CrowdStrike has redefined security with the world’s most advanced cloud-native platform that protects and enables the people, processes and technologies that drive modern enterprise. CrowdStrike secures the most critical areas of risk to keep customers ahead of today’s adversaries and stop breaches.
Externally validated and accredited, our cybersecurity technology and solutions are trusted to safeguard the data for thousands of organizations, while helping them to adhere to the strictest regulatory mandates. Use this Trust Center to learn more about CrowdStrike's security posture and request access to our assurance resources.
Risk Management
Risk Management
We have a dedicated team that manages security risks. We are happy to provide more details about our risk management practices upon request.
Compliance Updates
CrowdStrike Releases Latest Certifications and Audits
CrowdStrike is pleased to announce the completion of our most recent certifications and audits:
SOC 2 Type I and II Audits for Security and Availability Criteria:
- SOC 2 Type II Report for CrowdStrike Corporate Operations
- SOC 2 Type II Report for The Falcon Platform
- SOC 2 Type I Report for The CrowdStrike Forensic Lab
ISO Certifications and Updates:
- Updated ISO/IEC 27001:2022 Certification of CrowdStrike’s Information Security Management System, which now includes ISO/IEC 27017:2015
- Newly issued ISO 22301:2019 Certification of CrowdStrike’s Business Continuity Management System
Cloud Security Alliance- Security, Trust, and Assurance Registry Program:
- Updated CSA STAR Level 2 Certification
Privacy Certifications:
- APEC Cross Border Privacy Rules (CBPR) Certification
- APEC Privacy Recognition for Processors (PRP) Certification
These certifications and audits demonstrate CrowdStrike’s commitment to security, privacy, and resilience in the delivery of our products and the protection of customer data. Reports and certificates are now available for review in our Trust Center.
CrowdStrike recently completed a European Union Digital Operational Resilience Act (DORA) assessment with our external auditor, Schellman. Their conclusion confirms that CrowdStrike is fully compliant with DORA requirements and prepared for its implementation coming into effect on January 17, 2025. This reinforces CrowdStrike’s position as a leading provider in cyber resilience for customers who may consider us a critical supplier in the European Union under DORA. A copy of the assessment executive summary is now available within the trust center.
Product Updates
The CrowdStrike Falcon Platform for Government has successfully achieved FedRAMP® High authorization. For more information, please see our blog post here: https://www.crowdstrike.com/en-us/blog/crowdstrike-achieves-fedramp-high-authorization/


















