{"@context":"https://certreports.com/llms.txt","vendor":{"slug":"crowdstrike","name":"CrowdStrike","domain":"crowdstrike.com","category":"Security","one_liner":null,"trust_center_url":"https://trust.crowdstrike.com/","security_page_url":null,"url":"https://certreports.com/vendors/crowdstrike/security","last_verified_at":"2026-09-17T00:00:00.000Z","claimed":false,"verified_profile":false},"attestations":[{"framework":"soc-2","framework_name":"SOC 2","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states a SOC 2 Type II report on its trust centre (Drata) as of 17 Sep 2026.","kind":null,"status_text":"Vendor states SOC 2 on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"drata","url":"https://certreports.com/vendors/crowdstrike/soc-2","evidence":[{"source_type":"trust_center","source_name":"CrowdStrike trust centre (Drata)","url":"https://trust.crowdstrike.com/","fetched_at":"2026-09-17 16:27:45.780937+00","content_hash":"feee5929a6eed575cc6667a5441868c0c314ae2aa772552bd3a2b1bce0bf3cf6","wayback_url":null,"quote":"SOC 2","confidence":1}]},{"framework":"gdpr","framework_name":"GDPR","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states a data processing agreement on its trust centre (Drata) as of 17 Sep 2026.","kind":null,"status_text":"Vendor states GDPR on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"drata","url":"https://certreports.com/vendors/crowdstrike/gdpr","evidence":[{"source_type":"trust_center","source_name":"CrowdStrike trust centre (Drata)","url":"https://trust.crowdstrike.com/","fetched_at":"2026-09-17 16:27:45.780937+00","content_hash":"feee5929a6eed575cc6667a5441868c0c314ae2aa772552bd3a2b1bce0bf3cf6","wayback_url":null,"quote":"GDPR","confidence":1}]},{"framework":"fedramp","framework_name":"FedRAMP","state":"verified_registry","state_label":"Verified","sentence":"Listed in the FedRAMP Marketplace as of 17 Sep 2026.","kind":"listing","status_text":"FedRAMP In Process","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":"Schellman Compliance, LLC","impact_level":"High","as_of":"2026-09-17","under_review":false,"source":"fedramp","url":"https://certreports.com/vendors/crowdstrike/fedramp","evidence":[{"source_type":"registry","source_name":"FedRAMP Marketplace","url":"https://www.fedramp.gov/marketplace/products/FR2627547824","fetched_at":"2026-09-17 15:44:39.301965+00","content_hash":"395e7ad35dd25d1c547414140161c47ec22827b7ffae3bdbbd5256c38a3b940f","wayback_url":null,"quote":"CrowdStrike, Inc. - CrowdStrike Falcon Platform IL5 SaaS: FedRAMP In Process","confidence":1}]},{"framework":"pci-dss","framework_name":"PCI DSS","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states a PCI DSS attestation of compliance on its trust centre (Drata) as of 17 Sep 2026.","kind":null,"status_text":"Vendor states PCI DSS on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"drata","url":"https://certreports.com/vendors/crowdstrike/pci-dss","evidence":[{"source_type":"trust_center","source_name":"CrowdStrike trust centre (Drata)","url":"https://trust.crowdstrike.com/","fetched_at":"2026-09-17 16:27:45.780937+00","content_hash":"feee5929a6eed575cc6667a5441868c0c314ae2aa772552bd3a2b1bce0bf3cf6","wayback_url":null,"quote":"PCI DSS","confidence":1}]},{"framework":"iso-27001","framework_name":"ISO/IEC 27001","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states an ISO/IEC 27001 certificate on its trust centre (Drata) as of 17 Sep 2026.","kind":null,"status_text":"Vendor states ISO/IEC 27001 on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"drata","url":"https://certreports.com/vendors/crowdstrike/iso-27001","evidence":[{"source_type":"trust_center","source_name":"CrowdStrike trust centre (Drata)","url":"https://trust.crowdstrike.com/","fetched_at":"2026-09-17 16:27:45.780937+00","content_hash":"feee5929a6eed575cc6667a5441868c0c314ae2aa772552bd3a2b1bce0bf3cf6","wayback_url":null,"quote":"ISO/IEC 27001","confidence":1}]},{"framework":"csa-star","framework_name":"CSA STAR","state":"verified_registry","state_label":"Verified","sentence":"Listed in the CSA STAR registry as of 17 Sep 2026.","kind":"level2","status_text":"STAR Level 2 certification","issued_at":"2017-02-28","expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"csa_star","url":"https://certreports.com/vendors/crowdstrike/csa-star","evidence":[{"source_type":"registry","source_name":"CSA STAR registry","url":"https://cloudsecurityalliance.org/star/registry/crowdstrike-inc","fetched_at":"2026-09-17 15:44:42.254747+00","content_hash":"e7f124247f5399c92ba048620a83c0b6cca1f9a2f97419f32566e462a3b1bda7","wayback_url":null,"quote":"crowdstrike, inc: STAR Level 2 certification","confidence":1}]},{"framework":"cyber-essentials","framework_name":"Cyber Essentials","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states an Cyber Essentials certificate on its trust centre (Drata) as of 17 Sep 2026.","kind":null,"status_text":"Vendor states Cyber Essentials on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"drata","url":"https://certreports.com/vendors/crowdstrike/cyber-essentials","evidence":[{"source_type":"trust_center","source_name":"CrowdStrike trust centre (Drata)","url":"https://trust.crowdstrike.com/","fetched_at":"2026-09-17 16:27:45.780937+00","content_hash":"feee5929a6eed575cc6667a5441868c0c314ae2aa772552bd3a2b1bce0bf3cf6","wayback_url":null,"quote":"Cyber Essentials","confidence":1}]},{"framework":"iso-42001","framework_name":"ISO/IEC 42001","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states an ISO/IEC 42001 certificate on its trust centre (Drata) as of 17 Sep 2026.","kind":null,"status_text":"Vendor states ISO/IEC 42001:2023 on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"drata","url":"https://certreports.com/vendors/crowdstrike/iso-42001","evidence":[{"source_type":"trust_center","source_name":"CrowdStrike trust centre (Drata)","url":"https://trust.crowdstrike.com/","fetched_at":"2026-09-17 16:27:45.780937+00","content_hash":"feee5929a6eed575cc6667a5441868c0c314ae2aa772552bd3a2b1bce0bf3cf6","wayback_url":null,"quote":"ISO/IEC 42001:2023","confidence":1}]},{"framework":"iso-27017","framework_name":"ISO/IEC 27017","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states an ISO/IEC 27017 certificate on its trust centre (Drata) as of 17 Sep 2026.","kind":null,"status_text":"Vendor states ISO/IEC 27017:2015 on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"drata","url":"https://certreports.com/vendors/crowdstrike/security","evidence":[{"source_type":"trust_center","source_name":"CrowdStrike trust centre (Drata)","url":"https://trust.crowdstrike.com/","fetched_at":"2026-09-17 16:27:45.780937+00","content_hash":"feee5929a6eed575cc6667a5441868c0c314ae2aa772552bd3a2b1bce0bf3cf6","wayback_url":null,"quote":"ISO/IEC 27017:2015","confidence":1}]},{"framework":"iso-22301","framework_name":"ISO 22301","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states an ISO 22301 certificate on its trust centre (Drata) as of 17 Sep 2026.","kind":null,"status_text":"Vendor states ISO 22301:2019 on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"drata","url":"https://certreports.com/vendors/crowdstrike/security","evidence":[{"source_type":"trust_center","source_name":"CrowdStrike trust centre (Drata)","url":"https://trust.crowdstrike.com/","fetched_at":"2026-09-17 16:27:45.780937+00","content_hash":"feee5929a6eed575cc6667a5441868c0c314ae2aa772552bd3a2b1bce0bf3cf6","wayback_url":null,"quote":"ISO 22301:2019","confidence":1}]},{"framework":"dpf","framework_name":"EU-US Data Privacy Framework","state":"verified_registry","state_label":"Verified","sentence":"Listed in the Data Privacy Framework list as of 17 Sep 2026.","kind":"listing","status_text":"Active: EU-US Certification, SW-US Certification, UK Extension Certification","issued_at":"2016-10-28","expires_at":"2026-10-10","period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"dpf","url":"https://certreports.com/vendors/crowdstrike/security","evidence":[{"source_type":"registry","source_name":"Data Privacy Framework list","url":"https://www.dataprivacyframework.gov/participant/6297","fetched_at":"2026-09-17 15:49:28.084525+00","content_hash":"630b5d7637a8d9bc02da9e4b4fc1df920de8983fc2a22d221605f811bcaf8b87","wayback_url":null,"quote":"CrowdStrike, Inc.: Active: EU-US Certification, SW-US Certification, UK Extension Certification","confidence":1}]},{"framework":"govramp","framework_name":"GovRAMP","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states an GovRAMP authorization on its trust centre (Drata) as of 17 Sep 2026.","kind":null,"status_text":"Vendor states GovRAMP on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"drata","url":"https://certreports.com/vendors/crowdstrike/security","evidence":[{"source_type":"trust_center","source_name":"CrowdStrike trust centre (Drata)","url":"https://trust.crowdstrike.com/","fetched_at":"2026-09-17 16:27:45.780937+00","content_hash":"feee5929a6eed575cc6667a5441868c0c314ae2aa772552bd3a2b1bce0bf3cf6","wayback_url":null,"quote":"GovRAMP","confidence":1}]},{"framework":"tisax","framework_name":"TISAX","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states an TISAX assessment label on its trust centre (Drata) as of 17 Sep 2026.","kind":null,"status_text":"Vendor states TISAX on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"drata","url":"https://certreports.com/vendors/crowdstrike/security","evidence":[{"source_type":"trust_center","source_name":"CrowdStrike trust centre (Drata)","url":"https://trust.crowdstrike.com/","fetched_at":"2026-09-17 16:27:45.780937+00","content_hash":"feee5929a6eed575cc6667a5441868c0c314ae2aa772552bd3a2b1bce0bf3cf6","wayback_url":null,"quote":"TISAX","confidence":1}]},{"framework":"c5","framework_name":"BSI C5","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states an BSI C5 attestation on its trust centre (Drata) as of 17 Sep 2026.","kind":null,"status_text":"Vendor states C5 on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"drata","url":"https://certreports.com/vendors/crowdstrike/security","evidence":[{"source_type":"trust_center","source_name":"CrowdStrike trust centre (Drata)","url":"https://trust.crowdstrike.com/","fetched_at":"2026-09-17 16:27:45.780937+00","content_hash":"feee5929a6eed575cc6667a5441868c0c314ae2aa772552bd3a2b1bce0bf3cf6","wayback_url":null,"quote":"C5","confidence":1}]},{"framework":"ens","framework_name":"ENS","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states an ENS certificate on its trust centre (Drata) as of 17 Sep 2026.","kind":null,"status_text":"Vendor states ENS on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"drata","url":"https://certreports.com/vendors/crowdstrike/security","evidence":[{"source_type":"trust_center","source_name":"CrowdStrike trust centre (Drata)","url":"https://trust.crowdstrike.com/","fetched_at":"2026-09-17 16:27:45.780937+00","content_hash":"feee5929a6eed575cc6667a5441868c0c314ae2aa772552bd3a2b1bce0bf3cf6","wayback_url":null,"quote":"ENS","confidence":1}]}],"brief":{"summary":"As of 17 Sep 2026, CrowdStrike states on its trust centre that it holds SOC 2, and separately states on its trust centre that it holds ISO/IEC 27001, PCI DSS, GDPR, ISO/IEC 42001, ISO/IEC 27017, ISO 22301, Cyber Essentials, GovRAMP, TISAX, BSI C5, and ENS coverage, though none of these are corroborated by a registry as of 17 Sep 2026. As of 17 Sep 2026, CrowdStrike is listed in the FedRAMP registry as FedRAMP Authorized, with the authorization issued 12 Mar 2025 and audited by Schellman Compliance, LLC. As of 17 Sep 2026, CrowdStrike is listed in the CSA STAR registry as holding a STAR Level 2 certification issued 28 Feb 2017. As of 17 Sep 2026, CrowdStrike is listed in the EU-US Data Privacy Framework registry as active for EU-US, Swiss-US, and UK Extension certifications, with the current certification period expiring 10 Oct 2026. No public evidence found for a HIPAA BAA offering as of 17 Sep 2026.","bullets":["FedRAMP: listed in FedRAMP registry as Authorized, issued 12 Mar 2025, audited by Schellman Compliance, LLC (as of 17 Sep 2026).","CSA STAR: listed in CSA STAR registry, STAR Level 2 certification issued 28 Feb 2017 (as of 17 Sep 2026).","EU-US Data Privacy Framework: listed in DPF registry as active (EU-US, Swiss-US, UK Extension), current period expires 10 Oct 2026 (as of 17 Sep 2026)."],"model":"claude-sonnet-5","generated_at":"2026-09-17 18:33:31.859549+00"},"legal_docs":[{"kind":"subprocessors","url":"https://trust.crowdstrike.com/","availability":"public","detail":"6 subprocessors listed on the trust centre","as_of":"2026-09-17"}],"subprocessors":[{"name":"Business Continuity Management System Cloud","domain":null,"purpose":null,"location":null,"vendor_url":null},{"name":"Compliance The CrowdStrike Falcon Platform","domain":null,"purpose":null,"location":null,"vendor_url":null},{"name":"CrowdStrike Falcon Platform","domain":null,"purpose":null,"location":null,"vendor_url":null},{"name":"Falcon Platform","domain":null,"purpose":null,"location":null,"vendor_url":null},{"name":"Patch Management Amazon Web Services","domain":null,"purpose":null,"location":null,"vendor_url":null},{"name":"SOC 2 Type II Report for the Falcon Platform","domain":null,"purpose":null,"location":null,"vendor_url":null}],"disclaimer":"CertReports indexes public evidence. A missing framework means no public evidence was found at the last check, not that the vendor is non-compliant. SOC 2 is a report, not a certification; HIPAA has no certification.","generated_at":"2026-09-18T17:29:40.968Z"}