
Charlotte AI
GenAI assistant for SOC
Charlotte AI is a generative AI assistant built into the Falcon platform that answers questions in natural language and automates SOC analyst tasks. The system was trained on unique CrowdStrike data from billions of security events and years of incident response experience. Charlotte can analyze incidents, generate threat hunting queries, create reports, and recommend remediation based on the customer’s environment context.
Enterprise-grade protection compliant with regulatory requirements and security standards
Fast deployment with minimal resource overhead
Dedicated support from a certified partner
Easy integration with your existing infrastructure
Key features
- Natural language interface for questions about incidents, threats, and system status
- Automatic generation of threat hunting queries based on natural language descriptions
- Instant incident summaries with timeline, affected assets, and remediation steps
- Guided analysis leading analysts through the investigation process step by step
- Automatic report generation for executive summaries and detailed technical reports
Business benefits
- 75% faster incident analysis through instant AI-based responses
- Support for junior analysts through senior-level guidance available 24/7
- Reduced cognitive load through automation of repetitive analytical tasks
- Democratization of threat hunting – even beginners can create advanced queries
- Faster onboarding of new analysts through AI-assisted learning

Why CrowdStrike?
A global leader in endpoint protection and threat intelligence. The Falcon platform uses artificial intelligence and machine learning to detect and stop threats in real time. CrowdStrike offers EDR/XDR, threat hunting, incident response, and one of the best threat intelligence teams in the world.
Need Charlotte AI in your organization?
As a certified CrowdStrike partner, we'll help you deploy and configure the solution.