Skip to content

CrowdStrikeCompliance, certifications and attestations

Certifications held, by family23 held
Status
Public
Founded
2011
Trust center Company profile
23
Certifications held
3
Backed by a registry
24
Pieces of evidence
Sep 24, 2026
Last captured
Across fru.devAcquisitionsEarningsPaydaysConferences

SOC reports

ISO standards

AI governance

US government

Health

Payments

Privacy

Cloud security

Regional

From public trust centers and registries on the date shown. Confirm scope with the vendor. Logos via logo.dev; trademarks belong to their owners.

History

Added or renewedUpgradedIn process or ReadyLapsed or removed
  1. AddedFedRAMP HighCrowdStrike Falcon Platform for Government
  2. ReadyFedRAMP HighCrowdStrike Falcon Platform for Government
  3. ReadyFedRAMP ModerateFalcon Platform
  4. In processFedRAMP ModerateFalcon Platform
  5. AddedCSA STARFirst listed in the CSA STAR Registry
  6. AddedData Privacy FrameworkCrowdStrike, Inc.

Evidence

Every source, what it says and when it was read.

SOC 21 source

HeldVendor compliance page
...meeting four additional PCI requirements. CrowdStrike provides a PCI DSS AOC for its customers. SOC 2 CrowdStrike is compliant with Service Organization Control 2 standards and provides Falcon platform customers...
Captured Sep 24, 2026Open source

ISO/IEC 270011 source

HeldVendor compliance page
...rigorously tested against the Australian Government Information Security Manual (ISM) standards. ISO/IEC 27001:2022 CrowdStrike has been independently assessed and certified to the new ISO/IEC 27001:2022 standard, which reflects...
Captured Sep 24, 2026Open source

ISO/IEC 420011 source

HeldVendor compliance page
...certifications Standards and certifications from independent assessments or self-attested evaluations. ISO/IEC 42001:2023 CrowdStrike has achieved the ISO/IEC 42001 certification, a global standard that reflects our commitment...
Captured Sep 24, 2026Open source

FedRAMP2 sources

Held · HighFedRAMP Marketplace

CrowdStrike Falcon Platform for Government

FedRAMP Authorized, High impact; authorized 2025-03-12 (Agency); assessor Schellman Compliance, LLC; 35 agency authorizations
Captured Sep 23, 2026Since Mar 12, 2025Open source
In process · HighFedRAMP Marketplace

CrowdStrike Falcon Platform IL5 SaaS

FedRAMP In Process, High impact; assessor Schellman Compliance, LLC; 1 agency authorization
Captured Sep 23, 2026Open source

DoD Impact Level1 source

Held · IL5Vendor compliance page
...has achieved FedRAMP® High authorization. Visit FedRAMP Marketplace for more information. DoD IL5 The Falcon platform has been granted Provisional Authorizations (PA) by the DISA, meeting compliance with DoD...
Captured Sep 24, 2026Open source

CJIS1 source

HeldVendor compliance page
...Certifications that CrowdStrike products support for customer compliance programs. Americas CJIS The Criminal Justice Information Services (CJIS) Security Policy describes controls to protect wireless networking,...
Captured Sep 24, 2026Open source

HIPAA (BAA)1 source

HeldVendor compliance page
...support to achieve five FFIEC objectives, addressing 17 controls within those objectives. HIPAA In this Coalfire report, the Falcon platform was verified as addressing eight key Health Insurance Portability...
Captured Sep 24, 2026Open source

PCI DSS1 source

HeldVendor compliance page
...trustworthy, transparent, and aligned with international best practices for AI governance. PCI DSS v4 This Coalfire report, a PCI Qualified Security Assessor (QSA), outlines the Falcon platform’s functionality...
Captured Sep 24, 2026Open source

Data Privacy Framework1 source

HeldData Privacy Framework List

EU-US, UK extension, Swiss-US; non-HR data and HR data. CrowdStrike, Inc.

EU-US status: Active; certified since 2016-10-28; recertification due 2026-10-10; verification: Outside Compliance Review
Captured Sep 23, 2026Since Oct 28, 2016Renewal due Oct 10, 2026Open source

CSA STAR1 source

Held · Level 2CSA STAR Registry

CAIQ, certification

Listed as CrowdStrike, Inc since 2017-02-28; Level 2 (third-party audit)
Captured Sep 23, 2026Since Feb 28, 2017Open source

IRAP1 source

HeldVendor compliance page
...security criteria, enhancing their cybersecurity posture and protecting sensitive information. IRAP CrowdStrike was successfully assessed under the Information Security Registered Assessors Program (IRAP), demonstrating...
Captured Sep 24, 2026Open source

BSI C51 source

HeldVendor compliance page
...ID: SY936H - Assessment ID: AM1KZ4-1 Germany Cloud Computing Compliance Controls Catalog (C5) CrowdStrike's Falcon platform adheres to stringent requirements set by the German Federal Office for Information...
Captured Sep 24, 2026Open source

TISAX1 source

HeldVendor compliance page
...controls and measures, ensuring the protection of our systems and the sensitive data they hold. TISAX CrowdStrike has been independently assessed and is registered to the Trust Information Security Assessment Exchange...
Captured Sep 24, 2026Open source

Compare with

Weekly: vendors that gained or lost a certification, Wednesdays.