IT Brief Australia - Technology news for CIOs & IT decision-makers
Australia
Cato partners with CrowdStrike on security workflow

Cato partners with CrowdStrike on security workflow

Mon, 27th Jul 2026 (Today)
Joseph Gabriel Lagonsin
JOSEPH GABRIEL LAGONSIN News Editor

Cato Networks has partnered with CrowdStrike to integrate the Cato SASE Platform with the CrowdStrike Falcon platform, giving security teams a single workflow for network and endpoint investigations.

The integration combines telemetry from network activity and endpoint systems across three areas: investigations, asset visibility, and threat hunting. Cato said its XOps tools will work with Falcon Discover to correlate endpoint detections with network telemetry, while its Asset Security product will use Falcon Discover data to provide a broader view of managed devices. Network telemetry from the Cato platform will also feed into Falcon Next-Gen SIEM.

The move targets a common problem for security operations teams, which often have to examine threats through separate network and endpoint tools. That can create visibility gaps and add operational complexity when analysts are trying to understand incidents and decide how to respond.

The integration is now generally available worldwide through the CrowdStrike Marketplace. The companies are positioning it as a way to unify security operations across different parts of an organisation's technology estate.

Shared data

Security vendors have increasingly sought to connect products once managed in isolation, especially as organisations run systems across offices, data centres, and cloud environments. Bringing network and endpoint signals into one place reflects a wider industry shift towards fewer consoles and more joined-up investigation processes.

Cato, which focuses on secure access service edge technology, has been expanding its pitch around converged networking and security. CrowdStrike, known for endpoint security and its Falcon platform, has also pushed further into cloud-based security operations and data analysis tools.

The partnership links those adjacent areas by combining what each side can see. Endpoint tools can reveal what is happening on laptops, servers, and other managed devices, while network telemetry can provide broader evidence of connections, traffic patterns, and related activity beyond an individual machine.

Karl Soderlund, Global Channel Chief at Cato Networks, said the tie-up reflects the company's view that richer, connected data improves security outcomes. "Security outcomes, especially in the AI era, can only improve when fueled by rich and connected data," said Soderlund.

"This partnership further enhances Cato's ability to deliver complete visibility, full context, and agentic control to make security operations teams more effective in defending against the next wave of AI threats," he added.

Market pressure

The announcement comes as cybersecurity providers face pressure from customers to reduce tool sprawl and improve incident response. Security teams are dealing with larger volumes of alerts, more varied attack paths, and a growing need to understand activity across users, devices, applications, and networks.

Integrations between specialist vendors have become one way to address that issue, particularly where customers do not want to replace existing tools but do want closer coordination between them. In practice, that often means sharing telemetry into a common system for investigation, detection, or hunting.

Chris Stewart, Vice President, Global Cloud and Technology Alliance Partners at CrowdStrike, said the companies see interoperability as central to that approach. "Organisations need security technologies that work together seamlessly to keep pace with modern threats," said Stewart.

"By integrating the CrowdStrike Falcon platform with the Cato SASE Platform, customers can correlate network and endpoint telemetry, streamline investigations and respond to threats faster," he said.

Channel angle

The collaboration also has implications for channel partners and service providers that assemble security products for end customers. Integrated offerings can make it easier to sell and support a broader security stack without requiring customers to stitch everything together themselves.

That is likely to matter for distributors and resellers serving companies that want broader visibility but have limited in-house resources for security engineering. A tighter link between network and endpoint data may also help managed security operations teams investigate incidents across multiple customer environments with fewer handoffs between tools.

Francisco Criado, Senior Vice President, Security, Cloud and AI, TD SYNNEX, said the partnership could simplify delivery for partners. "As the security landscape becomes more complex, partners need solutions that not only strengthen protection but also simplify how they deliver outcomes for customers," said Criado.

"The collaboration between Cato Networks and CrowdStrike provides streamlined operations and more cohesive AI-driven threat detection and response across the enterprise. For our partners, this means a more integrated approach to security that simplifies deployment and scalability, helping them deliver strong customer outcomes while growing their business," he added.