We are using Crowdstrike Falcon XDR for security.
Technical Manager (SOC Operations) at Novac Technology Solutions
User-friendly, simple setup, and good user interface
Pros and Cons
- "The most valuable features of Crowdstrike Falcon XDR are Spotlight and Discovery, they are helpful. Additionally, the console is user-friendly, with fewer false positives than other solutions."
- "Crowdstrike Falcon XDR can improve the integration. There are some locks on the cloud to on-premise integrations."
What is our primary use case?
What is most valuable?
The most valuable features of Crowdstrike Falcon XDR are Spotlight and Discovery, they are helpful. Additionally, the console is user-friendly, with fewer false positives than other solutions.
What needs improvement?
Crowdstrike Falcon XDR can improve the integration. There are some locks on the cloud to on-premise integrations.
For how long have I used the solution?
I have been using Crowdstrike Falcon XDR for approximately one year.
Buyer's Guide
CrowdStrike Falcon
December 2024
Learn what your peers think about CrowdStrike Falcon. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,053 professionals have used our research since 2012.
What do I think about the stability of the solution?
Crowdstrike Falcon XDR is a highly stable solution.
What do I think about the scalability of the solution?
Crowdstrike Falcon XDR is scalable for what we use it for. We are using the maximum number of endpoints, which is 1,000.
How are customer service and support?
The support from Crowdstrike Falcon XDR is of a middle level. It is not good and it is not bad.
I rate the support from Crowdstrike Falcon XDR a six out of ten.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
We were previously using FireEye EDR. We switched to Crowdstrike Falcon XDR because we were facing a lot of issues, such as false positives.
How was the initial setup?
The initial setup of Crowdstrike Falcon XDR is easy. We installed it manually, and it took us approximately one month to complete the implementation of the solution.
I rate the setup of Crowdstrike Falcon XDR an eight out of ten.
What about the implementation team?
We did the implementation of Crowdstrike Falcon XDR in-house. We use two engineers for the maintenance and it is simple.
Which other solutions did I evaluate?
We evaluated SentinelOne before choosing Crowdstrike Falcon XDR.
What other advice do I have?
My advice to others is this solution is easy to deploy, and there is no planning required.
I rate Crowdstrike Falcon XDR a nine out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
IT Workplace Coordinator at a consumer goods company with 1-10 employees
Has great threat intelligence, integrates well, and scales to our needs
Pros and Cons
- "The threat intelligence is the most valuable feature."
- "The support for different OS versions needs improvement because sometimes due to business conditions, updating our OS is impossible."
What is our primary use case?
We use CrowdStrike Falcon as an XDR to replace our old antivirus solution.
We implemented CrowdStrike Falcon for better visibility into our environment and easy online access to the policies.
How has it helped my organization?
CrowdStrike Falcon's cybersecurity background allows for better integration with other tools.
What is most valuable?
The threat intelligence is the most valuable feature.
What needs improvement?
The support for different OS versions needs improvement because sometimes due to business conditions, updating our OS is impossible. For example, I have a production environment connected to the PNC that runs Windows XP on computers that CrowdStrike Falcon does not support.
For how long have I used the solution?
I have been using CrowdStrike Falcon for six years.
What do I think about the stability of the solution?
CrowdStrike Falcon is stable.
What do I think about the scalability of the solution?
CrowdStrike Falcon has been able to scale to our needs with no issues.
How was the initial setup?
The initial deployment was straightforward. The deployment took one day to complete. Ten people were involved in the deployment.
What about the implementation team?
The implementation was completed in-house.
What's my experience with pricing, setup cost, and licensing?
CrowdStrike Falcon's price is good. I am looking for other partners and compared to Microsoft Defender and other vendors the price is lower.
What other advice do I have?
I would rate CrowdStrike Falcon a then out of ten.
Before purchasing CrowdStrike Falcon I suggest checking the policies, particularly those regarding internet connections, and conducting a proof of concept.
Which deployment model are you using for this solution?
Private Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
CrowdStrike Falcon
December 2024
Learn what your peers think about CrowdStrike Falcon. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,053 professionals have used our research since 2012.
SOC Analyst at a financial services firm with 1,001-5,000 employees
Sophisticated, robust, feature-rich, and includes the ability to do analyses
Pros and Cons
- "The ability to execute real-time response, or, that you can connect to the agent and see exactly what processes are operating, is the most important feature of this solution."
- "It can be expensive depending on the features you select."
What is our primary use case?
We use CrowdStrike Falcon XDR for endpoint protection.
It is more sophisticated than a legacy antivirus.
When compared to the legacy antivirus, it offers more features, including the ability to do analyses, halt execution, and more. It also gives you real-time notifications.
In comparison to the earlier legacy era, it is better.
What is most valuable?
The ability to execute real-time response, or, that you can connect to the agent and see exactly what processes are operating, is the most important feature of this solution.
It gives you that capability.
I am satisfied with the features that I currently use.
The interface is good, I have no complaints.
What needs improvement?
I believe that most of the features are perfect for my needs, anything else is only icing on the cake.
It can be expensive depending on the features you select.
The technical support could be improved.
For how long have I used the solution?
I have been working with CrowdStrike Falcon XDR for more than one year.
What do I think about the stability of the solution?
CrowdStrike Falcon XDR is a very stable solution.
What do I think about the scalability of the solution?
CrowdStrike Falcon XDR is simply scalable.
In my opinion, it all comes down to what is your pocket saying., and the number, of users.
From my perspective, it's a very scalable product.
All of your endpoints are using this solution.
In our company, we have approximately 372 users.
How are customer service and support?
We have contacted technical support multiple times.
I would rate the technical support a three and a half out of five. They are good but could improve.
How was the initial setup?
The initial setup was very easy.
It took less than three days.
What about the implementation team?
We completed the setup with some assistance from the Falcon team.
What's my experience with pricing, setup cost, and licensing?
I am not aware of the price, but I believe that it is among the most expensive XDRs out there.
Of course, this is dependent on the features you choose. Depending on the features, the price might increase.
Which other solutions did I evaluate?
This is our sixth year of transitioning from a legacy antivirus. So, I believe we saw the issues that we have with legacy antivirus. That's why we went for Falcon XDR.
What other advice do I have?
First, they should understand their needs, then depending on those requirements, I would be able to advise because each person has a unique use case.
I would strongly suggest this solution to anyone who is considering using it. It's a go-to for endpoint protection.
I would rate CrowdStrike Falcon XDR an eight out of ten.
Which deployment model are you using for this solution?
Private Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Excellent capabilities, with a real advantage over the competition, and straightforward customer service
Pros and Cons
- "The features I like the most are the response time and the dashboard are both excellent."
- "I would like to see a more accurate integration and an option to check the local machine."
What is our primary use case?
Our primary use case is EDR and ransomware.
What is most valuable?
The features I like the most are the response time and the dashboard are both excellent.
What needs improvement?
I would like to see a more accurate integration and an option to check the local machine.
For how long have I used the solution?
I have been using CrowdStrike Falcon for more than two years.
What do I think about the stability of the solution?
The stability is around ninety-eight percent. The other two percent deals directly with the node being unable to detect as normal.
What do I think about the scalability of the solution?
There is scalability but this is not our focus.
How are customer service and support?
We have not had any issues with technical support. Much of what we use is online documentation.
Which solution did I use previously and why did I switch?
We have used Microsoft Defender for Endpoint, SentinelOne, Carbon Black, and Trend Micro. The observation we have made is the accuracy and detection of CrowdStrike Falcon is excellent.
How was the initial setup?
The initial setup is very straightforward given you have set your file control and detection levels correctly.
What's my experience with pricing, setup cost, and licensing?
The cost is usually a challenge in the industry. I think we pay around sixty-eight dollars.
What other advice do I have?
I would rate CrowdStrike Falcon an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
Infrastructure Manager at Quaracrm
A great solution for blocking any malicious activity with robust features
Pros and Cons
- "All the features are beneficial."
- "They should provide us with good visibility for everything."
What is our primary use case?
We use it to monitor everything related to the activity and to block any malicious activity. We are new in the security field in our company.
What is most valuable?
All the features are beneficial.
What needs improvement?
They should provide us with good visibility for everything.
For how long have I used the solution?
We have been using this solution for two years, and it is deployed on cloud. We are also using the latest version.
What do I think about the stability of the solution?
The stability is amazing, and we don't have any issues.
What do I think about the scalability of the solution?
It is scalable. We have 700 users, and we plan to increase the usage. We only need about three technical staff for deployment and maintenance, a senior systems engineer and two infrastructure managers.
How are customer service and support?
We've used technical support, and I rate them a ten out of ten.
How would you rate customer service and support?
Positive
How was the initial setup?
The setup was straightforward, and it took one month to enable the policy and use cases. We completed it in-house.
What's my experience with pricing, setup cost, and licensing?
It has an annual license, and it is not that expensive.
Which other solutions did I evaluate?
We evaluated Trend Micro before moving forward with CrowdStrike Falcon.
What other advice do I have?
I rate this solution a ten out of ten. Regarding advice, it is important to learn about CrowdStrike Falcon's capabilities and features. It would be easier to use if they gave that understanding.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Senior Engineer at Neosecure
Useful full EDR, effective hunting, and good reports
Pros and Cons
- "The most valuable features in CrowdStrike Falcon are the full EDR with antivirus, hunting, reporting, and RTR remote control."
- "CrowdStrike Falcon could improve by having an easier way to search and use the interface for extracting queries from the data. The interface could improve."
What is our primary use case?
We use CrowdStrike Falcon for malware mitigation and hunting.
What is most valuable?
The most valuable features in CrowdStrike Falcon are the full EDR with antivirus, hunting, reporting, and RTR remote control.
What needs improvement?
CrowdStrike Falcon could improve by having an easier way to search and use the interface for extracting queries from the data. The interface could improve.
For how long have I used the solution?
I have been using CrowdStrike Falcon for approximately eight years.
What do I think about the stability of the solution?
CrowdStrike Falcon is stable.
What do I think about the scalability of the solution?
The scalability of CrowdStrike Falcon is good.
We have approximately 500 people using this solution in my organization.
How are customer service and support?
We have contacted the support from CrowdStrike Falcon and it is very good.
How was the initial setup?
The initial setup of CrowdStrike Falcon is straightforward.
What's my experience with pricing, setup cost, and licensing?
The price of CrowdStrike Falcon is expensive and should be reduced.
What other advice do I have?
I rate CrowdStrike Falcon a nine out of ten.
Which deployment model are you using for this solution?
Private Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer:
Product Manager at a comms service provider with 51-200 employees
A highly stable solution that provides EDR and security functionalities to its users
Pros and Cons
- "The solution offers great stability."
- "CrowdStrike Falcon needs to improve their host management system."
What is our primary use case?
I use CrowdStrike Falcon for EDR and security purposes. Also, I am using file integrity monitoring, asset management, and patch management modules. Additionally, I'm also utilizing an identity protection module.
What needs improvement?
CrowdStrike Falcon needs to improve their host management system.
For how long have I used the solution?
I have been using CrowdStrike Falcon for a year and a half. I am using the latest version. I am a partner of CrowdStrike.
What do I think about the stability of the solution?
The solution offers great stability. I have faced no issues with the tool.
What do I think about the scalability of the solution?
There are 5,000 users using the solution.
How are customer service and support?
I only contacted technical support to ask a few questions, and they helped me out.
How was the initial setup?
The solution's initial setup process was easy. The deployment process took only 10 hours for 5,000 clients.
What's my experience with pricing, setup cost, and licensing?
The tool is a little bit expensive compared to other products, but I think it's okay owing to its quality.
What other advice do I have?
Protection has been good in the solution. I got only one false positive in a year and a half, which is great.
There is no suggestion to provide because it is easy to implement, and there are no exclusions or testing required. If you plan to try it, it should work well without any issues.
Overall, I rate the product a nine point seven out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: partner
Cloud Solution architect at VaporVM
It has a good mechanism and a reporting feature and enables you to take quick action if there's a missing patch
Pros and Cons
- "Overall, what I found most valuable in CrowdStrike Falcon is its good mechanism. It also has a good reporting feature. CrowdStrike Falcon is an invaluable tool because, through it, you can take quick action, for example, when an OS is missing specific patches."
- "Dashboard creation is one of the areas for improvement in CrowdStrike Falcon. Sometimes, management asks for a custom dashboard, so my team has to collect data from CrowdStrike Falcon, integrate that in Splunk, then create the dashboard in Splunk. The Splunk dashboard is more elaborate, so the CrowdStrike Falcon dashboard needs improvement. Another area for improvement in the tool is the malware detection report, as it needs to be more detailed and include some graphics so that if you want to present that data in a nutshell, it's easier to do. For example, the report should consist of some graphical representation that shows a month's worth of data. In terms of an additional feature I'd like CrowdStrike Falcon to have, it's the device posture assessment feature that detects the device posture within the network. Whichever device connects to the corporate network, my company should be able to analyze the device posture. Then there should be communication with the network, which means that as soon as a device connects, CrowdStrike Falcon can assess the device posture, detect its corporate asset, and decide whether it should be allowed on the network."
What is our primary use case?
We primarily use CrowdStrike Falcon for malware detection, endpoints, and application behavior detection. The company has different teams, but our team handles the Windows and Mac hosts.
What is most valuable?
Overall, what I found most valuable in CrowdStrike Falcon is its good mechanism. It also has a good reporting feature. CrowdStrike Falcon is an invaluable tool because, through it, you can take quick action, for example, when an OS is missing specific patches.
What needs improvement?
Dashboard creation is one of the areas for improvement in CrowdStrike Falcon. Sometimes, management asks for a custom dashboard, so my team has to collect data from CrowdStrike Falcon, integrate that in Splunk, then create the dashboard in Splunk. The Splunk dashboard is more elaborate, so the CrowdStrike Falcon dashboard needs improvement.
Another area for improvement in the tool is the malware detection report, as it needs to be more detailed and include some graphics so that if you want to present that data in a nutshell, it's easier to do. For example, the report should consist of some graphical representation that shows a month's worth of data.
In terms of an additional feature I'd like CrowdStrike Falcon to have, it's the device posture assessment feature that detects the device posture within the network. Whichever device connects to the corporate network, my company should be able to analyze the device posture. Then there should be communication with the network, which means that as soon as a device connects, CrowdStrike Falcon can assess the device posture, detect its corporate asset, and decide whether it should be allowed on the network.
For how long have I used the solution?
I've been using CrowdStrike Falcon since January or February, so it's been eleven months, but my company used it even before I joined the organization.
What do I think about the stability of the solution?
Overall, CrowdStrike Falcon is a stable product. My company is satisfied with its stability.
What do I think about the scalability of the solution?
Per my experience, CrowdStrike Falcon is scalable.
How are customer service and support?
The CrowdStrike Falcon technical support is good because it's responsive, and the team reverts to you within a reasonable timeframe and in an excellent manner, which is essential for support. However, my team didn't have many cases because CrowdStrike Falcon doesn't require much support.
My company also took product training and implemented the learnings within the environment. CrowdStrike Falcon is effective and gives the required throughput and output, so in the last ten or eleven months, support cases have been very low, but whenever an issue is raised, the level of support has been excellent.
Which solution did I use previously and why did I switch?
The company previously used Kaspersky, but CrowdStrike Falcon was far better. I heard that there was some attack, and Kaspersky couldn't handle that. CrowdStrike Falcon, on the other hand, offers excellent protection even from multiple malware attacks, and it has a good application behavior analysis feature.
My company did extensive penetration testing on CrowdStrike Falcon, which had good or far better results than Kaspersky. The company had a bad experience with Kaspersky.
How was the initial setup?
The initial setup for CrowdStrike Falcon is moderate in terms of difficulty, so it's not very easy, but it's not complex as well.
How long the setup takes depends on how you want to deploy CrowdStrike Falcon, but at the moment, it doesn't take much time for my company. It's quicker, but any company implementing CrowdStrike Falcon for the first time may need some good training or some hands-on experience. Otherwise, compared to other products, I would say CrowdStrike Falcon is better, implementation-wise.
What's my experience with pricing, setup cost, and licensing?
As I'm part of the technical team, not the budgeting team, I don't have information on CrowdStrike Falcon pricing.
What other advice do I have?
My company uses multiple products related to cybersecurity, for example, Netskope. For endpoint security, my company uses Microsoft Defender ATP and Endgame. My company is also working with CrowdStrike Falcon. For vulnerability management, my company uses Qualys, in particular for the AWS environment.
I don't remember the exact version of CrowdStrike Falcon I'm using, but I know that the tool is on Windows, Mac, and some AWS environments within the company.
Within the company, the total number of endpoints is around seven hundred. Two admins handle the endpoints for CrowdStrike Falcon.
My advice for anyone looking to implement CrowdStrike Falcon is to go for it, especially if you want to add value to your cybersecurity, specifically endpoint protection and application behavior analysis. CrowdStrike Falcon has reliable results, so I prefer it over other tools.
My rating for CrowdStrike Falcon is nine out of ten.
My company is a customer, and not a partner of CrowdStrike Falcon.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Download our free CrowdStrike Falcon Report and get advice and tips from experienced pros
sharing their opinions.
Updated: December 2024
Product Categories
Endpoint Detection and Response (EDR) Security Information and Event Management (SIEM) Endpoint Protection Platform (EPP) Identity Management (IM) Threat Intelligence Platforms Active Directory Management Extended Detection and Response (XDR) Attack Surface Management (ASM) Ransomware Protection Identity Threat Detection and Response (ITDR) AI-Powered Cybersecurity PlatformsPopular Comparisons
Microsoft Defender for Endpoint
Fortinet FortiEDR
Cisco Secure Endpoint
SentinelOne Singularity Complete
Microsoft Defender XDR
IBM Security QRadar
Elastic Security
Intercept X Endpoint
Trend Vision One Endpoint Security
Kaspersky Endpoint Security for Business
Check Point Harmony Endpoint
Trend Vision One
VMware Carbon Black Endpoint
Buyer's Guide
Download our free CrowdStrike Falcon Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- I would like to compare CrowdStrike and Carbon Black. On what basis should I decide?
- What is the biggest difference between Carbon Black CB Defense, CrowdStrike, and SentinelOne?
- What do you recommend to choose when replacing Symantec EDR: SentinelOne or CrowdStirke Falcon?
- What is the biggest difference between CrowdStrike and Cylance?
- CrowdStrike Falcon vs Microsoft Defender ATP: Comparison of features and performance
- Is Crowdstrike Falcon better than Trend Micro Deep Security?
- What are the pros and cons of Darktrace vs CrowdStrike Falcon vs alternative EPP solutions?
- Which solution do you prefer: CrowdStrike Falcon or SentinelOne Singularity Complete?
- How does Microsoft Defender for Endpoint compare with Crowdstrike Falcon?
- How does Crowdstrike Falcon compare with FireEye Endpoint Security?