Try our new research platform with insights from 80,000+ expert users

CrowdStrike Falcon vs Microsoft Defender Threat Intelligence comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

CrowdStrike Falcon
Ranking in Threat Intelligence Platforms
2nd
Average Rating
8.6
Reviews Sentiment
8.3
Number of Reviews
122
Ranking in other categories
Endpoint Protection Platform (EPP) (3rd), Identity Management (IM) (5th), Endpoint Detection and Response (EDR) (1st), Active Directory Management (2nd), Extended Detection and Response (XDR) (1st), Attack Surface Management (ASM) (1st), Ransomware Protection (1st), Identity Threat Detection and Response (ITDR) (3rd), AI-Powered Cybersecurity Platforms (2nd)
Microsoft Defender Threat I...
Ranking in Threat Intelligence Platforms
3rd
Average Rating
8.4
Number of Reviews
30
Ranking in other categories
Advanced Threat Protection (ATP) (11th), Microsoft Security Suite (16th)
 

Featured Reviews

Chintan-Vyas - PeerSpot reviewer
May 29, 2022
Easy to set up with good behavior-based analysis but needs a single-click recovery option
Most organizations are currently looking for a scheduled scan to meet their compliance needs. Other players like Symantec and Trend Micro, FireEye, et cetera, are still providing the signature-based regular scheduled scans also, which is not available in CrowdStrike. That is one parameter that we feel should be there in CrowdStrike. CrowdStrike is only working on the dynamic or the files under execution. CrowdStrike is not scanning the static files. The product could be more accurate in terms of performance. We'd like to have a single-click recovery option. With some machines getting corrupted by malware, we need an easy way to start with a blank slate if things happen. That one feature should be there in the EDR.
Alexander Rozenberg - PeerSpot reviewer
Nov 9, 2023
A tool that offers endpoint protection with low maintenance costs
Microsoft Defender Threat Intelligence is used by a lot of companies to cover areas like endpoint protection, cloud workloads, and Microsoft Office 365, making it a full-blown product The most valuable feature of the solution is that the tool offers not just one but all of its features or tools…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It helps to prevent unauthorized access or identity theft from external sites. If your identity is stolen, you can ban it."
"The ability to remote into other devices for investigation and the way it presents a graphical representation of the detection, like the parent-child process, are valuable features."
"The solution's reporting console is phenomenal, and I can get a lot of data out of it."
"This solution consistently releases improvements. They have communicated their next two years of development which is powerful and covers all of our needs."
"Probably the most valuable thing to me is the real-time response piece. The fact that I can connect to an endpoint as long as it is on the Internet, no matter where it is globally. I can remove files from the endpoint, drop files on the endpoint, stop processes, reboot it, run custom scripts, and deploy software. Pretty much no other tool can do all that."
"The main feature we rely on is the product's intelligence. We appreciate the advice from the team during implementation. One of the main reasons we chose this product is its compatibility with Office 365."
"It helps us to identify the threats according to the behavior of any process that is running on any particular system. It helps immensely to identify any malicious behavior on any endpoints."
"The EDR and XDR features have been most valuable."
"I rate the tool's stability a ten out of ten."
"The product's anti-spam and malware-scanning features are useful. We scan email attachments, documents, and malicious codes."
"The product’s most valuable feature is the ability to provide threat detection and protection simultaneously."
"The solution blocks incoming threats on the local PC or any cloud-based threats."
"Microsoft Defender Threat Intelligence assesses machines for vulnerabilities and gives remediations."
"It helps to monitor by providing the best 24/7 monitoring integrated with Sentinel and IBM systems."
"Offers easy integration with a cloud-based infrastructure"
"I value how Threat Intelligence integrates with the different platforms in Microsoft."
 

Cons

"CrowdStrike Falcon could improve the logs by making them free to the API."
"Tighter integration around XDR could be included."
"The current database schema presents challenges and has potential for improvement."
"It is cloud-based, and this does make some weary of the data being held on the cloud. Privacy requirements must be taken into account."
"They offered a white glove service that was extremely costly. When we got into it, we saw it was relatively easy. If I was being nitpicky, I'd say that I don't like being sold something that's unnecessary. That's the only downside I've seen to the solution."
"An improvement would be to extend support to legacy and unsupported servers."
"I want more ability to customize how you summarize the data. The default views are fine, but it would be interesting to be able to customize them based on the kind of data you want to see immediately. This can help the administrator gain an immediate overview and reduce the investigation time."
"They should provide us with good visibility for everything."
"We encounter problems connecting the product deployed on the user endpoints with the servers."
"It's a bit complicated to manage because you have many dependencies of servers, many dependencies in queue, and so on. Entries or different endpoints, and you make different configuration topics for each one. So that's a major problem."
"While the current setup meets our needs, Microsoft can constantly improve customization and adaptability to rapidly evolving cybersecurity threats."
"The solution could be more stable and precise because, at times, the threats detected are not legitimate."
"Technical support could be a bit better."
"The software is expensive."
"The price of the solution is an area of concern where improvements are required. In general, the solution's price needs to be reduced."
"I would like to see more frequent updates, which is always better for security because of daily threats."
 

Pricing and Cost Advice

"Crowdstrike Falcon is relatively cheap."
"It has an annual license, and it is not that expensive."
"CrowdStrike Falcon's price is good."
"The solution isn't very costly; it's affordable."
"Pricing and licensing seem to be in line with what they offer. We are a smaller organization, so pricing is important. Obviously, we would make a business case if it is something we really needed or felt that we needed. So, the pricing is in line with what we are getting from a product standpoint."
"We pay between $30-50 per user for a yearly license, which is more expensive than SentinelOne or Bitdefender. However, CrowdStrike gives better value for money."
"Crowdstrike Falcon is relatively cheap."
"Purchasing the product through the AWS Marketplace is just a click away. Since we were using the on-premise version of the product, we continued on the cloud by purchasing it through the AWS Marketplace."
"I use the product's default version, which is a free one and not the licensed version."
"The solution is relatively expensive; however, our status as a gold partner provides us with several complimentary licenses, which offsets the cost."
"The pricing of the solution is good."
"I rate the product's price a six or seven on a scale of one to ten, where one is expensive, and ten is cheap."
"The solution's pricing is reasonable and not very expensive."
"The product has multiple subscription models."
"Considering Microsoft is constantly changing licensing, I would give it a seven out of ten. It can be difficult to get your head around it, especially for small to medium-sized enterprises (SMEs)."
"They offer two license plans: Microsoft Defender for endpoints and Microsoft Defender for businesses."
report
Use our free recommendation engine to learn which Threat Intelligence Platforms solutions are best for your needs.
814,649 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
15%
Financial Services Firm
11%
Manufacturing Company
9%
Government
7%
Computer Software Company
18%
Financial Services Firm
10%
Educational Organization
10%
Government
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions that are very scalable, secure, and user-friendly. Cortex XDR by Palo Alto offers ...
How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing user interface that makes setup easy and seamless. CrowdStrike Falcon offers a cl...
How does Microsoft Defender for Endpoint compare with Crowdstrike Falcon?
The CrowdStrike solution delivers a lot of information about incidents. It has a very light sensor that will never push your machine hardware to "test", you don't have the usual "scan now" feature ...
What do you like most about Microsoft Defender Threat Intelligence?
It just runs in the background. I don't have to worry about, making sure it's Intelligence. So, you know, this kind of makes it very easy, have to worry about installing. It is easy to use.
What needs improvement with Microsoft Defender Threat Intelligence?
There are weaknesses, and Microsoft is working on addressing them. Over the past three to four years, the ATP and other components have improved significantly, and the integration has also advanced...
What is your primary use case for Microsoft Defender Threat Intelligence?
The product helps us monitor business devices for authentication and response on all endpoints, servers, passwords, and plans.
 

Also Known As

CrowdStrike Falcon, CrowdStrike Falcon XDR, CrowdStrike Falcon Threat Intelligence, CrowdStrike Identity Protection, CrowdStrike Falcon Surface
No data available
 

Learn More

Video not available
 

Overview

Find out what your peers are saying about CrowdStrike Falcon vs. Microsoft Defender Threat Intelligence and other solutions. Updated: October 2024.
814,649 professionals have used our research since 2012.