Automatically sync Cyren IP Reputation threat intelligence into CrowdStrike Falcon as custom IOCs via AWS Lambda. Real-time threat detection without manual imports.
The Cyren IP Reputation Threat Intelligence Connector for CrowdStrike Falcon automates the ingestion of Cyren's IP reputation feed directly into CrowdStrike Falcon's Custom IOC platform. Deployed as a serverless AWS Lambda function triggered by Amazon EventBridge, this connector continuously polls the Cyren CCF IP Reputation feed and pushes malicious IP indicators to CrowdStrike Falcon via the IOC Management API. How It Works: 1. Amazon EventBridge triggers the Lambda function every 6 hours 2. Lambda authenticates with Cyren CCF API using your JWT token 3. IP reputation indicators are fetched with full PersistentToken pagination 4. Indicators are batched and pushed to CrowdStrike via /iocs/entities/indicators/v1 5. CrowdStrike OAuth2 token obtained once per invocation. What You Get: - Fully automated IP IOC synchronization from Cyren to CrowdStrike Falcon every 6 hours - Efficient batch IOC push (100 per request) - AWS Secrets Manager for credentials - CloudFormation one-click deployment - Full CloudWatch audit logging - 100% serverless. About Data443: Data443 Risk Mitigation, Inc. is a leading provider of data security and threat intelligence solutions.
This product extends the functionality of CrowdStrike Falcon and without it, this product has very limited utility. Please note that CrowdStrike Falcon might require its own license for full functionality with this listing.
Highlights
Automated sync of Cyren IP Reputation IOCs into CrowdStrike Falcon every 6 hours - zero manual effort
Serverless AWS Lambda + CloudFormation deployment - fully operational in under 5 minutes
Efficient batch IOC push via CrowdStrike OAuth2 API - secure, scalable, production-ready
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
This listing offers one pricing option: a Basic subscription billed on a contract basis. You commit to the term and pay for the subscription as a single unit rather than per usage or per endpoint. There are no separate tiers, instance sizes, or usage add-ons to choose from. The Basic subscription covers the connector that pushes threat intelligence indicators into your endpoint protection platform automatically. Because only one dimension exists, your cost does not scale with volume within this listing. You select the quantity of Basic units that fits your needs.
Top-of-mind questions for buyers
What does the Basic subscription actually deliver once I buy it?
You get a connector that pushes threat intelligence indicators into your endpoint protection platform. It automatically formats and sends high-risk IP addresses, phishing URLs, and malware domains to the endpoint API. Feeds update hourly and push without manual steps. Pre-built detection rules for high-risk indicators and feed outages come included.
Does my cost change if I push more indicators or block more threats?
No. You pay for the Basic subscription as a single contract unit, not per indicator or per endpoint. Pushing more high-risk indicators, blocking more threats, or covering more devices does not add charges within this listing. Your cost stays fixed for the committed term regardless of volume.
Do I need other tools running for this subscription to work?
Yes. The connector ingests threat feeds through your SIEM, then an automated playbook pushes indicators to your endpoint protection platform's custom indicator API. You need both a SIEM and the endpoint protection platform in place. The subscription covers the connector, not those separate platforms.
data443.com
Helpful?
Vendor refund policy
All sales are final. No refunds are provided for annual contracts after the 48-hour cancellation window. If you cancel within 48 hours of purchase, AWS automatically issues a full refund. For billing issues or disputes, contact support@data443.com and we will review your case within 5 business days. Refunds are at the sole discretion of Data443 Risk Mitigation, Inc.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Automatically sync Cyren Malware URL threat intelligence into SentinelOne via AWS Lambda. No manual imports, no custom code. Deploys in under 5 minutes.
Automatically sync Cyren IP Reputation threat intelligence into SentinelOne via AWS Lambda. No manual imports, no custom code. Live in under 5 minutes.
Automatically sync Cyren Malware URL threat intelligence into CrowdStrike Falcon as custom IOCs via AWS Lambda. Serverless, secure, deploys in under 5 minutes.
Automatically ingest Cyren IP Reputation threat intelligence into AWS Security Hub as findings via AWS Lambda. Unified security visibility without manual imports.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.