I'm currently working as a cybersecurity specialist at the Arab Open University. We are trying to create centralized station input. We have nine branches in the Middle East, so we need a cloud-based solution. Our control center is in Kuwait but all nine of our branches use CrowdStrike Falcon. Our team is located in Kuwait, which is where we handle and mitigate threats from.
Information Security Specialist at Arab Open University
Straightforward solution; it's plug and play
Pros and Cons
- "CrowdStrike Falcon's scalability is good. We have thousands of students using this solution."
- "We can do a threat analysis of any machine at any time, but that threat analysis is very limited."
What is our primary use case?
What is most valuable?
The most valuable CrowdStrike Falcon feature is that the user is blocked from the network completely. I think that this is a good solution. We can do a threat analysis of any machine at any time, but that threat analysis is very limited.
What needs improvement?
There could be more flexibility in terms of policy defining and certain features, like USB controls, should come standard with the license. Many CrowdStrike Falcon competitors are cheaper and offer a slew of features in the standard license.
CrowdStrike Falcon is not so flexible. We need a specific admin control or maybe supervised controls to change or modify the settings.
For how long have I used the solution?
I have been using CrowdStrike Falcon for almost a year now.
Buyer's Guide
CrowdStrike Falcon
January 2025
Learn what your peers think about CrowdStrike Falcon. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
831,265 professionals have used our research since 2012.
What do I think about the stability of the solution?
CrowdStrike Falcon is stable.
What do I think about the scalability of the solution?
CrowdStrike Falcon's scalability is good. We have thousands of students using this solution.
How are customer service and support?
CrowdStrike Falcon's technical support is good.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Yes, we previously used Kaspersky.
How was the initial setup?
I think CrowdStrike Falcon is a straightforward solution. It is not very complex. It's just plug and play.
What about the implementation team?
We deployed in-house, with our own team. We just borrowed the set up files and deployed on all the stations. Only two persons at each branch worked on deployment, so we used certain software to deploy the files on the network. Deployment took us nearly a month.
What's my experience with pricing, setup cost, and licensing?
I'm not sure how much we are paying for CrowdStrike Falcon, but we have a yearly subscription.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Executive Technology Advisor at Vitso
Good UI, performance, integration, and alerting
Pros and Cons
- "The feature that I find to be the most valuable, is being able to look at the system analysis and being able to baseline what is installed on the system."
- "I think there's an opportunity to enhance the AI or at least the traps to say, if something changes from this baseline, let us know and flag it."
What is our primary use case?
We are using this solution for advanced threat protection, over and above any antivirus for approximately 1200 end-users, or endpoints. It is able to identify any anomalies and alert on that using the AI engine. That way, there's a small security team to make them more effective, to be able to get an alert, go in and look at what's going on.
Since I have been here, I have been keying into when people fall for phishing attacks and they either get blocked going to a website or their credentials get compromised, and somebody logs in to their Office 365 account. We were able to forensically identify that in two of the cases. Most recently, since I've been here looking at the more active response, to be able to identify and act a little bit more quickly.
How has it helped my organization?
I was able to look through some rapid analysis when bad things happen. More so than having to get, especially in the distributed world of post-COVID, being able to have a central place to be able to see what's going on, on the landscape of endpoints at any given time.
What is most valuable?
The feature that I find to be the most valuable, is being able to look at the system analysis and being able to baseline what is installed on the system. What does it usually do, and is it doing anything differently?
The UI is great, and the performance was great. The way it gathers and presents the information was very good and it integrates well with things with a central log aggregator, such as Splunk. You can do more big data analytics that includes security. It seems to be fully featured in all of those areas.
What needs improvement?
I think there's an opportunity to enhance the AI or at least the traps to say, if something changes from this baseline, let us know and flag it. It's got a pretty good engine to do that on its own but it's one of the things that are important to us, so I'm just trying to increase the time-to-issue identification.
By comparison to buying into the Microsoft suite, it was definitely less costly. CrowdStrike can be costly.
For how long have I used the solution?
I have had this solution for approximately three years.
What do I think about the stability of the solution?
It seems stable. The performance is good.
What do I think about the scalability of the solution?
It's a scalable solution. They are running 1400 endpoints on it right now, and it seems to be fine.
There is only one person working at it right now and they are the security engineer/operator.
If you look at how they spend their day, a tool like that does a lot with a little and can make a one man band pretty effective or much more effective. It makes the response to an issue right when it happens way more possible with such small security.
How are customer service and technical support?
We haven't used technical support.
How was the initial setup?
The initial setup was already completed before I started with this company.
What's my experience with pricing, setup cost, and licensing?
When comparing to Microsoft, CrowdStrike Falcon is more expensive.
I'm going by the client and some of the things that are driving their decisions.
It's typical when Microsoft throws things in and it seems really cheap, even though you're spending a million and a half dollars with them. You may as well increase the value of that million and a half.
My guess is that CrowdStrike is going to maintain parity or stay ahead of Microsoft.
What other advice do I have?
As I came into this organization, they were moving away from CrowdStrike.
They upgraded their license to E5 with the security bundle from Microsoft. The goal is to start to move things.
They are paying twice for things right now, but that will be expiring. CrowdStrike comes up for renewal next year, and they want to be off of it by then.
I haven't gone into critiquing it. Since they've already made the decision and made the investment to go to defender ATP. I'm more concerned with, are we losing anything? Do we have parity when we go from one platform to another? And if any gaps emerge, what needs to be filled?
When we did go into it and walked through it with one of the security engineers, it was snappy, and it had a nice UI.
I had never been inside the product. I think I got a demo years ago in my CSO role, but I had never delved into a practical use case. The practical use case looked pretty cool.
For anyone who is interested in implementing this solution, I would say don't look for the cost compared to smaller applications. Look at what you're trying to do, and what you're trying to accomplish. The typical first cardinal sin of IT is buying a product and then figuring out how to use it as opposed to having a set of requirements, placing a value on that set of requirements, and then pursuing a solution that covers them the best.
I think they probably said we've got a gap here because something bad happened to my CrowdStrike. It's an industry leader. Three years after the issue that they were treating was over, and the pain was gone, suddenly, it seems really expensive. That is an IT 101 mistake that I've found in organizations, where it's a means to an end and then it turns this to just an eyesore on the balance sheet.
I would rate this solution an eight out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
CrowdStrike Falcon
January 2025
Learn what your peers think about CrowdStrike Falcon. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
831,265 professionals have used our research since 2012.
Server Administrator at TIR Canada
Stable solution that detects and prevents malware, but unreliable and weak tech support
Pros and Cons
- "The solution has improved my organization by automating the detection and reporting of unwanted applications so we're aware of them and can respond appropriately."
- "The technical support team often just replies to an issue with a link to an article rather than actually calling back and talking to someone and making sure the problem is solved. To me, that's kind of weak."
What is our primary use case?
We use this solution on all of our endpoints and servers.
How has it helped my organization?
The solution has improved my organization by automating the detection and reporting of unwanted applications so we're aware of them and can respond appropriately.
What is most valuable?
The most valuable features of the solution are the detection and prevention of unwanted applications and malware services.
What needs improvement?
The solution keeps changing their website to the point that it's hard to navigate. Also, the technical support is kind of hit-or-miss. Sometimes they really respond quickly and sometimes I don't hear from them for a long time.
For how long have I used the solution?
I began using this solution when I was hired at this company about 10 months ago, and they were using it before that.
What do I think about the stability of the solution?
The solution looks very stable.
What do I think about the scalability of the solution?
It is a scalable product.
How are customer service and support?
The technical support team often just replies to an issue with a link to an article rather than actually calling back and talking to someone and making sure the problem is solved. To me, that's kind of weak.
How would you rate customer service and support?
Neutral
How was the initial setup?
The initial setup was complex. On a scale of one to five, with one being complicated and five being very easy, I would rate it about a three.
What about the implementation team?
The deployment was handled in-house.
What's my experience with pricing, setup cost, and licensing?
The licensing cost isn't cheap, but it's appropriate.
What other advice do I have?
My advice to those looking into this solution would be that it's in the top right quadrant of the Gartner quadrant, so it deserves consideration. You just have to be prepared to integrate it.
I would rate this solution as a four out of ten. This is mostly because of the weak technical support.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Sr Network Administrator at a construction company with 501-1,000 employees
Offers good insights when it has a detection
Pros and Cons
- "It seems to do a pretty good job of protecting the host. It offers good insights that it gives you when it has a detection. It's pretty incredible."
- "I would rate it an eight out of ten. It does what it needs to do but there's always room for improvement."
What is our primary use case?
Our primary use case is for endpoint protection.
How has it helped my organization?
When we have detections, I get insight into the top-down view of where it thinks it saw the problem and what triggered the detection. This allows us to have insight into what it thinks it is compared to what could have we have really been doing.
What is most valuable?
It seems to do a pretty good job of protecting the host. Gives good insights when it has a detection. It's pretty incredible.
For how long have I used the solution?
I have been using CrowdStrike Falcon for six months.
What do I think about the stability of the solution?
So far, it's been 100% stable. Besides the very lightweight agent, it's all Cloud-based, so I haven't had any downtime.
What do I think about the scalability of the solution?
Scalability is super easy. The deployment was easy. It's all price based. Money is the biggest challenge, not deploying it. It requires one system engineer.
We have around 400 users. There are five of us who manage it, including the help desk, system engineers, and the director.
How are customer service and technical support?
We haven't needed to contact support yet.
Which solution did I use previously and why did I switch?
We previously used Cylance. We switched because they weren't innovative. It was the same product that we bought three years ago. They were a great product and they had a job and they did it well. They just didn't ever innovate and they never improved. It's the same products we bought for the same three years. CrowdStrike was more innovative and it seemed to be a better long-term product. They seem to be improving constantly.
How was the initial setup?
The initial setup was very easy. The deployment took about 60 days. We had a few methods of deployment. We did a push method. We had an agent tell all the machines that we were able to script it and push the apps to that.
What about the implementation team?
We used the project management of CrowdStrike's themselves for the deployment. They were really good.
What was our ROI?
We haven't had any outages based on malware or ransomware. I can't put numbers to it, but not having that kind of an outbreak definitely has an ROI attached to it.
Which other solutions did I evaluate?
We looked at a few other solutions but the main competitor was Carbon Black.
What other advice do I have?
I would rate it an eight out of ten. It does what it needs to do but there's always room for improvement.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Information Security Analyst at a manufacturing company with 1,001-5,000 employees
The agents are deployed on every workstation, so policy changes can be enforced on all of them
Pros and Cons
- "CrowdStrike is deployed on every workstation, so policy changes can be enforced on all of them. It lowers the manual work on each of the workstations. It has helped us manage device usage in our environment."
What is our primary use case?
We use Falcon to check the login attempts of the users. We can see who has logged in and when. We can see which workstation is assigned to each user. CrowdStrike helps us enforce policies, such as USB policies and users recycling passwords.
How has it helped my organization?
CrowdStrike is deployed on every workstation, so policy changes can be enforced on all of them. It lowers the manual work on each of the workstations. It has helped us manage device usage in our environment.
What is most valuable?
I like CrowdStrike's policies. The integration is easy to do. I can remember once when Falcon prevented a security breach occurred because someone clicked on a phishing link, and their credential was compromised. We used threat tracking to isolate the device from networks.
For how long have I used the solution?
I have used Falcon for two years.
What do I think about the stability of the solution?
I rate Falcon nine out of 10 for stability.
What do I think about the scalability of the solution?
I rate Falcon eight out of 10 for scalability.
What other advice do I have?
I rate CrowdStrike Falcon nine out of 10.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Last updated: Jun 4, 2024
Flag as inappropriateSOC Analyst at a financial services firm with 1,001-5,000 employees
Sophisticated, robust, feature-rich, and includes the ability to do analyses
Pros and Cons
- "The ability to execute real-time response, or, that you can connect to the agent and see exactly what processes are operating, is the most important feature of this solution."
- "It can be expensive depending on the features you select."
What is our primary use case?
We use CrowdStrike Falcon XDR for endpoint protection.
It is more sophisticated than a legacy antivirus.
When compared to the legacy antivirus, it offers more features, including the ability to do analyses, halt execution, and more. It also gives you real-time notifications.
In comparison to the earlier legacy era, it is better.
What is most valuable?
The ability to execute real-time response, or, that you can connect to the agent and see exactly what processes are operating, is the most important feature of this solution.
It gives you that capability.
I am satisfied with the features that I currently use.
The interface is good, I have no complaints.
What needs improvement?
I believe that most of the features are perfect for my needs, anything else is only icing on the cake.
It can be expensive depending on the features you select.
The technical support could be improved.
For how long have I used the solution?
I have been working with CrowdStrike Falcon XDR for more than one year.
What do I think about the stability of the solution?
CrowdStrike Falcon XDR is a very stable solution.
What do I think about the scalability of the solution?
CrowdStrike Falcon XDR is simply scalable.
In my opinion, it all comes down to what is your pocket saying., and the number, of users.
From my perspective, it's a very scalable product.
All of your endpoints are using this solution.
In our company, we have approximately 372 users.
How are customer service and support?
We have contacted technical support multiple times.
I would rate the technical support a three and a half out of five. They are good but could improve.
How was the initial setup?
The initial setup was very easy.
It took less than three days.
What about the implementation team?
We completed the setup with some assistance from the Falcon team.
What's my experience with pricing, setup cost, and licensing?
I am not aware of the price, but I believe that it is among the most expensive XDRs out there.
Of course, this is dependent on the features you choose. Depending on the features, the price might increase.
Which other solutions did I evaluate?
This is our sixth year of transitioning from a legacy antivirus. So, I believe we saw the issues that we have with legacy antivirus. That's why we went for Falcon XDR.
What other advice do I have?
First, they should understand their needs, then depending on those requirements, I would be able to advise because each person has a unique use case.
I would strongly suggest this solution to anyone who is considering using it. It's a go-to for endpoint protection.
I would rate CrowdStrike Falcon XDR an eight out of ten.
Which deployment model are you using for this solution?
Private Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Cyber Security Regional Head at a computer software company with 1,001-5,000 employees
Cyber security and protection solution with powerful EDR and XDR features that offer return on investment
Pros and Cons
- "The EDR and XDR features have been most valuable."
- "For CrowdStrike to work, all the machines need to have an internet connection. This makes it challenging to assist customers without an internet connection. We would like to have a mechanism or relay to make this possible."
What is our primary use case?
We use this solution for next generation anti-virus protection and detection. We are a premium partner of Crowdstrike.
What is most valuable?
The EDR and XDR features have been most valuable.
What needs improvement?
For CrowdStrike to work, all the machines need to have an internet connection. This makes it challenging to assist customers without an internet connection. We would like to have a mechanism or relay to make this possible.
For how long have I used the solution?
I have been using this solution for two years.
What do I think about the stability of the solution?
This is a stable solution. I would rate it a five out of five.
What do I think about the scalability of the solution?
This is a scalable solution because it is cloud based.
How are customer service and support?
If customers want technical support, they need to subscribe to a special service that they need to pay for. When it comes to CrowdStrike, customer use the different support services as per their needs. By default, they don't provide the telephonic support.
I would rate the support a four out of five.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup is very straightforward and required two people. I would rate it a four out of five. It take approximately one week to set up.
What was our ROI?
We receive good ROI when using this solution. I would rate it a four out of five. CrowdStrike offers a breach warranty which greatly reduces risk for customers.
What's my experience with pricing, setup cost, and licensing?
When it comes to licensing, customers can choose a bundle or select licences based on the specific features they would like access to. This solution comes with premium pricing. It is approximately 20 to 30% more expensive than competing solutions.
I would rate the pricing a three out of five.
What other advice do I have?
I would advise others to tell their customer upfront that staying connected to the internet is very critical to the use of this cloud based solution.
I would rate this solution an eight out of ten.
Which deployment model are you using for this solution?
Private Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Technical Manager (SOC Operations) at Novac Technology Solutions
User-friendly, simple setup, and good user interface
Pros and Cons
- "The most valuable features of Crowdstrike Falcon XDR are Spotlight and Discovery, they are helpful. Additionally, the console is user-friendly, with fewer false positives than other solutions."
- "Crowdstrike Falcon XDR can improve the integration. There are some locks on the cloud to on-premise integrations."
What is our primary use case?
We are using Crowdstrike Falcon XDR for security.
What is most valuable?
The most valuable features of Crowdstrike Falcon XDR are Spotlight and Discovery, they are helpful. Additionally, the console is user-friendly, with fewer false positives than other solutions.
What needs improvement?
Crowdstrike Falcon XDR can improve the integration. There are some locks on the cloud to on-premise integrations.
For how long have I used the solution?
I have been using Crowdstrike Falcon XDR for approximately one year.
What do I think about the stability of the solution?
Crowdstrike Falcon XDR is a highly stable solution.
What do I think about the scalability of the solution?
Crowdstrike Falcon XDR is scalable for what we use it for. We are using the maximum number of endpoints, which is 1,000.
How are customer service and support?
The support from Crowdstrike Falcon XDR is of a middle level. It is not good and it is not bad.
I rate the support from Crowdstrike Falcon XDR a six out of ten.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
We were previously using FireEye EDR. We switched to Crowdstrike Falcon XDR because we were facing a lot of issues, such as false positives.
How was the initial setup?
The initial setup of Crowdstrike Falcon XDR is easy. We installed it manually, and it took us approximately one month to complete the implementation of the solution.
I rate the setup of Crowdstrike Falcon XDR an eight out of ten.
What about the implementation team?
We did the implementation of Crowdstrike Falcon XDR in-house. We use two engineers for the maintenance and it is simple.
Which other solutions did I evaluate?
We evaluated SentinelOne before choosing Crowdstrike Falcon XDR.
What other advice do I have?
My advice to others is this solution is easy to deploy, and there is no planning required.
I rate Crowdstrike Falcon XDR a nine out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Download our free CrowdStrike Falcon Report and get advice and tips from experienced pros
sharing their opinions.
Updated: January 2025
Product Categories
Endpoint Detection and Response (EDR) Security Information and Event Management (SIEM) Endpoint Protection Platform (EPP) Identity Management (IM) Threat Intelligence Platforms Active Directory Management Extended Detection and Response (XDR) Attack Surface Management (ASM) Ransomware Protection Identity Threat Detection and Response (ITDR) AI-Powered Cybersecurity PlatformsPopular Comparisons
Microsoft Defender for Endpoint
Fortinet FortiEDR
SentinelOne Singularity Complete
Cisco Secure Endpoint
Microsoft Defender XDR
IBM Security QRadar
Elastic Security
Intercept X Endpoint
Trend Vision One Endpoint Security
Kaspersky Endpoint Security for Business
HP Wolf Security
Check Point Harmony Endpoint
Trend Vision One
Buyer's Guide
Download our free CrowdStrike Falcon Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- I would like to compare CrowdStrike and Carbon Black. On what basis should I decide?
- What is the biggest difference between Carbon Black CB Defense, CrowdStrike, and SentinelOne?
- What do you recommend to choose when replacing Symantec EDR: SentinelOne or CrowdStirke Falcon?
- What is the biggest difference between CrowdStrike and Cylance?
- CrowdStrike Falcon vs Microsoft Defender ATP: Comparison of features and performance
- Is Crowdstrike Falcon better than Trend Micro Deep Security?
- What are the pros and cons of Darktrace vs CrowdStrike Falcon vs alternative EPP solutions?
- Which solution do you prefer: CrowdStrike Falcon or SentinelOne Singularity Complete?
- How does Microsoft Defender for Endpoint compare with Crowdstrike Falcon?
- How does Crowdstrike Falcon compare with FireEye Endpoint Security?