Integrate your CrowdStrike Account with MDR
You can integrate your CrowdStrike Falcon account with MDR so any threats and behavioral anomalies are detected. Once integrated, our SOC team analyzes data logs from your CrowdStrike Falcon account for malware activity and other anomalies.
You have to first create an API client in the CrowdStrike Falcon console and then configure MDR to collect data.
Configuration Steps
- Go to Falcon Console and sign in as an Admin.
- Go to Support → API Clients and Keys.
- Click Add new API client, give it a name, and select the required roles/permissions (e.g., read alerts, read devices).
- Click Create.

- Copy the Client ID and Client Secret shown.
- Store the Client Secret securely, as it will not be displayed again.
- Log into your Xcitium account and open MDR.
- Click 'Managed Security' in the top navigation, then select the 'Integrations' tab.
- Scroll down to 'Integrate your CrowdStrike account' and fill in the following fields:
- Client ID
- Client Secret
- Base URL
- Click 'Register Your Account'.

That's it, your CrowdStrike account is integrated with MDR. Contact your Xcitium account manager for support if you have any trouble integrating your cloud account with MDR.
