Try our new research platform with insights from 80,000+ expert users

CrowdStrike Falcon vs ZeroFOX comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

CrowdStrike Falcon
Ranking in Threat Intelligence Platforms
2nd
Average Rating
8.6
Reviews Sentiment
7.4
Number of Reviews
123
Ranking in other categories
Security Information and Event Management (SIEM) (6th), Endpoint Protection Platform (EPP) (3rd), Identity Management (IM) (6th), Endpoint Detection and Response (EDR) (1st), Active Directory Management (2nd), Extended Detection and Response (XDR) (1st), Attack Surface Management (ASM) (1st), Ransomware Protection (1st), Identity Threat Detection and Response (ITDR) (3rd), AI-Powered Cybersecurity Platforms (1st)
ZeroFOX
Ranking in Threat Intelligence Platforms
9th
Average Rating
8.0
Reviews Sentiment
8.2
Number of Reviews
2
Ranking in other categories
Digital Risk Protection (2nd)
 

Mindshare comparison

As of February 2025, in the Threat Intelligence Platforms category, the mindshare of CrowdStrike Falcon is 10.1%, down from 12.4% compared to the previous year. The mindshare of ZeroFOX is 4.1%, down from 5.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Threat Intelligence Platforms
 

Featured Reviews

Chintan-Vyas - PeerSpot reviewer
Easy to set up with good behavior-based analysis but needs a single-click recovery option
Most organizations are currently looking for a scheduled scan to meet their compliance needs. Other players like Symantec and Trend Micro, FireEye, et cetera, are still providing the signature-based regular scheduled scans also, which is not available in CrowdStrike. That is one parameter that we feel should be there in CrowdStrike. CrowdStrike is only working on the dynamic or the files under execution. CrowdStrike is not scanning the static files. The product could be more accurate in terms of performance. We'd like to have a single-click recovery option. With some machines getting corrupted by malware, we need an easy way to start with a blank slate if things happen. That one feature should be there in the EDR.
reviewer2384535 - PeerSpot reviewer
Provides information on leaks in the dark web, the deep web, and credit cards
ZeroFOX is deployed on the cloud in our organization. Before using ZeroFOX, users should also get demo sessions from other vendors. Then, you will get a better picture of ZeroFOX and how it works. ZeroFOX is a very good tool that will provide value if you can afford it. One of the key advantages of ZeroFOX is that it has a team where everyone is skilled in programming and scripting knowledge. If my team has some task, we don't have to go through the engineering. ZeroFOX is very easy for a beginner to learn. I would recommend ZeroFOX to other users. Overall, I rate the solution eight and a half out of ten.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The scalability is good."
"Their endpoint is pretty flawless. There is no lag on the machines at all. Even though I have a good overview of all the machines, that's pretty much the most valuable feature of CrowdStrike Falcon."
"One of the most valuable features of CrowdStrike Falcon is when there are upgrades there are no additional fees."
"There's almost no maintenance required. It's very low if there's any at all."
"The EDR is amazing and ease of integration with Splunk is a big plus. Integration with BigQuery is also a plus for me and workflow creation is easy. Overall, CrowdStrike Falcon is a great product."
"It helps us to identify the threats according to the behavior of any process that is running on any particular system. It helps immensely to identify any malicious behavior on any endpoints."
"The most valuable features in CrowdStrike Falcon are the full EDR with antivirus, hunting, reporting, and RTR remote control."
"Probably the most valuable thing to me is the real-time response piece. The fact that I can connect to an endpoint as long as it is on the Internet, no matter where it is globally. I can remove files from the endpoint, drop files on the endpoint, stop processes, reboot it, run custom scripts, and deploy software. Pretty much no other tool can do all that."
"The best thing about the tool is that its backend team is pretty good and has a strong engineering team."
"ZeroFOX has no language limitations. It can detect many languages."
 

Cons

"I would like a centralized deployment where I could roll out or push it to all endpoints."
"The content-filtering features for children could be improved. We have young grandchildren aged 12 and 8. My daughter, their mother, wants to keep them from getting in trouble on the net. She looked at all these other solutions from Google, Microsoft, etc., and she couldn't figure out how to make any of those work. I told her that I bet CrowdStrike could handle this. Sure enough, CrowdStrike can do exactly that. It's the same solution that the Defense Department gets. It works, but it's a little complicated to implement. It could be simpler to set the policies."
"CrowdStrike Falcon could improve the EDR functionality. Once the functionality of the solution improves, it will be even better in the market and able to compete with Carbon Black."
"The dashboard does not have the facility to export the reports in a PDF format, which I can quickly share with internal stakeholders."
"CrowdStrike Suites and the way that it bundles things can be a bit challenging. It should be easier to integrate with the other stuff that they sell or be included with what they sell. We have one piece, then they are talking about another piece on vulnerability management all of the sudden, and we don't own that piece. We can see it in the console, but nothing shows up. It simply appears within the tool as an option, but we can't use it without purchasing it."
"A year and a half ago or more, if you put in a support request by email, then it wasn't timely addressed. It could be a day to three days before you received a response, which was a bit frustrating. There was a lot of customer feedback around this issue, which has been greatly refined."
"The pricing is a bit too high."
"If we have a dashboard capability to uninstall agents, I think that would be great."
"ZeroFOX is not configured to grab the information automatically, including the news."
"Social media takedowns are a major issue. The takedowns should not take more than two to three hours."
 

Pricing and Cost Advice

"We are on an annual subscription for the solution. There are not any additional costs."
"The price of CrowdStrike Falcon is expensive and should be reduced."
"The price of CrowdStrike Falcon is expensive."
"The pricing could be reduced. If it was more reasonable that would be great."
"It has an annual license, and it is not that expensive."
"There is no license required to use this solution."
"With respect to pricing, my suggestion to others is to evaluate the environment and purchase what you need."
"CrowdStrike Falcon offers excellent value for the money for our organization, particularly given our lean IT team."
Information not available
report
Use our free recommendation engine to learn which Threat Intelligence Platforms solutions are best for your needs.
832,138 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
15%
Financial Services Firm
10%
Manufacturing Company
9%
Government
7%
Financial Services Firm
17%
Computer Software Company
17%
Government
8%
Manufacturing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions that are very scalable, secure, and user-friendly. Cortex XDR by Palo Alto offers ...
How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing user interface that makes setup easy and seamless. CrowdStrike Falcon offers a cl...
How does Microsoft Defender for Endpoint compare with Crowdstrike Falcon?
The CrowdStrike solution delivers a lot of information about incidents. It has a very light sensor that will never push your machine hardware to "test", you don't have the usual "scan now" feature ...
What do you like most about ZeroFOX?
The best thing about the tool is that its backend team is pretty good and has a strong engineering team.
What needs improvement with ZeroFOX?
ZeroFOX is not configured to grab the information automatically, including the news.
What is your primary use case for ZeroFOX?
ZeroFOX is a threat intelligence platform and a brand monitoring tool. It provides information on leaks in the dark web, the deep web, and credit cards. It also provides brand monitoring services t...
 

Also Known As

CrowdStrike Falcon, CrowdStrike Falcon XDR, CrowdStrike Falcon Threat Intelligence, CrowdStrike Identity Protection, CrowdStrike Falcon Surface
LookingGlass Manage Intelligence, VigilanteATI
 

Overview

 

Sample Customers

Information Not Available
Royal Farms, Hootsuite, BAE Systems, True Citrus
Find out what your peers are saying about CrowdStrike Falcon vs. ZeroFOX and other solutions. Updated: January 2025.
832,138 professionals have used our research since 2012.