An interview with CrowdStrike CEO George Kurtz on the company's M&A strategy as it acquires Madrid-based data observability startup Onum for about $290M
George Kurtz, cofounder and CEO of CrowdStrike — COURTESY OF CROWDSTRIKE — Cybersecurity is more than just software …
Context & Ripple Effects
CrowdStrike had already identified data observability and IT operations as expansion areas when George Kurtz discussed the company’s post-$2B revenue ambitions in an earlier interview on observability and IT operations.
The Onum deal extends an established acquisition path: CrowdStrike previously bought log-data analysis startup Humio for about $400M, alongside prior moves into enterprise threat-management capabilities. The new purchase therefore matters as a further build-out around the data that security teams use to detect and investigate threats.
First-order effects
- CrowdStrike adds Onum’s data-observability business for about $290M, putting the startup’s technology and team under CrowdStrike’s platform and M&A strategy.
- Onum becomes part of a larger cybersecurity vendor with an existing interest in log analysis and observability, rather than operating as an independent specialist.
Second-order effects
- CrowdStrike can seek tighter connections between observability data and its security workflows, potentially increasing the breadth of data-related capabilities offered to existing customers.
- Independent observability and security-data vendors face a clearer platform competitor as CrowdStrike combines acquisitions across adjacent telemetry, analytics, and threat-management functions.
Third-order effects
- If such acquisitions continue, the boundary between cybersecurity platforms and observability tooling could narrow, with large vendors competing on how comprehensively they collect and operationalize enterprise data.
- The deal points toward further consolidation around security-data workflows, though the eventual impact depends on whether acquired capabilities are integrated into products customers actually adopt.
The trend: Cybersecurity platforms are using acquisitions to make data collection, analysis, and operational response a more unified product layer.