Try our new research platform with insights from 80,000+ expert users

Bitdefender GravityZone EDR vs CrowdStrike Falcon vs Symantec Endpoint Security comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Mindshare comparison

Endpoint Detection and Response (EDR)
Extended Detection and Response (XDR)
Endpoint Protection Platform (EPP)
 

Featured Reviews

AMBARISH PATKAR - PeerSpot reviewer
Centralized control effectively manages devices while updates require powered-on systems
I use Bitdefender GravityZone EDR for the grooming industry. It is primarily utilized for the office environment The features I find most effective for threat detection include centralized control policy distribution and the control of independent devices, such as printers, laptops, and desktops…
Chintan-Vyas - PeerSpot reviewer
Easy to set up with good behavior-based analysis but needs a single-click recovery option
Most organizations are currently looking for a scheduled scan to meet their compliance needs. Other players like Symantec and Trend Micro, FireEye, et cetera, are still providing the signature-based regular scheduled scans also, which is not available in CrowdStrike. That is one parameter that we feel should be there in CrowdStrike. CrowdStrike is only working on the dynamic or the files under execution. CrowdStrike is not scanning the static files. The product could be more accurate in terms of performance. We'd like to have a single-click recovery option. With some machines getting corrupted by malware, we need an easy way to start with a blank slate if things happen. That one feature should be there in the EDR.
Hakeem_Abdulkareem - PeerSpot reviewer
The solution has given us visibility into compliance within our whole system and helped us ensure everything is updated
Symantec's application security module needs some improvement. You need to create a lot of fingerprints for application security. For instance, let's say I have different brands of ATMs in my environment, like Wincor and NCR. I use GRG to deploy an application control to whitelist some applications. I have to get the exact image of the different models of ATMs. When I tested in the past, some machines would not connect to the server without that. Only the approved software on the ATM should run. Anything outside that should not even come up at all. We did this so that an outside person doesn't introduce malicious software to the ATM. That's the essence of locking down with application control. Using Symantec for application control has been hectic, so I use Carbon Black to do the lockdown. Checking that data security will work fine with Carbon Black. Carbon Black worked fine. Setting up approval in Carbon Black works differently than Symantec. In Symantec, we first need the fingerprints of the applications running underneath. Before setting up Carbon Black, you first install the agent, allowing it to learn the environment. It will analyze all the software's behavior and provide recommendations for what should be allowed. It's more straightforward, whereas configuring application control in Symantec is a bit cumbersome.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution is probably one of the top five, best security solutions on the market at the moment."
"Great protection against malware, ransomware, and any other forms of malicious software."
"What I have found to be valuable is after every new release of the solution there are more features. At the time that we bought Bitdefender GravityZone, it was their top solution. We went from their Enterprise version to Elite, Elite HD, Ultra, and now there is an Ultra Plus available."
"Sandbox Analyzer, HyperDetect, and EDR are valuable to our customers."
"If you detect a virus, you can isolate the PC from the network and prevent access to the internet, network and routers. Once fixed, you can give access back to the client. We have not had this functionality using other solutions."
"It is a good anti-malware product that is highly stable."
"The Ultra is a valuable feature."
"Bitdefender GravityZone Ultra has many features, such as VPN, web filtering, and email filtering. The product has many good reviews, and I like how straightforward it is to implement. It's also easy to access and use."
"I like the Overwatch feature the most."
"The initial setup was straightforward."
"The initial setup is a very fast process."
"The most valuable feature of CrowdStrike Falcon is its accuracy. That's very important for me. False-positive are very bad for everyone. As we are a financial institution, it's even worse. I like Falcon because it's very accurate."
"It's ability to do threat hunting is really great, quite robust, and even allows you to do hygiene stuff."
"CrowdStrike Falcon is effortless to use, and it's a cloud-specific platform. You only need to deploy the light agents on the licensed endpoints, and you're ready to work. Your dashboards will tell you the number of the endpoints being protected and the incidents. There are also incident dashboards with alerts that will tell you about the details."
"The best benefit of CrowdStrike Falcon is 99% MITRE coverage."
"The feature I like the most is the solution's detection."
"Symantec is very user-friendly, the interface and functions are very simple for everyone to understand. Additionally, it's a very robust system."
"It is a stable solution...It is a very scalable solution."
"Symantec have everything – documentation, videos, data sheets."
"With Symantec, I always know this tool will be reliable and with the latest protection."
"We use the solution for our endpoint security."
"Symantec's detection capabilities are strong. It involves run protection and behavioral analysis."
"Endpoint protection has improved our operations by protecting our servers from potential cyber threats."
"It is good for detecting signature-based viruses, and it is user friendly."
 

Cons

"For many, the problems come mostly when they start tweaking or short-cutting - particularly for patch management."
"There's room for improvement in terms of protection. That's my primary concern."
"Application Control should be available on the cloud."
"The interface could be improved."
"I would like to see the capability for remote installation added, in particular for servers."
"When patching devices for updates, if a device is not switched on, it does not provide information dynamically."
"There was a bit of a problem deploying."
"The firewall security could be better."
"Any kind of integration that you want to do, such as using the API to connect to a SIEM, is complex and it will be expensive to do."
"In a future release, I would like to see more integrations for data breaches and security features."
"To simplify the budgeting process for our clients, CrowdStrike should consider offering bundled packages that include essential features."
"We encounter occasional issues, such as when disabling network access for a host that uses CrowdStrike."
"The dashboard area must be improved. We have integration with Splunk, and we are creating a dashboard there. Their dashboard area must be up to date. It should have more details and more options to create the reports and things like that."
"I would like to see a more accurate integration and an option to check the local machine."
"The pricing structure should allow for some flexibility."
"CrowdStrike Falcon sometimes wrongly flags things as malicious. Let's say a user is active on Chrome only. Sometimes, our cross-segmenting will fetch from the backend data and show that it is malicious because of memory or CPU utilization."
"I would like to see even more customization, the possibility to do whitelisting. It needs to be a little bit more liberal on whitelisting, even to use the name if needed, instead of hashes."
"We had an issue with the Broadcom migration. We had some problems with product support, and the deployment is tricky because it's an on-premises technology. Deploying any on-premises security solution is hard because you have to distribute the software."
"I would like to see improvements in the scanning part of the solution, specifically to enhance the CPU and hard disk usage during scanning and updates to prevent disruption during work hours."
"There could be definition updates installed and running for the product, similar to new EDR solutions that receive updates from the internet."
"The device can be outdated. More enhancement of network and discovery would help already great features."
"The solution already has support for Windows, Mac, and Linux but it could improve by having better support for Linux. We have run into some problems when there are upgrades. If they can improve this point, Symantec would be good for endpoint protection as well as for a critical server."
"Managements' number one item on the "Wish List" would have to do with the real-time scan of external media inserted into any client."
"I would like to be able to migrate to the cloud so that the end-users outside the company offices don't need a VPN to connect to the Symantec server to update the policies. They should be able to connect to the admin center directly through the internet to get updated policies. There is some integration issue with the other security appliances or tools. Other hardware, firewall, or Network Detection and Response (NDR) solution vendors are not willing to integrate with Symantec. They only mention products from other vendors such as CrowdStrike and Carbon Black. Symantec is not there. Symantec should work on integration with products from other security vendors."
 

Pricing and Cost Advice

"Bitdefender GravityZone Ultra is less expensive than other solutions, such as CrowdStrike. We had a really good deal because it was their year-end and they were trying to do a lot of sales that week. We bought a three-year contract from them and the cost was approximately $17 per endpoint, per year. It is was a very good price. I have spoken to other people who have purchased CrowdStrike at approximately $60 per endpoint, per year. I have no complaints about the price of this solution."
"The product has a reasonable price."
"When I first started using this solution I was paying $80 annually. I did not pay any additional fees. There are other solutions that are cheaper on the market."
"We need to pay for a yearly license for the solution."
"There are different packages available that vary in terms of licensing fees."
"There is a fully functional trial that we used and we didn't have any issues."
"Price-wise, Bitdefender GravityZone EDR is a bit expensive in the Philippines."
"I have very good pricing for the solution, which is one of the reasons why I am not switching to other products. I rate the tool's pricing a two out of ten."
"The tool is a little bit expensive compared to other products, but I think it's okay owing to its quality."
"While CrowdStrike Falcon offers significant security benefits, its high price point might make it prohibitively expensive for many small and medium-sized businesses, including companies like ours."
"The cost of CrowdStrike Falcon in Latin America seems high relative to the economic conditions in the region."
"We are at about $60,000 per year."
"All I can say about the licensing cost is that it's negotiable."
"The more endpoints an organization adds the cheaper the cost."
"There are three to four licensing models available to choose from for CrowdStrike Falcon. The price of CrowdStrike Falcon depends on the distributor and the reseller partner. The price we received was good."
"The solution isn't very costly; it's affordable."
"It is the better product, even if it is a little on the higher side."
"Compared to other products and brands here in Mexico, the price is okay, somewhere in the middle. Our solution is unique in that it can adapt to a variety of pricing and licensing constraints considering we have the corporate, government, and academic mandates. The"
"There are subscription costs, we typically purchase the annual subscription. There can be other expenses too, for example, we use CrowdStrike also as part of our policy."
"It's pretty awesome price-wise. That's why we give it to most of our clients. It isn't very expensive. Compared to Cisco AMP, which is very expensive, its price is okay. It's also cheaper than Malwarebytes."
"Pricing and licensing for our country is very good. It's not that expensive and the endpoint security is very good. It's not as cheap as some others, but they are not as good."
"The problem is Symantec is more expensive than other vendors."
"The licensing costs are huge compared to what is normally included in the licensing with other products such as the Microsoft products that we're using. We're paying between $300 and $400 per seat."
"The pricing is as per the environment. If all the features are there, there will be a cost for them. There were no additional costs for me. Support and other things were included in the pricing."
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
849,210 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Comms Service Provider
11%
Government
6%
University
5%
Computer Software Company
15%
Financial Services Firm
10%
Manufacturing Company
9%
Government
7%
Computer Software Company
15%
Financial Services Firm
13%
Manufacturing Company
10%
Government
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What is your experience regarding pricing and costs for Bitdefender GravityZone Ultra?
The cost is reasonable, with the license costing approximately six to eight dollars per user.
What needs improvement with Bitdefender GravityZone Ultra?
When patching devices for updates, if a device is not switched on, it does not provide information dynamically.
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing u...
How does Microsoft Defender for Endpoint compare with Crowdstrike Falcon?
The CrowdStrike solution delivers a lot of information about incidents. It has a very light sensor that will never pu...
Which is better - Cortex XDR or Symantec End-User Endpoint Security?
Aqua Security is easy to use and very manageable. Its main focus is on Kubernetes and Docker. Security is a very valu...
Which offers better endpoint security - Symantec or Microsoft Defender?
We use Symantec because we do not use MS Enterprise products, but in my opinion, Microsoft Defender is a superior sol...
What do you like most about Symantec End-User Endpoint Security?
Symantec have everything – documentation, videos, data sheets.
 

Also Known As

Bitdefender GravityZone Ultra, Bitdefender GravityZone
CrowdStrike Falcon, CrowdStrike Falcon XDR, CrowdStrike Falcon Threat Intelligence, CrowdStrike Identity Protection, CrowdStrike Falcon Surface
Symantec EPP, Symantec Endpoint Protection (SEP)
 

Overview

 

Sample Customers

Mentor Graphics, Rudersdal Kommune
Information Not Available
Audio Visual Dynamics, Red Deer Advocate, Asia Pacific Telecom Co. Ltd., Kibbutz Ein Gedi, and AMETEK, Inc.
Find out what your peers are saying about CrowdStrike, SentinelOne, Microsoft and others in Endpoint Detection and Response (EDR). Updated: January 2025.
849,210 professionals have used our research since 2012.