Try our new research platform with insights from 80,000+ expert users

CrowdStrike Falcon vs Kaspersky Endpoint Detection and Response Optimum comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 24, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

CrowdStrike Falcon
Ranking in Endpoint Protection Platform (EPP)
3rd
Average Rating
8.6
Reviews Sentiment
7.4
Number of Reviews
122
Ranking in other categories
Security Information and Event Management (SIEM) (6th), Identity Management (IM) (6th), Threat Intelligence Platforms (2nd), Endpoint Detection and Response (EDR) (1st), Active Directory Management (2nd), Extended Detection and Response (XDR) (1st), Attack Surface Management (ASM) (1st), Ransomware Protection (1st), Identity Threat Detection and Response (ITDR) (3rd), AI-Powered Cybersecurity Platforms (1st)
Kaspersky Endpoint Detectio...
Ranking in Endpoint Protection Platform (EPP)
19th
Average Rating
8.2
Reviews Sentiment
8.1
Number of Reviews
19
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of January 2025, in the Endpoint Protection Platform (EPP) category, the mindshare of CrowdStrike Falcon is 11.1%, up from 8.7% compared to the previous year. The mindshare of Kaspersky Endpoint Detection and Response Optimum is 0.7%, up from 0.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Protection Platform (EPP)
 

Featured Reviews

Chintan-Vyas - PeerSpot reviewer
Easy to set up with good behavior-based analysis but needs a single-click recovery option
Most organizations are currently looking for a scheduled scan to meet their compliance needs. Other players like Symantec and Trend Micro, FireEye, et cetera, are still providing the signature-based regular scheduled scans also, which is not available in CrowdStrike. That is one parameter that we feel should be there in CrowdStrike. CrowdStrike is only working on the dynamic or the files under execution. CrowdStrike is not scanning the static files. The product could be more accurate in terms of performance. We'd like to have a single-click recovery option. With some machines getting corrupted by malware, we need an easy way to start with a blank slate if things happen. That one feature should be there in the EDR.
SharjeelFarooque - PeerSpot reviewer
Great threat response, provides for proactivity, and has automated threat identification
In terms of the Pakistani market and talking from a salesperson's perspective, I'd suggest that Kaspersky introduce a bundle of Kaspersky EDR-Optimum or Kaspersky EDR-Expert along with its Business Select/Advance suite. When I say this, I understand the Pakistani market and how slow and less eager organizations are to invest in IT and internet security. Most of them don't invest until or unless they face any attack or network failure. However, in addition to the product, Kaspersky should give EDR-Optimum on the cloud for less than 300 users as well, in case any customer has its whole network on the cloud. That way they can easily use it.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The anomaly detection is the most valuable feature."
"We are happy with CloudStrike's ease of use and touch notification."
"This solution has made the lives of the IT staff much easier, compared to the previous one."
"CrowdStrike Falcon is effortless to use, and it's a cloud-specific platform. You only need to deploy the light agents on the licensed endpoints, and you're ready to work. Your dashboards will tell you the number of the endpoints being protected and the incidents. There are also incident dashboards with alerts that will tell you about the details."
"The malware protection is the most valuable feature of CrowdStrike Falcon."
"The most valuable feature is the activity dashboard because it gives you a holistic view of your environment from a security standpoint."
"The feature that I find to be the most valuable, is being able to look at the system analysis and being able to baseline what is installed on the system."
"Falcon has the capacity to identify potential problems quickly. The administrator can deploy the agent, and the users cannot change it. This assures you that the agent remains on this device. Also, the agent can act preemptively to provide alerts about potential problems."
"The product's most valuable feature is the flexibility of installation with the console and a simple administration strategy."
"The performance is good."
"The initial setup was easy."
"I mostly like how they capture particular files and submit them to other files, and they have the solution console. And for example, we are using the one in for an application, like, on the RansomFree, if there are any vulnerabilities in patches coming, in the future, they fix these."
"The most beneficial aspect of Kaspersky Endpoint Detection and Response Optimum is its protection capabilities, followed by its device management capabilities. The ability to remotely install software is highly advantageous, making it a convenient and helpful feature."
"The encryption feature that allows you complete control of your device is what I found most valuable in Kaspersky Endpoint Detection and Response Optimum."
"Kaspersky Endpoint Detection and Response Optimum have met our requirements."
"One of the most valuable features of Kaspersky Endpoint Detection and Response Optimum is its cloud console allows users to remotely isolate a single computer from a network in the event of an attack, enabling them to perform root cause analysis without disrupting the entire network. This is particularly useful for organizations that may not have expert resources for endpoint detection and response."
 

Cons

"In the six months that I have been using CrowdStrike, it has not been able to detect anything."
"Enhancements in reporting and forensic analysis could benefit the product."
"I would like to see a little bit more in the offline scanning ability. This just comes from my background in what I have done in other positions. They only scan on demand, so I always have this fear that we sometimes maybe email out a dormant virus and can be held liable for that. That is something where I would like to see a little bit more robustness to the tool."
"The detection time has room for improvement."
"I would like them to improve the correlation of data in the search algorithms. When we run an investigation, malware, phishing, etc., I want to look at multiple endpoints at once to correlate that data to see the likenesses, e.g., how are they not alike or what systems and processes are running across those systems? I don't want to have to run the same search in their Spotlight module five, 10, 15, or 100 times to get 100 different results, copy that data out, and then correlate it on my own. In a very simple way, I want to be able to load up a comma-delimited list giving me the spotlight data on these X amount of hosts, letting me search for it quickly. We have had to go back to CrowdStrike, and say, "Our search are taking far too long for even one host." They did bump up the cores and that did improve performance, but it is still kind of slow to get that Spotlight data. That is probably our biggest pain point. I think that needs some help. I understand this kind of information access is probably not the easiest thing to do. It is probably a big ask depending on how their back-end is setup."
"I've found that CrowdStrike's technical support could benefit from increased technical expertise."
"There are some aspects of the UI that could use some improvement, e.g., working in groups. I build a group, then I have to manually assign prevention policies, update policies, etc., but there is no function to copy that group. So, if I wanted to make a subgroup for troubleshooting or divide workstations into groups of laptops and desktops, then I have to manually build a brand new group. I can't just copy a build from one to another. Additionally, in order to do any work within a group, I have to first do the work on the respective prevention policy page or individual policy page, then remove the group if the group is assigned to a different prevention policy, remove the prevention policy, and then add the new one in. So, it can get a little hectic. It would be easier if I could add and remove things from the group page rather than having to go into the policy pages to do it."
"CrowdStrike should provide better visibility in its reporting. There should be more forensic details about detected threats."
"Support is an area for improvement. It should have faster response times."
"What I want to be added to Kaspersky Endpoint Detection and Response Optimum is a single pane of glass management, where everything is integrated into a single pane of glass."
"I want Kaspersky to extend its products to internet protection. For example, I would like them to develop a firewall integrated with EDR."
"EDR Optimum's scalability could be improved."
"For improvement, they should make the scanning process faster. The scanning and updating take more time."
"The technology grows day by day, so we need to check for updates and do the updates daily. Kaspersky Endpoint Detection and Response Optimum is still improving over time and quality-wise, there are still things that need to be changed in the product, so that's why I rated it nine out of ten. Compatibility could also be improved in the product."
"The solution can improve the uninstallation process. The removal of the agent can be difficult. The purpose is for security, but it requires a lot of time and sometimes a special tool."
"The initial setup is a bit difficult."
 

Pricing and Cost Advice

"CrowdStrike Falcon offers excellent value for the money for our organization, particularly given our lean IT team."
"It is an expensive product, but I think it is well worth the investment."
"We bought a very small number of licenses, then ran it for a year. We bought a 100 licenses for a year, so we didn't actually do a proof of concept. We just bought them. Then, the next year, we bought 10,000 licenses."
"The other administrator and I can log in to check the exact details of what happened, what was running, and what caused the detection. We know exactly what was happening on the end users PC and we can tell if it's something that we actually need or something that's malicious."
"Pricing and licensing seem to be in line with what they offer. We are a smaller organization, so pricing is important. Obviously, we would make a business case if it is something we really needed or felt that we needed. So, the pricing is in line with what we are getting from a product standpoint."
"Different components are additional price points. We got the components that were right for us, but other organizations may require more (or less) components to suit their needs."
"The price is too high."
"CrowdStrike Falcon's price is good."
"The solution could be made a bit cheaper."
"The pricing is totally reasonable."
"The price is good, not too high."
"The tool’s pricing is yearly. The solution’s pricing is expensive."
"I would rate the product's pricing a nine out of ten. You need to pay about 80,000 rupees yearly for the tool. There are no additional costs associated with the product."
"The price of the solution is reasonable. It cost approximately €10,000 annually."
"Kaspersky gives a consolidated price with a good solution. If we choose something else, we need to add other options on our own."
"Kaspersky Endpoint Detection and Response Optimum is more affordable than the endpoint security product of Fortinet. Whether it's worth the money depends on your security strategy."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
831,158 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
15%
Financial Services Firm
10%
Manufacturing Company
9%
Government
7%
Computer Software Company
17%
Manufacturing Company
9%
Retailer
6%
Educational Organization
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions that are very scalable, secure, and user-friendly. Cortex XDR by Palo Alto offers ...
How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing user interface that makes setup easy and seamless. CrowdStrike Falcon offers a cl...
How does Microsoft Defender for Endpoint compare with Crowdstrike Falcon?
The CrowdStrike solution delivers a lot of information about incidents. It has a very light sensor that will never push your machine hardware to "test", you don't have the usual "scan now" feature ...
What do you like most about Kaspersky Endpoint Detection and Response Optimum?
The product's most valuable feature is the flexibility of installation with the console and a simple administration strategy.
What is your experience regarding pricing and costs for Kaspersky Endpoint Detection and Response Optimum?
Kaspersky is very cheap compared to solutions like CrowdStrike or other vendors. While each solution has strengths and weaknesses, Kaspersky offers better financial aspects.
What needs improvement with Kaspersky Endpoint Detection and Response Optimum?
Occasionally, I encounter connection problems, and the signal is not very good.
 

Also Known As

CrowdStrike Falcon, CrowdStrike Falcon XDR, CrowdStrike Falcon Threat Intelligence, CrowdStrike Identity Protection, CrowdStrike Falcon Surface
No data available
 

Overview

Find out what your peers are saying about CrowdStrike Falcon vs. Kaspersky Endpoint Detection and Response Optimum and other solutions. Updated: January 2025.
831,158 professionals have used our research since 2012.