Try our new research platform with insights from 80,000+ expert users

CrowdStrike Falcon vs Trellix Endpoint Security (ENS) comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 24, 2024
 

Categories and Ranking

CrowdStrike Falcon
Ranking in Endpoint Protection Platform (EPP)
3rd
Ranking in Endpoint Detection and Response (EDR)
1st
Average Rating
8.6
Reviews Sentiment
7.4
Number of Reviews
122
Ranking in other categories
Security Information and Event Management (SIEM) (6th), Identity Management (IM) (6th), Threat Intelligence Platforms (2nd), Active Directory Management (2nd), Extended Detection and Response (XDR) (1st), Attack Surface Management (ASM) (1st), Ransomware Protection (1st), Identity Threat Detection and Response (ITDR) (3rd), AI-Powered Cybersecurity Platforms (2nd)
Trellix Endpoint Security (...
Ranking in Endpoint Protection Platform (EPP)
24th
Ranking in Endpoint Detection and Response (EDR)
17th
Average Rating
7.6
Reviews Sentiment
7.0
Number of Reviews
53
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of December 2024, in the Endpoint Protection Platform (EPP) category, the mindshare of CrowdStrike Falcon is 11.0%, up from 8.8% compared to the previous year. The mindshare of Trellix Endpoint Security (ENS) is 1.6%, down from 2.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Protection Platform (EPP)
 

Q&A Highlights

NC
Nov 06, 2021
 

Featured Reviews

Chintan-Vyas - PeerSpot reviewer
Easy to set up with good behavior-based analysis but needs a single-click recovery option
Most organizations are currently looking for a scheduled scan to meet their compliance needs. Other players like Symantec and Trend Micro, FireEye, et cetera, are still providing the signature-based regular scheduled scans also, which is not available in CrowdStrike. That is one parameter that we feel should be there in CrowdStrike. CrowdStrike is only working on the dynamic or the files under execution. CrowdStrike is not scanning the static files. The product could be more accurate in terms of performance. We'd like to have a single-click recovery option. With some machines getting corrupted by malware, we need an easy way to start with a blank slate if things happen. That one feature should be there in the EDR.
Venugopal Potumudi - PeerSpot reviewer
Reliable with good independent modules and a straightforward setup
I'd rate the solution seven out of ten. Having used Trend Micro as well, I would rate Trend Micro higher. However, I would still choose this product as a second option. When we recommend a product, we would recommend something based on the fit of the product and customer requirements. We worked with Defender, we worked with Trend Micro, and we worked with McAfee. All of them almost overlap in multiple use cases. That said, we do see the customer IT strategy and where they're going, and they are adopting Azure more. We know there are certain limitations in their landscape where there may be some old legacy systems, and in that case, then we would either switch back to McAfee or Trend Micro instead of Defender.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution has improved my organization by automating the detection and reporting of unwanted applications so we're aware of them and can respond appropriately."
"The most valuable feature is that we don't need to re-image machines as much as we had to."
"I like the Overwatch feature the most."
"Scalability is good. We have had no issues with it."
"The Protect functionality on the laptops provides great visibility into what's occurring, and the cloud management of the platform is what we needed."
"CrowdStrike Falcon is a very light solution. It does not use too much processor or RAM."
"The most valuable feature of CrowdStrike Falcon is its accuracy."
"The most valuable features of Crowdstrike Falcon XDR are Spotlight and Discovery, they are helpful. Additionally, the console is user-friendly, with fewer false positives than other solutions."
"FireEye Endpoint Security's scalability is awesome. I think it is one of the best on that front."
"The most valuable feature is user-based policy provision."
"The EPO, the ePolicy Orchestrator, is the best endpoint protection central management system."
"If the network has seen something, we can use that to put a block to all the endpoints."
"It is a really strong solution for endpoint security."
"Provides protection against threats."
"The product can be installed in almost any environment"
"It has a feature called Isolation. If a device is compromised, we can connect it to our SOC, and no one would be able to access it. This way we can limit the damage to the network while we are investigating."
 

Cons

"The new interface, the UI, seems a bit messy."
"The management of log aggregation is in need of improvement."
"CrowdStrike Falcon could improve by having an easier way to search and use the interface for extracting queries from the data. The interface could improve."
"It would be nice if the dashboard had some more information upfront, and looked a little better."
"The portal can be clunky to navigate at times and has room for improvement."
"The performance could be better."
"The tool is more expensive than other products in the market."
"CrowdStrike Falcon's GUI requires improvement for user-friendliness."
"So far, McAfee MVISION Endpoint ticks off all of our boxes, but its pricing could always be better."
"I would like to see more local integration for the applications that we use."
"The performance could be better. I noticed that it slows down a bit."
"It is a very heavy tool, unfortunately."
"The solution needs to work on memory consumption. It is too high."
"There should be better integration between the ePolicy Orchestrator and FireEye console. The integration of both consoles should be better."
"The detection and response capabilities need to be improved."
"The Linux support is very poor. I use base detection. Currently, they are providing malware protection and logon track features in Windows and Mac. These features aren't available in Linux. It will be helpful to extend these capabilities to Linux. We would also like assets grouping and device lock protection features, which are included in their roadmap."
 

Pricing and Cost Advice

"I would like them to further reduce the price, because it is quite pricey at the moment."
"The price of CrowdStrike Falcon is reasonable."
"The pricing is not bad. It's on the higher end of the market, but you get what you pay for."
"There is an annual license required to use this solution."
"The cost of CrowdStrike Falcon could be reduced. It is quite expensive if you compare it to other solutions, such as Blue Coat, Symantec, McAfee, or Kaspersky."
"The pricing and licensing are reasonable. I don't think we are getting charged more than what it is worth. It is fair, but I do not like how it is a la carte. I realize they do that so other organizations can buy and get the agent, getting it cheaper than you could otherwise. However, if you want the main core package, which has all the main features with the exception of maybe the multi-cloud protections, that can get pricier for an organization. So, you have to pick and choose what you want. I do not care for a la carte pricing."
"Crowdstrike Falcon is relatively cheap."
"As I'm part of the technical team, not the budgeting team, I don't have information on CrowdStrike Falcon pricing."
"Licensing fees are paid yearly."
"Pricing for McAfee MVISION Endpoint is not very good, and I would rate its cost three out of five, though I won't be able to mention how much its actual price is."
"Trellix Endpoint Security (ENS) is not a cheap solution...I don't think any costs are involved in the maintenance of the solution."
"It is a yearly subscription-based product, which includes the license and hardware. There is also a subscription for technical support up to five years."
"The current pricing is much better than before because they now offer product-related promotions along with some changes in product licensing. The new pricing model is better than before."
"We are on an annual subscription for McAfee MVISION Endpoint. The cost for the license could be less expensive."
"Microsoft Defender is not cheap and from a cost perspective, Trellix Endpoint Security (ENS) is a better option."
"It is based on an annual subscription."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
824,053 professionals have used our research since 2012.
 

Answers from the Community

NC
Nov 6, 2021
Nov 6, 2021
The Crowdstrike Falcon program has a simple to use user interface, making it both an easy to use as well as an effective program. Its graphical design is such that it makes an extremely useful tool for securing computers from malware and viruses. All of the information that you need is gathered in a central location for careful analysis. It is also easy to navigate, which is a big plus in its ...
See 2 answers
DG
Oct 14, 2021
The Crowdstrike Falcon program has a simple to use user interface, making it both an easy to use as well as an effective program. Its graphical design is such that it makes an extremely useful tool for securing computers from malware and viruses. All of the information that you need is gathered in a central location for careful analysis. It is also easy to navigate, which is a big plus in its favor. Crowdstrike Falcon also offers the ability to access its protective software anywhere on the planet that has a connection to the internet. This makes it an easily accessible anti-malware program. The cloud component of the program makes it especially useful for large organizations. In a world where remote work is a crucial addition to companies of various sizes, unlimited access to software that can secure the future of their organization is crucial. A large staff will now have the ability to continue their business without the fear of malicious actors. A further aspect of the program which is impressive is its ability to both provide real-time data and at the same time keep the hardware running at normal speed. It maximizes security while not sacrificing the speed of the work that the user is trying to accomplish. These two aspects make Crowdstrike Falcon the type of program that has a clear advantage over its competitors. FireEye Endpoint Security offers its users the ability to integrate itself with other environments and software. This provides a level of flexibility that is valuable in any sort of software, much less an anti-viral program. It also has a simplicity of use and precision in spotting unknown malware. All of these qualities make it a pretty effective piece of software. However, FireEye does not offer a cloud option like Crowdstrike Falcon does. This serves to limit its usefulness to companies that operate remotely. Conclusion Crowdstrike Falcon definitely offers a flexible and versatile program that has much to offer for the relatively low price being paid. FireEye Endpoint Security lacks the cloud compatibility of Crowdstrike Falcon. Overall, Crowdstrike Falcon seems to be the far more effective software.
JR
Nov 6, 2021
Hello, I think it doesn't make sense to just compare device protection and automated response security solutions, it's missing to protect identities, devices, and insider access. I think: The best and most valuable option is Microsoft. Microsoft 365 Defender is a unified pre- and post-breach enterprise defense suite that natively coordinates detection, prevention, investigation, and response across endpoints, identities, email, and applications to provide integrated protection against sophisticated attacks. With the integrated Microsoft 365 Defender solution, security professionals can stitch together the threat signals that each of these products receive and determine the full scope and impact of the threat; how it entered the environment, what it's affected, and how it's currently impacting the organization. Microsoft 365 Defender takes automatic action to prevent or stop the attack and self-heal affected mailboxes, endpoints, and user identities. Microsoft 365 Defender services includes:1. Microsoft Defender for Endpoint, is an enterprise endpoint security platform designed to help enterprise networks prevent, detect, investigate, and respond to advanced threats.2. Microsoft Defender for Office 365, Plan 1 protects email and collaboration from zero-day malware, phish, and business email compromise,  Plan 2 adds post-breach investigation, hunting, and response, as well as automation, and simulation (for training).3. Microsoft Defender for Identity, a cloud service that helps protect your enterprise hybrid environments from multiple types of advanced targeted cyber-attacks and insider threats.4. Microsoft Cloud App Security, is a Cloud Access Security Broker (CASB) that operates on multiple clouds. It provides rich visibility, control over data travel, and sophisticated analytics to identify and combat cyber threats across all your cloud services. If the end customer already has Microsoft 365 in companies or educational institutions, they already have the collaboration tools, only the security and endpoint management tools should be added, all with Microsoft 365 E5/A5, no more investment is being made, it is being consolidated, visibility is gained, responses are automated, the fatigue of operating so many security events that you do not have the time or personnel to review them decrease. I hope this has generated value for you.
 

Top Industries

By visitors reading reviews
Computer Software Company
15%
Financial Services Firm
10%
Manufacturing Company
9%
Government
7%
Computer Software Company
15%
Government
12%
Manufacturing Company
11%
Financial Services Firm
11%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions that are very scalable, secure, and user-friendly. Cortex XDR by Palo Alto offers ...
How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing user interface that makes setup easy and seamless. CrowdStrike Falcon offers a cl...
How does Microsoft Defender for Endpoint compare with Crowdstrike Falcon?
The CrowdStrike solution delivers a lot of information about incidents. It has a very light sensor that will never push your machine hardware to "test", you don't have the usual "scan now" feature ...
How does McAfee Endpoint Security compare with MVISION?
The flexible manageability of McAfee Endpoint Security is one of our favorite aspects of this solution. You can deploy various components as desired with McAfee Endpoint Security, whereas many othe...
How does Crowdstrike Falcon compare with FireEye Endpoint Security?
The Crowdstrike Falcon program has a simple to use user interface, making it both an easy to use as well as an effective program. Its graphical design is such that it makes an extremely useful too...
What do you like most about McAfee MVISION Endpoint?
The product's initial setup phase was straightforward.
 

Also Known As

CrowdStrike Falcon, CrowdStrike Falcon XDR, CrowdStrike Falcon Threat Intelligence, CrowdStrike Identity Protection, CrowdStrike Falcon Surface
McAfee MVISION Endpoint, Trellix Endpoint Security (HX)
 

Overview

 

Sample Customers

Information Not Available
Tech Resources Limited, Globe Telecom, Rizal Commercial Banking Corporation
Find out what your peers are saying about CrowdStrike Falcon vs. Trellix Endpoint Security (ENS) and other solutions. Updated: November 2024.
824,053 professionals have used our research since 2012.