The Centre for Management Practice
Vendor Woes: How a Perfect Storm Marred CrowdStrike’s Reputation
Vendor Woes: How a Perfect Storm Marred CrowdStrike’s Reputation
By:
Kiruthika Ramanathan
, Rafael J. Barros
, Thomas Lim
Discipline:
Service Management
Description
On July 19, 2024, CrowdStrike, a major endpoint detection and response (EDR) software provider, released a 40 KB configuration update for its Falcon Sensor program on Windows systems worldwide. This update contained a critical flaw that caused an out-of-bounds memory read error, resulting in system crashes across approximately 8.5 million Windows machines globally. The incident affected over 500 Fortune 1,000 companies and nearly 300 Fortune 500 firms, which incurred estimated losses of US$5.4 billion. The case examines how a seemingly minor configuration update led to a catastrophic global information technology (IT) outage, as a result of grave failures in service design and transition processes. Students are asked to put themselves in the shoes of the Director of Technical Support at CrowdStrike. They will need to apply Information Technology Infrastructure Library (ITIL) principles of Service Design and Service Transition, with a secondary focus on Service Operations to evaluate the Service Transition processes at CrowdStrike and suggest improvements to the processes.
This case is intended for use in an undergraduate enterprise solutions management course. Students should be able to achieve the following learning objectives: identify design flaws in critical software systems, evaluate Service Transition processes, analyse how Service Design decisions impact Service Operation outcomes, develop risk mitigation strategies for software update processes, and create effective design and transition frameworks for mission-critical systems.
Inspection copies and teaching notes are available for university faculty. To receive an inspection copy and teaching note, please email cmpshop@smu.edu.sg with your registered faculty email ID and a link to your contact information on the faculty directory at your university as verification. An inspection copy and teaching note will then be sent to your faculty email account.
Download information
SMU Faculty/Staff can download the case & teaching note on iNet with your SMU login ID & Password via the following links:
· Teaching Note (SMU-25-0001TN)
For purchase of the case and supplementary materials via The Case Centre, please access the following links:
· The Case (SMU-25-0001)
· Teaching Note (SMU-25-0001)
For purchase of the case and supplementary materials via Harvard Business Publishing, please access the following links:
· The Case (SMU-25-0001)
· Teaching Note (SMU-25-0001)
Industry
Cybersecurity IndustryTemporal Coverage
2024Year Completed
2025Education Level
ExecutivePostgraduate
Undergraduate
Data Source
Published SourcesGeographic Coverage
United StatesPublished Date
Price
Couldn't load pickup availability
(Please note you are purchasing the case only.)
Share
