CrowdStrike Fusion SOAR
Free integration setupWe’ll install and validate this for you.
Book a setup callOverview
CrowdStrike Fusion SOAR + Superna Data Security Edition delivers Cyberstorage Incident Response automation directly within the CrowdStrike ecosystem.
SOC analysts can execute storage-layer defense actions—like snapshot, block, and restore—directly from Fusion SOAR playbooks without needing to log into Superna or storage systems.
Free white-glove setup
We’ll install and validate this integration at no charge so you can see value fast.
Next step: use Book a setup call at the top of this page.
What You Get
- Native SOAR playbooks in Fusion Foundry for Cyberstorage Incident Response.
- Snapshot critical data on any NAS device to create immutable recovery points.
- User data block to immediately revoke access for compromised or terminated users.
- User data restore to safely reinstate access after incident closure.
- Email-based approvals for workflows requiring SecOps manager authorization.
- No network exposure — all API calls route securely through your Falcon host group proxy.
Demo Video
How It Works
- Trigger – A SOC analyst runs a Fusion SOAR playbook from an incident or alert.
- Proxy – The request executes from a Falcon host group with remote execution permissions.
- Authenticate – The Falcon proxy calls Superna’s Zero Trust API using a token stored in Fusion SOAR configuration.
- Execute – Superna performs the requested action (snapshot, block user, or restore user).
- Approve (if required) – For block and restore actions, SecOps receives an approval email or can approve in-console.
- Confirm – The workflow updates the Fusion SOAR task and logs the action for audit.