CrowdStrike to buy telemetry pipeline management Onum

George Kurtz, CEO and founder of CrowdStrike

vendor CrowdStrike has announced its intent to acquire Onum, a pioneer in real-time telemetry pipeline management. This acquisition evolves Crowdstrike’s Falcon Next-Gen into what the company terms the definitive data foundation for agentic security and IT operations, eliminating onboarding friction while delivering autonomous detection capabilities.

“Our Next-Gen SIEM is the engine that powers the modern , and data is the fuel that makes the engine run,” said George Kurtz, CEO and founder of CrowdStrike. “Onum is both a pipeline and a filter, which will stream high-quality, filtered data directly into the platform to drive autonomous cybersecurity at scale. This is how we stop breaches at the speed of while giving customers complete control over their entire data ecosystem – well beyond cybersecurity.”

The Falcon platform drives the unification of data, security, and IT with generative AI and workflow built natively within. The company sees this next-gen SIEM as the operating system of cybersecurity. Every day, customers are discovering the of Falcon’s native, hyper-scalable data foundation to solve their most complex security and IT observability problems. Falcon Next-Gen SIEM is becoming synonymous with AI SOC , unlocking new capabilities, cost efficiencies, and agentic speed that legacy platforms simply cannot match.

“We’re still in the early innings, and I think everyone’s trying to figure out how they can use it, how they can control the data, how they get the results in a secure way,” Kurtz said. “To be honest, in a lot of areas, what’s keeping people up at night is just the Wild Wild West of AI everywhere … it’s got a lot of people staying up late at night.” Built on a proprietary stateless, in- architecture, Onum is the perfect complement to Falcon Next-Gen SIEM. The platform offers unparalleled speed, scale, and efficiency in onboarding to Falcon Next-Gen SIEM while giving customers control of their security and observability data. Onum brings Falcon’s AI-powered detections directly to third-party data sources through in-pipeline analysis, starting detection before data even enters the Falcon platform.

“Onum was founded on the belief that pipelines should do more than transport data, they should transform data into real-time intelligence,” said Pedro Castillo, founder and CEO of Onum. “By joining CrowdStrike, we can deliver this at unprecedented scale to accelerate SOC transformation on a global scale. I’m incredibly proud of what our team has accomplished in defining real-time telemetry pipeline management, and we look forward to bringing that innovation to the Falcon platform.”

Onum delivers transformational advantages across three critical dimensions. In terms of speed, it delivers up to five times more events per second than its nearest competitor and processes security and observability data in real-time versus legacy batch and store methods. In terms of cost, smart filtering reduces data costs by up to 50% through intelligent optimization. And in terms of superior outcomes, real-time pipeline detection starts before data enters the Falcon platform, delivering up to 70% faster incident response with 40% less ingestion overhead.

Previously, migrating data into Next-Gen SIEM was the long pole in SOC transformation, often requiring third-party tools. The Onum acquisition eliminates the data migration bottleneck, removing friction and cost – delivering native data streaming and in-pipeline detection within the Falcon platform.

“We were thinking beyond chatbots, wiring it into a workflow and getting real outcomes for customers,” Kurtz added. “You can have these sort of AI agents do work on your behalf, so they can start proactively researching and pulling information together; [they can] start proactively looking at incidents and summarizing those, and kind of figuring out what an analyst would do without necessarily all the prompting.”

“Onum was founded on the belief that pipelines should do more than transport data, they should transform data into real-time intelligence,” said Pedro Castillo, founder and CEO of Onum. “By joining CrowdStrike, we can deliver this vision at unprecedented scale to accelerate SOC transformation on a global scale. I’m incredibly proud of what our team has accomplished in defining real-time telemetry pipeline management, and we look forward to bringing that innovation to the Falcon platform.”