated workflows. This integration aims to speed up investigative and recovery procedures without impacting production systems.
Highlighted Features
- Enhanced control within Commvault to prevent unauthorized changes during an incident.
- Maintenance of clean recovery points by automatically pausing Commvault backup data aging policies amidst active incidents.
- Facilitation of forensic investigations by restoring potentially compromised assets to the Commvault Cleanroom, allowing for analysis without disrupting operations.
Strengthened Coordination Between Teams
Vidya Shankaran, Field CTO at Commvault, stated, "Security and recovery teams need to move quickly and in coordination during an incident. Our integration with CrowdStrike Charlotte Agentic SOAR makes Commvault cyber recovery actions available directly within security workflows, helping joint customers reduce manual handoffs and accelerate investigation and response. This strengthens cyber resilience and simplifies how security and recovery teams work together seamlessly."
This announcement marks the latest in Commvault's collaborative efforts with CrowdStrike, including other integrations like Falcon Insight XDR for expanded threat intelligence and Falcon Next-Gen SIEM for enhanced visibility. The integration with Charlotte Agentic SOAR is now available for Commvault and CrowdStrike customers through the CrowdStrike Marketplace, further enhancing the security workflow capabilities for joint users.
Commvault, a pioneer in unified resilience at enterprise scale, announced a new integration with CrowdStrike that makes Commvault cyber recovery actions available as native steps within Charlotte Agentic SOAR workflows. The integration enables joint customers to automate Commvault recovery actions as part of security workflows, helping accelerate response and forensic investigations while reducing manual coordination between security and recovery teams.
AI-driven automation is helping organizations detect, investigate, and respond to threats at machine speed, yet fragmented tools and workflows can slow security teams at critical moments. The new purpose-built connector enables security teams to incorporate Commvault cyber recovery actions directly into workflows orchestrated by Charlotte Agentic SOAR and rapidly accelerate investigation, response, and recovery.
Without disrupting production systems
Key capabilities include:
- Restrict access in Commvault to help prevent unauthorized changes during an active incident.
- Preserve clean recovery options by automatically suspending Commvault backup data ageing policies to retain viable recovery points during active incidents.
- Accelerate forensic investigations by restoring potentially compromised assets into Commvault Cleanroom, enabling investigators to begin analysis without disrupting production systems.
Automated security workflows
“Security and recovery teams need to move quickly and in coordination during an incident,” said Vidya Shankaran, Field CTO, Commvault. “Our integration with CrowdStrike Charlotte Agentic SOAR makes Commvault cyber recovery actions available directly within security workflows, helping joint customers reduce manual handoffs and accelerate investigation and response. This strengthens cyber resilience and simplifies how security and recovery teams work together seamlessly.”
Today’s news is the latest in a series of integrations with CrowdStrike: Falcon Insight XDR brought CrowdStrike threat intelligence into Commvault Cloud; Falcon Next-Gen SIEM extended visibility; and the new Charlotte Agentic SOAR integration enables Commvault cyber recovery actions to be incorporated directly into automated security workflows.
The integration between Commvault and Charlotte Agentic SOAR is generally available for joint Commvault and CrowdStrike customers. The integration is also available through the CrowdStrike Marketplace.