What actions is your organization taking to mitigate the risks and manage the impact of the CrowdStrike outage? (Select all that apply)

Recovery procedures: Activating recovery procedures and guiding help desk on increased calls40%

Employee Support: Assisting affected employees with alternative work methods and internal updates (intranet posts, email blasts)64%

lock icon

Please join or sign in to view more content.

By joining the Peer Community, you'll get:

  • Peer Discussions and Polls
  • One-Minute Insights
  • Connect with like-minded individuals

Incident response: Activating in-depth security investigation and response procedures49%

External support: Seeking support from external consultants, tech vendors, and service providers19%

Security measures: Implementing additional security controls and notifications to protect our users27%

External communication: Providing updates to customers and external stakeholders25%

CrowdStrike communication: Communicating directly with CrowdStrike21%

Microsoft communication: Communicating directly with Microsoft15%

Other: Share in comments3%

138 PARTICIPANTS
1.4k views16 Upvotes9 Comments
Sort By:
Oldest
Board Member2 months ago
Throughout my career, we have always mandated testing the impact of patches in our environment before production deployment to protect its integrity.   However, with the evolution of cloud adoption and outsourcing, we have relied on our vendor partners to apply the change management governance required.  This global outage definitely highlights customer and partner vulnerabilities.  
3
IT Manager in Construction2 months ago
That's a critical topic as you rollout these updates in a live / production environment, the end users and customers.

Definitely underrated scenario.
1
CISO2 months ago
This is my favorite fan theory: that the Microsoft Azure outage caused a script at CrowdStrike to insert nulls or error text at an exciting spot in what was supposed to be a routine delta update file, and the driver has a subsequent parse failure.
1
Legal Analyst2 months ago
We're on Macs so no issues.
2
Former CISO, VP in IT Services2 months ago
Scheduling a review of the digital resilience of complex ecosystems and critical services.  Reviews of both technical resilience  with multiple cloud automatic failover configuration, operational QA times before updates applied, and associated business continuity plans.  

The "double whammy" of both a Microsoft 365 outage coupled with a Crowdstrike Falcon is driving a very deep and detailed review of the complete technical stack and continuity plans.  
2

Content you might like

VP of Global IT and Cybersecurity in Manufacturing6 years ago
Have clear business requirements up front, make sure the proposal includes items such as scope, timeline, cost, resources.
Read More Comments
22.1k views3 Upvotes28 Comments

TCO19%

Pricing26%

Integrations21%

Alignment with Cloud Provider7%

Security10%

Alignment with Existing IT Skills4%

Product / Feature Set7%

Vendor Relationship / Reputation

Other (comment)

View Results
5.7k views3 Upvotes1 Comment
IT Manager in Constructiona month ago
Hello,
the topic is so broad, what are you focused on?
Read More Comments
4.8k views2 Upvotes5 Comments

Yes79%

No20%

1.2k views