Commvault has announced a strategic integration with CrowdStrike, enhancing its cyber recovery offerings through Charlotte Agentic SOAR workflows. This development allows Commvault's cyber recovery actions to be incorporated as native components in these workflows, facilitating faster automated recovery processes and reducing the need for manual coordination among security teams.
In an era where AI-driven automation is critical for detecting and responding to threats at rapid speeds, the integration addresses the challenge of fragmented tools that often hinder the efficiency of security teams. By introducing a dedicated connector, security teams can directly integrate Commvault's recovery actions within the Charlotte Agentic SOAR workflows, thereby expediting the processes of investigation, response, and recovery.
Key functionalities and benefits
This integration empowers security teams with several key capabilities:
- Restricting access within Commvault systems to forestall unauthorised alterations during incidents.
- Automatically preserving recovery points by pausing data ageing policies to maintain clean recovery options during threats.
- Facilitating swift forensic analysis by restoring potentially compromised assets into Commvault Cleanroom without interrupting operational systems.
Streamlined security coordination
Vidya Shankaran, Field CTO, Commvault, commented, "Security and recovery teams need to move quickly and in coordination during an incident. Our integration with CrowdStrike Charlotte Agentic SOAR makes Commvault cyber recovery actions available directly within security workflows, helping joint customers reduce manual handoffs and accelerate investigation and response. This strengthens cyber resilience and simplifies how security and recovery teams work together seamlessly."
This initiative marks the continuation of Commvault's series of integrations with CrowdStrike, including the incorporation of CrowdStrike's threat intelligence through Falcon Insight XDR and extended visibility with Falcon Next-Gen SIEM. The Charlotte Agentic SOAR integration is now generally available for shared Commvault and CrowdStrike customers and can be accessed via the CrowdStrike Marketplace.
Commvault, a pioneer in unified resilience at enterprise scale, announced a new integration with CrowdStrike that makes Commvault cyber recovery actions available as native steps within Charlotte Agentic SOAR workflows. The integration enables joint customers to automate Commvault recovery actions as part of security workflows, helping accelerate response and forensic investigations while reducing manual coordination between security and recovery teams.
AI-driven automation is helping organisations detect, investigate, and respond to threats at machine speed, yet fragmented tools and workflows can slow security teams at critical moments. The new purpose-built connector enables security teams to incorporate Commvault cyber recovery actions directly into workflows orchestrated by Charlotte Agentic SOAR and rapidly accelerate investigation, response, and recovery.
Without disrupting production systems
Key capabilities include:
- Restrict access in Commvault to help prevent unauthorised changes during an active incident.
- Preserve clean recovery options by automatically suspending Commvault backup data ageing policies to retain viable recovery points during active incidents.
- Accelerate forensic investigations by restoring potentially compromised assets into Commvault Cleanroom, enabling investigators to begin analysis without disrupting production systems.
Automated security workflows
“Security and recovery teams need to move quickly and in coordination during an incident,” said Vidya Shankaran, Field CTO, Commvault. “Our integration with CrowdStrike Charlotte Agentic SOAR makes Commvault cyber recovery actions available directly within security workflows, helping joint customers reduce manual handoffs and accelerate investigation and response. This strengthens cyber resilience and simplifies how security and recovery teams work together seamlessly.”
Today’s news is the latest in a series of integrations with CrowdStrike: Falcon Insight XDR brought CrowdStrike threat intelligence into Commvault Cloud; Falcon Next-Gen SIEM extended visibility; and the new Charlotte Agentic SOAR integration enables Commvault cyber recovery actions to be incorporated directly into automated security workflows.
The integration between Commvault and Charlotte Agentic SOAR is generally available for joint Commvault and CrowdStrike customers. The integration is also available through the CrowdStrike Marketplace.