The solution is primarily being used at our endpoint, which includes roaming users with laptops. It is being used in all of our servers at our data center. Our security team can monitor everything centrally using the Falcon dashboard. If there is an incident, our team can actually go to the root cause of the incident to try to solve it there.
Dy General Manager at a real estate/law firm with 501-1,000 employees
Great user experience, very little maintenance required, and easy to set up
Pros and Cons
- "There's almost no maintenance required. It's very low if there's any at all."
- "The solution needs to have integration with on-premises security devices and security facilities. That means all the security products, including the perimeter firewall, the DMZ."
What is our primary use case?
What is most valuable?
The overall user experience is good. As of today, there have been no incidents that we've had to deal with and we've been using it for years.
The solution has a very good graphical interface. It makes it easy to use. The central monitoring is excellent.
There's almost no maintenance required. It's very low if there's any at all.
The solution is an AI and ML-enabled tool for protecting our endpoints. We're still able to use Symantec as an endpoint as well.
What needs improvement?
The solution needs to have integration with on-premises security devices and security facilities. That means all the security products, including the perimeter firewall, the DMZ.
I'd really like to have a complete solution. Right now most of the incidents happen on our endpoints. It is visible at the endpoint, the end server. If this can have a correlation tool that could actually give us a comprehensive dashboard, that would be useful. It could give us top-down visibility and could be from the firewall or any kind of security protection tool. It could be part of the DNS protection suite. However, that's why it's so important to have better integration capabilities.
If this endpoint is trying to get at this particular website and it is identified as DNS level protection, that also comes to this dashboard. Around 80% to 90% view of whatever it is happening with this endpoint, whatever action it is doing, can be inspected on the dashboard.
If the endpoint is protected by CrowdStrike. I am only to access this application through a CrowdStrike protected device.
For how long have I used the solution?
We have been using CrowdStrike as a tool now for the last three months.
Buyer's Guide
CrowdStrike Falcon
December 2024
Learn what your peers think about CrowdStrike Falcon. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,053 professionals have used our research since 2012.
What do I think about the stability of the solution?
The stability may be too early to judge, as we are still in a POC. However, when we see the product, it is very, very stable.
What do I think about the scalability of the solution?
We didn't go with the Basic version. We went with Superior. Even the insurance companies are also sold on this product.
We find that the solution is very, very scalable as a tool and it can completely manage and protect the endpoint. It offers around 99.99% of your protection and assurance and can scale up however much you like.
We have implemented it for approximately 200 users as a POC. We are ready to have a contract with CrowdStrike and we will be implementing it for 700 users in the end, so we will scale it from the POC when we begin to officially use it.
How are customer service and support?
Due to the fact that we are still running a POC, we have direct access to the principal on the contract. They have given us a lot of confidence in the product and they are always available alongside the system integrator. We basically have two layers of support.
At this initial stage, if there is any troubleshooting needed, or any type of support is required, the system integrator will provide this to us. If we need to escalate to support for some reason, we have agreed to have CrowdStrike themselves look into any issues.
So far, it's been an effective system and we are satisfied with the level of support we've received.
Which solution did I use previously and why did I switch?
We were using Symantec products, which were Symantec EndPoint Four and Five. We found that the latest modules needed additional tools to protect us. There were multiple tools needed at various levels. There was complexity in increasing users on this platform. It also took a more traditional approach to security, and we were looking for something more advanced that had advanced AI and ML capability.
We evaluated CrowdStrike and we found it satisfactory in our environment. Therefore, we decided to change to it from Symantec.
How was the initial setup?
The initial setup is very, very straightforward, and very easy to use. So far, we've found it very easy to drill down to the root cause.
This is a new area and product for us, so we decided to start using it as a POC. We started in March, or the end of February, of this year, and we have done a POC for some of our users. We'll be going forward with a full implementation and increasing our usage.
In terms of maintenance, I don't find there's much of a requirement for it. It is very easy to maintain. For monitoring and reporting purpose, we have access to a dashboard. Our security can take a look at everything themselves. We also have team members that are capable of configuring this product. That will help us to reduce the requirement of manpower in the long run.
What about the implementation team?
We had a system integrator partner that assisted us with the POC.
What's my experience with pricing, setup cost, and licensing?
I'm not sure what the exact cost of the solution is.
What other advice do I have?
We're a customer. We don't have a business partnership with this solution.
I'm not sure which version of the solution we're using right now. It is the latest, as far as I know. We're currently running a POC with it.
In today's environment, it's very crucial to protect a company from ransomware, and malware. We focus mainly on avoiding these types of attacks. We're always interested in the latest tools that have the latest techniques and are effective in our environment.
On top of that. we've noticed during the pandemic, there are even more threats happening. We need to focus most of our energy on the endpoints which are basically connected to an unprotected network.
The focus on the endpoints has to be increased at this point in time to ensure we have maximum protection. We prefer to have a cloud-based product rather than an on-premise-based product to protect our data and our endpoints. Therefore, we may need to move to a cloud-based protection suite. Other companies should also consider this. Whether they choose a product like CrowdStrike, Cortex, or Cylance is up to them.
I'd rate the solution eight out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Director of Security Solution Business at a wholesaler/distributor with 1-10 employees
SaaS security solution that is efficient in running antivirus processes using little storage
Pros and Cons
- "The most useful feature is that we do not need to install or keep signature files. Regular scanning that consumes a lot of computer resources is not needed."
- "This solution is relatively expensive."
What is our primary use case?
We use this solution for next generation antivirus and EDR.
How has it helped my organization?
Developers previously complained their resources required regular scanning on their system. This made their system and response time slow. This has since been improved using this solution.
What is most valuable?
The most useful feature is that we do not need to install or keep signature files. Regular scanning that consumes a lot of computer resources is not needed.
Based on the documentation CrowdStrike provide, the solution provides a number one detection ratio which we like.
For how long have I used the solution?
We have used this solution for one year.
What do I think about the stability of the solution?
This is a stable solution as it is cloud based. We have 3000 users making use of it.
How are customer service and support?
The support team responses are often a little bit slow. I would rate them a three out of five.
Which solution did I use previously and why did I switch?
We previously used Cisco AMP.
How was the initial setup?
The initial setup is straightforward. I would rate it a five out of five. The deployment was a replacement project and it took three months.
What about the implementation team?
We used a third party for installation.
What was our ROI?
We don't need to maintain onsite servers and deep end user updates with the new vulnerabilities. Considering the required server hardware and maintenance workload, the ROI will be achieved in a year or one and a half years.
What's my experience with pricing, setup cost, and licensing?
This solution is relatively expensive.
What other advice do I have?
I would advise others to first evaluate AV or EDR and then investigate the current endpoint protection solution that are already using in their organization. They should then check what kind of tools can be placed with CrowdStrike.
I would rate this solution a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Customer but recently joined partnership programme
Buyer's Guide
CrowdStrike Falcon
December 2024
Learn what your peers think about CrowdStrike Falcon. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,053 professionals have used our research since 2012.
CTSO at Cyb3r
Provides efficient security posture and has diverse threat intelligence capabilities
Pros and Cons
- "The platform is very scalable."
- "Enhancements in reporting and forensic analysis could benefit the product."
What is our primary use case?
Our primary use case for the product is to enhance our threat intelligence capabilities. We use it to ensure comprehensive security coverage.
How has it helped my organization?
The solution has significantly improved our threat detection capabilities. It has helped us identify and respond to potential threats more effectively, contributing to our security posture. There have been no notable drawbacks; the solution meets our needs and complies with local regulations.
What is most valuable?
The product's most valuable features include its global reach and extensive threat data. Its wide exposure helps gather diverse threat intelligence, crucial for effective security management.
What needs improvement?
Enhancements in reporting and forensic analysis could benefit the product. CrowdStrike could publish detailed threat reports and analyses more consistently than other providers.
For how long have I used the solution?
I have been using CrowdStrike Falcon Threat Intelligence since early 2016.
What do I think about the stability of the solution?
I rate the platform's stability an eight.
What do I think about the scalability of the solution?
The platform is very scalable. It can effectively accommodate growing security needs, which is crucial for organizations with evolving threat landscapes.
How are customer service and support?
Customer service and support vary based on the level of service. Premium support is excellent, but standard support can be less responsive.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
We previously used a different solution. We switched to CrowdStrike due to its comprehensive threat intelligence capabilities and global reach, which we found to be more effective for our needs.
How was the initial setup?
The initial setup was straightforward, with the installation taking less than two hours. However, fine-tuning alerts and configuring rules required additional time and effort.
What about the implementation team?
The implementation was carried out in-house.
What was our ROI?
The product has helped us detect threats that might have gone unnoticed, contributing to overall security.
What's my experience with pricing, setup cost, and licensing?
The product is expensive.
Which other solutions did I evaluate?
We evaluated several other options before choosing CrowdStrike. Our decision was based on the product's effectiveness and ability to meet our security requirements.
What other advice do I have?
Overall, it is a robust solution that meets our security needs. However, potential users should know the cost implications and ensure the product meets their requirements.
I rate it an eight.
Disclosure: My company has a business relationship with this vendor other than being a customer:
Last updated: Aug 3, 2024
Flag as inappropriateCyber Security Regional Head at a computer software company with 1,001-5,000 employees
Cyber security and protection solution with powerful EDR and XDR features that offer return on investment
Pros and Cons
- "The EDR and XDR features have been most valuable."
- "For CrowdStrike to work, all the machines need to have an internet connection. This makes it challenging to assist customers without an internet connection. We would like to have a mechanism or relay to make this possible."
What is our primary use case?
We use this solution for next generation anti-virus protection and detection. We are a premium partner of Crowdstrike.
What is most valuable?
The EDR and XDR features have been most valuable.
What needs improvement?
For CrowdStrike to work, all the machines need to have an internet connection. This makes it challenging to assist customers without an internet connection. We would like to have a mechanism or relay to make this possible.
For how long have I used the solution?
I have been using this solution for two years.
What do I think about the stability of the solution?
This is a stable solution. I would rate it a five out of five.
What do I think about the scalability of the solution?
This is a scalable solution because it is cloud based.
How are customer service and support?
If customers want technical support, they need to subscribe to a special service that they need to pay for. When it comes to CrowdStrike, customer use the different support services as per their needs. By default, they don't provide the telephonic support.
I would rate the support a four out of five.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup is very straightforward and required two people. I would rate it a four out of five. It take approximately one week to set up.
What was our ROI?
We receive good ROI when using this solution. I would rate it a four out of five. CrowdStrike offers a breach warranty which greatly reduces risk for customers.
What's my experience with pricing, setup cost, and licensing?
When it comes to licensing, customers can choose a bundle or select licences based on the specific features they would like access to. This solution comes with premium pricing. It is approximately 20 to 30% more expensive than competing solutions.
I would rate the pricing a three out of five.
What other advice do I have?
I would advise others to tell their customer upfront that staying connected to the internet is very critical to the use of this cloud based solution.
I would rate this solution an eight out of ten.
Which deployment model are you using for this solution?
Private Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Information Technology Security Consultant at Sify Technologies
Your dashboards will tell you the number of the endpoints being protected and the incidents.
Pros and Cons
- "CrowdStrike Falcon is effortless to use, and it's a cloud-specific platform. You only need to deploy the light agents on the licensed endpoints, and you're ready to work. Your dashboards will tell you the number of the endpoints being protected and the incidents. There are also incident dashboards with alerts that will tell you about the details."
- "CrowdStrike should provide better visibility in its reporting. There should be more forensic details about detected threats."
What is our primary use case?
CrowdStrike Falcon is an Endpoint Detection and Response system that uses agents deployed on each endpoint. It works on mobile or wired devices. The operator provides you real-time and online protection against the latest malware and wireless attacks.
What is most valuable?
CrowdStrike Falcon is effortless to use, and it's a cloud-specific platform. You only need to deploy the light agents on the licensed endpoints, and you're ready to work. Your dashboards will tell you the number of the endpoints being protected and the incidents. There are also incident dashboards with alerts that will tell you about the details.
What needs improvement?
CrowdStrike should provide better visibility in its reporting. There should be more forensic details about detected threats.
For how long have I used the solution?
I've been using CrowdStrike Falcon for two years.
What do I think about the stability of the solution?
CrowdStrike is highly stable.
What do I think about the scalability of the solution?
CrowdStrike is a cloud-based solution, so it's always scalable. You can adjust your endpoint licenses at any time, so if your endpoint is decommissioned, you can reduce the licenses. If you want to add few more endpoints, you only need to deploy the agents. We have provided CrowdStrike Falcon EDR solutions for many clients, and the largest is about 2,000 licenses.
How are customer service and support?
CrowdStrike support is great. Palo Alto and CrowdStrike both have outsourced support.
How was the initial setup?
Deploying CrowdStrike is straightforward. You can mass-deploy it using any management solution like WSS. It's a light agent that only requires 30 to 40 MB of space, so it's deployed in minutes.
One person is enough to manage the solution. A single admin can create a group based policy and deploy on hundreds of systems in a day if they are connected with their AD or WSS. If they are out of the network and out of the reach, then you need to do it manually, and that takes times for the endpoint availability.
What other advice do I have?
I rate CrowdStrike Falcon eight out of 10. I strongly recommend it.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Integrator
Chief Technical and Solution Architect at Vertigo Inc.
Beneficial crowdsourcing intelligence, robust, and useful multi-tenant architecture
Pros and Cons
- "The most valuable feature of CrowdStrike Falcon is crowdsourcing intelligence."
- "The skillsets needed to run CrowdStrike Falcon are extensive if you want to get the most value out of the tool."
What is our primary use case?
I use CrowdStrike Falcon for endpoint security and compliance auditing.
How has it helped my organization?
We use CrowdStrike Falcon for discovery when anything goes wrong because it gives us a full history of what's happening. It acts as a preventative model for inappropriate activity. Additionally, we use it for compliance reasons.
What is most valuable?
The most valuable feature of CrowdStrike Falcon is crowdsourcing intelligence.
What needs improvement?
The skillsets needed to run CrowdStrike Falcon are extensive if you want to get the most value out of the tool.
In a future release, the mobile space can use improvement. However, some of those constrained are by Apple and other platforms as to what they can do on the platform. Some of the limitations are industry-based.
For how long have I used the solution?
I have been using CrowdStrike Falcon for approximately one year.
What do I think about the stability of the solution?
The stability of CrowdStrike Falcon is great, I have never had the slightest problems.
What do I think about the scalability of the solution?
CrowdStrike Falcon is highly scalable.
CrowdStrike Falcon is implemented company-wide on every device.
I have approximately one hundred protected endpoints, but the number of users that log on to the tools is approximately four.
How are customer service and support?
CrowdStrike Falcon needs to better its SE sales engineer team. The people didn't fully understand all the different parts of their solution. It's the endpoint protection and it is the essence of what we're trying to receive, they should know their solution very well.
I rate the support from CrowdStrike Falcon a three out of five.
Which solution did I use previously and why did I switch?
I previously used an anti-virus solution, but it didn't do all the things I needed regarding endpoint protection. That's why I added the CrowdStrike Falcon piece to the puzzle. I still have the anti-virus running. I don't need it technically, but I still have it running.
How was the initial setup?
The initial setup of CrowdStrike Falcon is in the medium range of difficulty. You will need a coach and be guided through it.
The time it took to do the full implementation from the beginning to end, from when the contract was turned on, and by the time I turned it on and had everything up was fairly fast because we piloted CrowdStrike Falcon at first. When I bought the solution, it was almost fully implemented. The full process took approximately two months.
I rate the ease of deployment for CrowdStrike Falcon a two out of five.
What about the implementation team?
We had some coaching help from the vendor to do the implementation of the solution. We have three people that can manage this solution.
What was our ROI?
This is not a tool you buy because it gives a return on investment. It's a tool you buy because the cost of not having it is far greater than the cost of having it if you have a problem.
What's my experience with pricing, setup cost, and licensing?
There are approximately a hundred different modules you have to purchase, depending on what you want to do. I have most of the modules. How it works is you buy the portfolio, you have to decide all the components you want in it, and then they price out a bundle for you. I have almost all of the package features in my bundle. You only need to pay for the modules you want.
The cost of CrowdStrike Falcon annually is approximately $10,000.
I rate the price of CrowdStrike Falcon a three out of five.
Which other solutions did I evaluate?
I studied the entire industry before choosing CrowdStrike Falcon. I evaluated many other solutions, such as Manage Engine, Malwarebytes, Checkpoint, McAfee, and Microsoft.
We choose CrowdStrike Falcon because it was fit for the purpose of our business. I needed a cloud solution and I needed it to be a SAS offering that was easy to use. It boiled down to features and fit for purpose, not features and functionality.
CrowdStrike Falcon platform was more robust. It was a true multi-tenant architecture, not a hosted instance. The crowdsourcing nature of CrowdStrike Falcon is a large benefit, all of the threat data is real-time and applied to you real-time from all around the world.
What other advice do I have?
My advice to others is to take a serious look at CrowdStrike Falcon. It's a good solution.
I rate CrowdStrike Falcon an eight out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Director Of Information Technology at a financial services firm with 11-50 employees
Offers a cloud-based option and has good stability
Pros and Cons
- "The stability is good; we haven't experienced any glitches or bugs."
- "The biggest issue with Falcon as a standalone product is it doesn't have very much reporting."
What is most valuable?
I like that it's cloud-based instead of on-premise.
What needs improvement?
I miss a feature for the USB control that they have as an add-on. I haven't gotten to the point where I want to pay for it, but the features that I miss are available.
The biggest issue with Falcon as a standalone product is it doesn't have very much reporting.
Out of the box, the only weakness is the level of reporting.
All the analytics and the telemetry are there, it's just a matter of getting to it. Other vendors offer some of that stuff right out of the box.
CrowdStrike Falcon has been very low maintenance. There are features on it that I haven't touched yet. I've got a SIEM that I haven't really had time to explore fully. I have a patch management system that does what it does. I have a firewall and IDS that do what they do, and I have an endpoint security system that does what it does.
MSPs keep asking how one person can keep up to the different solutions and alerting, if you don't have any problems, then it's pretty easy to keep up. Everything does what it does. I don't experience any of the issues that apparently a lot of people have on their network. How can I tell you what to improve if it's doing what it's supposed to do?
For how long have I used the solution?
I have been using CrowdStrike Falcon since June of 2019.
What do I think about the stability of the solution?
The stability is good; we haven't experienced any glitches or bugs.
What do I think about the scalability of the solution?
We're a small company so the scalability is fine for us.
How are customer service and technical support?
I don't have to talk to their technical support often. When I need help, I contact them by email. Sometimes it takes a little while to get through to them, but otherwise, when they respond the issue is resolved. Not a real concern.
Which solution did I use previously and why did I switch?
We had Vipre business on-premise, the product was being discontinued and I wanted to move away from an on-premise solution. At the time Vipre did not seem to be quite as mature as other options. I understand that they have improved quite a bit since I looked at them last.
How was the initial setup?
The initial setup was straightforward. Initial agent deployment took roughly 15 minutes. SIEM integration required some coordination between vendors, but was relatively uneventful when support teams were involved.
What's my experience with pricing, setup cost, and licensing?
Licensing cost is negotiable. There are no additional costs.
On a scale from one to ten, I would give this solution a rating of nine. I'm sure there's always something that can be improved.
Which other solutions did I evaluate?
We evaluated Vipre, Carbon Black, and a few others.
What other advice do I have?
There are half a dozen players out there that are the best of the breed. Pick one.
When it came to CrowdStrike versus Carbon Black, configuration and setup were deciding, driving factors. CrowdStrike was much easier to configure, but overall, is it better or worse? I can't make that judgment call.
All I know is what I've been told by other vendors that are trying to get my business. They tell me about issues that I've never encountered with the products that I have. In summary, take what a vendor says about another vendor's product with a grain of salt.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Information Security Specialist at Arab Open University
Straightforward solution; it's plug and play
Pros and Cons
- "CrowdStrike Falcon's scalability is good. We have thousands of students using this solution."
- "We can do a threat analysis of any machine at any time, but that threat analysis is very limited."
What is our primary use case?
I'm currently working as a cybersecurity specialist at the Arab Open University. We are trying to create centralized station input. We have nine branches in the Middle East, so we need a cloud-based solution. Our control center is in Kuwait but all nine of our branches use CrowdStrike Falcon. Our team is located in Kuwait, which is where we handle and mitigate threats from.
What is most valuable?
The most valuable CrowdStrike Falcon feature is that the user is blocked from the network completely. I think that this is a good solution. We can do a threat analysis of any machine at any time, but that threat analysis is very limited.
What needs improvement?
There could be more flexibility in terms of policy defining and certain features, like USB controls, should come standard with the license. Many CrowdStrike Falcon competitors are cheaper and offer a slew of features in the standard license.
CrowdStrike Falcon is not so flexible. We need a specific admin control or maybe supervised controls to change or modify the settings.
For how long have I used the solution?
I have been using CrowdStrike Falcon for almost a year now.
What do I think about the stability of the solution?
CrowdStrike Falcon is stable.
What do I think about the scalability of the solution?
CrowdStrike Falcon's scalability is good. We have thousands of students using this solution.
How are customer service and support?
CrowdStrike Falcon's technical support is good.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Yes, we previously used Kaspersky.
How was the initial setup?
I think CrowdStrike Falcon is a straightforward solution. It is not very complex. It's just plug and play.
What about the implementation team?
We deployed in-house, with our own team. We just borrowed the set up files and deployed on all the stations. Only two persons at each branch worked on deployment, so we used certain software to deploy the files on the network. Deployment took us nearly a month.
What's my experience with pricing, setup cost, and licensing?
I'm not sure how much we are paying for CrowdStrike Falcon, but we have a yearly subscription.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Download our free CrowdStrike Falcon Report and get advice and tips from experienced pros
sharing their opinions.
Updated: December 2024
Product Categories
Endpoint Detection and Response (EDR) Security Information and Event Management (SIEM) Endpoint Protection Platform (EPP) Identity Management (IM) Threat Intelligence Platforms Active Directory Management Extended Detection and Response (XDR) Attack Surface Management (ASM) Ransomware Protection Identity Threat Detection and Response (ITDR) AI-Powered Cybersecurity PlatformsPopular Comparisons
Microsoft Defender for Endpoint
Fortinet FortiEDR
Cisco Secure Endpoint
SentinelOne Singularity Complete
Microsoft Defender XDR
IBM Security QRadar
Elastic Security
Intercept X Endpoint
Trend Vision One Endpoint Security
Kaspersky Endpoint Security for Business
Check Point Harmony Endpoint
Trend Vision One
VMware Carbon Black Endpoint
Buyer's Guide
Download our free CrowdStrike Falcon Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- I would like to compare CrowdStrike and Carbon Black. On what basis should I decide?
- What is the biggest difference between Carbon Black CB Defense, CrowdStrike, and SentinelOne?
- What do you recommend to choose when replacing Symantec EDR: SentinelOne or CrowdStirke Falcon?
- What is the biggest difference between CrowdStrike and Cylance?
- CrowdStrike Falcon vs Microsoft Defender ATP: Comparison of features and performance
- Is Crowdstrike Falcon better than Trend Micro Deep Security?
- What are the pros and cons of Darktrace vs CrowdStrike Falcon vs alternative EPP solutions?
- Which solution do you prefer: CrowdStrike Falcon or SentinelOne Singularity Complete?
- How does Microsoft Defender for Endpoint compare with Crowdstrike Falcon?
- How does Crowdstrike Falcon compare with FireEye Endpoint Security?