---
sourceDocument: Xanadu Security Management
sourceDocumentLink: https://www.servicenow.com/docs/r/xanadu/security-management

 Release :

    - xanadu

ft:locale :

    - en-US

ft:publication_title :

    - Xanadu Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# CrowdStrike Falcon Host integration

# CrowdStrike Falcon Host integration {#ariaid-title1}

* Release version: Xanadu
* 
* Updated August 1, 2024
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

The CrowdStrike Falcon Host integration allows you to push observables in a security incident into a watchlist, making
them able to generate additional alerts. This integration is an implementation of the
CrowdStrike Falcon Host - Publish to Watchlist workflow.

|-|-|
| Explore [Security Incident Response integrations](https://www.servicenow.com/docs/juRkFEQ4m8j9t4b0RdCLqw "All the Security Operations core applications and non-core third-party integrations are available from the ServiceNow Store. This section provides instructions for activating the integrations and configuring both ServiceNow and third-party integrations. Also included are some basic guidelines for developing your own integrations, as well as details on specific integrations included in the base system.") | Set up [Get started with the CrowdStrike Falcon Host integration](https://www.servicenow.com/docs/EphlcT6ensT249z6wK8iLg "The Integration Configuration feature allows you to quickly activate and set up third-party security integrations, including the CrowdStrike Falcon Host integration. Before you can use the CrowdStrike Falcon Host integration, you must download it from the ServiceNow Store and then add a user name and password.") |
| Use [Perform lookups on observables](https://www.servicenow.com/docs/qwwsXuw8Ppm7dsdGAA5edQ "You can perform threat intelligence lookups on one or more observables to determine whether they’re associated with known security threats. The scanning implementations that run depend on the ones you’ve activated.") | Develop * [ServiceNow Security Operations integration development guidelines](https://www.servicenow.com/docs/wPQxyzNhOH6QKmw6O0v2vw "The ServiceNow platform provides several mechanisms for developing integrations with external systems. The ServiceNow Security Operations product suite adds integration capabilities intended to streamline the process of integrating with security-focused external systems.") * [Tips for writing integrations](https://www.servicenow.com/docs/zkaStq5FMw3nZHOU_tt0SA "Avoid some of the pitfalls you can encounter when writing your own integrations by following these guidelines.") * [Developer training](https://developer.servicenow.com/app.do#!/training/landing) * [Developer documentation](https://developer.servicenow.com/app.do#!/documentation) * [Find components installed with an application](https://www.servicenow.com/docs/access?context=find-components&version=xanadu&pubname=xanadu-platform-administration&ft:locale=en-US) {#crowdstrike-falcon-host-landing-page__ul_zsn_wnv_qx} |
| Troubleshoot and get help * [Integration troubleshooting](https://www.servicenow.com/docs/bInSAPAYINamQHY6RAuHqQ "These troubleshooting suggestions can help you resolve common issues you can encounter when setting up or running integrations.") * [Ask or answer questions in the Security Operations community](https://community.servicenow.com/community/security-operations) * [Search the Known Error Portal for known error articles](https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB0597477) * [Contact Customer Service and Support](https://support.servicenow.com/now?draw=case) {#crowdstrike-falcon-host-landing-page__ul_zyk_3j4_qx} |   |
[Table 1.]

{#crowdstrike-falcon-host-landing-page__simpletable_g33_wwg_vt}

