Try our new research platform with insights from 80,000+ expert users

CrowdStrike Falcon Cloud Security vs NGINX App Protect comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 16, 2024
 

Categories and Ranking

SentinelOne Singularity Clo...
Sponsored
Ranking in Container Security
3rd
Average Rating
8.6
Reviews Sentiment
8.1
Number of Reviews
92
Ranking in other categories
Vulnerability Management (6th), Cloud and Data Center Security (5th), Cloud Workload Protection Platforms (CWPP) (4th), Cloud Security Posture Management (CSPM) (4th), Cloud-Native Application Protection Platforms (CNAPP) (3rd), Compliance Management (3rd)
CrowdStrike Falcon Cloud Se...
Ranking in Container Security
8th
Average Rating
8.0
Reviews Sentiment
7.4
Number of Reviews
27
Ranking in other categories
Application Security Tools (14th), Cloud Workload Protection Platforms (CWPP) (8th), Cloud Security Posture Management (CSPM) (8th), Cloud-Native Application Protection Platforms (CNAPP) (7th), Cloud Infrastructure Entitlement Management (CIEM) (2nd), Application Security Posture Management (ASPM) (3rd)
NGINX App Protect
Ranking in Container Security
21st
Average Rating
8.4
Number of Reviews
22
Ranking in other categories
Web Application Firewall (WAF) (16th), API Security (4th)
 

Featured Reviews

Andrew W - PeerSpot reviewer
Aug 29, 2024
Tells us about vulnerabilities as well as their impact and helps to focus on real issues
Looking at all the different pieces, it has got everything we need. Some of the pieces we do not even use. For example, we do not have Kubernetes Security. We are not running any K8 clusters, so it is good for us. Overall, we find the solution to be fantastic. There can be additional education components. This may not be truly fair to them because of what the product is going for, but it would be great to see additional education for compliance. It is not a criticism of the tool per se, but anything to help non-development resources understand some of the complexities of the cloud is always appreciated. Any additional educational resources are always helpful for security teams, especially those without a development background.
Jasmin Surani - PeerSpot reviewer
Jan 3, 2024
Enhances the overall safety of our company's environment from cyber threats
I use CrowdStrike Falcon Cloud Security primarily for endpoint protection, including detection and response. It acts like a modern antivirus, automatically detecting and responding to threats based on defined policies. Additionally, it offers a vulnerability management module, highlighting machine…
Tomaz Sobczak - PeerSpot reviewer
Jun 25, 2024
Signature-based detection, DOS protection, and bot protection
NGINX App Protect is easier to automate and configure, or manage from an API. This is good for securing applications. However, it's not suitable for more complex tasks. NGINX App Protect positively impacted performance changes. There's a cache or it works like a proxy, so it can speed up…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature of the solution is its storyline, which helps trace an event back to its source, like an email or someone clicking on a link."
"The cloud misconfiguration is the most valuable feature."
"The user interface is well-designed and easy to navigate."
"We liked the search bar in PingSafe. It is a global search. We were able to get some insights from there."
"The user-friendliness is the most valuable feature."
"Cloud Native Security's best feature is its ability to identify hard-coded secrets during pull request reviews."
"The most valuable features of PingSafe are cloud misconfiguration, Kubernetes, and IaC scanning."
"I like CSPM the most. It captures a lot of alerts within a short period of time. When an alert gets triggered on the cloud, it throws an alert within half an hour, which is very reasonable. It is a plus point for us."
"The most valuable features of CrowdStrike Falcon include its automation capabilities, efficacy, and lower risk."
"The product's initial setup phase is easy."
"It is fully cloud-based, so we don't need to invest in third-party agents repeatedly."
"Falcon is a cloud-based technology, so its resource usage is light. You deploy the agents to your endpoints, but the processing is done on the cloud, so you're CPU utilization is only about 2 percent. Some others solutions use between 30 to 60 percent."
"The most valuable feature of Falcon Cloud Security is its comprehensive threat-hunting ability."
"There is a lot that it can do, but endpoint protection is the main thing about it. The fact that it uses machine learning and artificial intelligence to monitor and remediate the issues in real-time is probably the bread and butter of the product."
"It provides alerts on suspicious command executions, helping us safeguard our systems."
"The scalability of the product has been great."
"It's very easy to deploy."
"We were looking for a product that is capable of complete automation and a container based solution. It's working."
"WAF is useful to track mitigation, inclusion, prevention, and the parametric firewall."
"The tool's most valuable feature is the OWASP certification. Additionally, the tool's ability to enforce strong passwords and OTP within minutes is impressive. With its analytics and recommendations, it is a very good solution."
"The most valuable feature is that there is a link in the system that will help to analyze the security of an application when something abnormal is found."
"The most valuable feature is that I can establish different services from the firewall."
"It is a stable solution."
"The stability of the product is very impressive since it handles 60,000 to 70,000 requests or transactions per second."
 

Cons

"We wanted it to provide us with something like Claroty Hub in AWS for lateral movement. For example, if an EC2 instance or a virtual machine is compromised in a public subnet based on a particular vulnerability, such as Log4j, we want it to not be able to reach some of our databases. This kind of feature is not supported in PingSafe."
"I export CSV. I cannot export graphs. Restricting it to the CSV format has its own disadvantages. These are all machine IP addresses and information. I cannot change it to the JSON format. The export functionality can be improved."
"While the future roadmap presented by SentinelOne appears promising, I hope the envisioned advancements are realistically achievable and that the gap between current offerings and long-term goals is not too significant."
"It would be really helpful if the solution improves its agent deployment process."
"The Infrastructure as Code service available in PingSafe and the services available in AWS cloud security can be merged so that we can get the security data directly from AWS cloud in PingSafe. This way, all the data related to security will be in one single place. Currently, we have to check a couple of things on PingSafe, and we have to validate that same data on the AWS Cloud to be sure. If they can collaborate like that, it will be great."
"While it is good, I think the solution's console could be improved."
"I would like to see the map feature improve. It's good, but it isn't fully developed. It lets us use custom resources and policies but does not allow us to perform some actions. I would also like more custom integration and runtime security for Kubernetes."
"The resolution suggestions could be better, and the compliance features could be more customizable for Indian regulations. Overall, the compliance aspects are good. It gives us a comprehensive list, and its feedback is enough to bring us into compliance with regulations, but it doesn't give us the specific objects."
"There were some integration issues with this product."
"There is room for improvement in the solution's ability to handle Linux systems."
"The only challenge lies in token verification."
"It gets the work done, but the main problem with the solution is that if you remediate anything, it takes 45 days for you to get any of the features displayed on the dashboard. This is the real weakness of CrowdStrike. Their customer support is also not ready to help with it. If you remediate any cloud vulnerability that they are giving you, such as removing a host from your organization, it takes around 45 days for them to remove it from their console."
"The threat intelligence and user behavioral analysis could be more comprehensive."
"The tool's scalability is low."
"The log scale or Humio side of it where it collects the data and expands into the XDR world still needs time to develop in terms of the way it combines the data and metadata that flows into the platform. I know they're working on it."
"It would be more convenient if there was an easier way to install CrowdStrike, perhaps through better integration with Active Directory."
"It's challenging if you need to go for a high throughput."
"The configuration needs to be more flexible because it is difficult to do things that are outside of the ordinary."
"Currently, the policies have to be handled manually, and you have to create from scratch, which can be a bit time-consuming, in a large environment."
"The setup of NGINX App Protect is complex. The full process took one week to complete. Additionally, we had to change the network infrastructure platform which took one month."
"It doesn't have more advanced features like no false-positive security, which you can configure in Advanced WAF."
"Areas for improvement would be if NGINX could scan for vulnerabilities and learn and update the signatures of DoS attacks."
"NGINX App Protect would be improved with integration with Shape and F5 WAF, which would make it easy for users to manage all their web application security with a single solution."
"The solution needs to be improved in the e-commerce portal."
 

Pricing and Cost Advice

"For pricing, it currently seems to be in line with market rates."
"It's a fair price for what you get. We are happy with the price as it stands."
"It was reasonable pricing for me."
"PingSafe is priced reasonably for our workload."
"Singularity Cloud Workload Security's licensing and price were cheaper than the other solutions we looked at."
"The price depends on the extension of the solution that you want to buy. If you want to buy just EDR, the price is less. XDR is a little bit more expensive. There are going to be different add-ons for Singularity."
"The licensing is easy to understand and implement, with some flexibility to accommodate dynamic environments."
"Pricing is based on modules, which was ideal for us."
"The pricing is reasonable, neither overly expensive nor excessively cheap, making it competitive compared to other market options."
"CrowdStrike Falcon is very expensive."
"CrowdStrike Falcon Cloud Security is pricy."
"Its price is moderate."
"I am not the one who handled the pricing. A different team worked on it, but it is pretty expensive."
"It's an expensive package but does what it says it will do."
"The price is not too high, it is okay."
"It's an expensive product"
"The price of NGINX App Protect is approximately $3,000 annually. All of our licenses are observed by a managed service partner."
"There is a monthly or annual subscription to use NGINX App Protect. There are not any additional costs to the subscription."
"Our licensing costs are about $40,000 a year."
"Really understand the licensing model, because we underestimated that."
"There are not any additional costs we had to pay to use NGINX App Protect."
"The licensing fees for this solution are pretty expensive for what it does, but there is no alternative."
"The pricing is reasonable because NGINX operates on an instance basis."
"There is a license needed to use NGINX App Protect."
report
Use our free recommendation engine to learn which Container Security solutions are best for your needs.
814,649 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
19%
Financial Services Firm
16%
Manufacturing Company
10%
Insurance Company
5%
Computer Software Company
16%
Financial Services Firm
15%
Manufacturing Company
9%
Healthcare Company
6%
Computer Software Company
20%
Financial Services Firm
13%
Manufacturing Company
6%
Energy/Utilities Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about PingSafe?
The dashboard gives me an overview of all the things happening in the product, making it one of the tool's best featu...
What is your experience regarding pricing and costs for PingSafe?
I am personally not taking care of the pricing part, but when we moved from CrowdStrike to Singularity Cloud Native S...
What needs improvement with PingSafe?
They can provide some kind of alert when a new type of risk is there. There can be a specific type of alert showing t...
What do you like most about CrowdStrike Falcon Cloud Security?
It's easy to gather insights and conduct analysis about existing threats.
What is your experience regarding pricing and costs for CrowdStrike Falcon Cloud Security?
It's an expensive product. The solution costs around $60 for a single user on a yearly basis. I would rate the pricin...
What needs improvement with CrowdStrike Falcon Cloud Security?
I am not part of the current monitoring team, so I do not know how they feel about the tool. I am sharing information...
What needs improvement with NGINX App Protect?
The product's price is high, making it an area of concern where improvements are required. The tool's licensing model...
 

Also Known As

PingSafe
CrowdStrike Falcon ASPM
NGINX WAF, NGINX Web Application Firewall
 

Overview

Find out what your peers are saying about CrowdStrike Falcon Cloud Security vs. NGINX App Protect and other solutions. Updated: October 2024.
814,649 professionals have used our research since 2012.