My main use case for CrowdStrike Falcon is to remediate any time someone downloads something malicious. I tend to remediate it and check in on the users to make sure there are no false positives. If it is something malicious, then I have to triage it.
A specific example of when I used CrowdStrike Falcon was when someone had downloaded something that they were not supposed to download. I looked at the hash value, saw that it was malicious, reached out to the user, warned them to exercise caution, and from there, they removed it and our IT team scanned their device.
The best features CrowdStrike Falcon offers include their 24/7 team that is always watching us and their next-generation team that is always actively threat hunting.
What I appreciate about the 24/7 team and the next-generation team specifically is that during the time I am not working and on the weekends when I am not working, the people are able to watch over my company and my users and help me so I do not have to worry.
CrowdStrike Falcon has positively impacted my organization by helping stop many breaches, and they are very good at alerting and following and escalating during critical alerts.
A specific outcome that shows Falcon's positive impact is that they have called me around midnight several times when I would not often be working, but it was a critical alert, and they have saved the day due to escalating their policy.
To improve CrowdStrike Falcon, I suggest continuing what you are doing, continuing with customer support and checking quarterly schedules, and everything will be good.
I have been working in my current field for about two and a half years.
CrowdStrike Falcon is stable.
CrowdStrike Falcon's scalability is very good and very reliable.
The customer support from CrowdStrike Falcon is very good and very trustworthy.
I would rate CrowdStrike Falcon a 10 out of 10.
I give CrowdStrike Falcon a 10 because they do what needs to be done and they do what we ordered it to do.
Regarding CrowdStrike Falcon's AI capabilities, I think it has been doing well. I think everything with AI could always improve, but its capabilities right now have been good and sufficient.
I think CrowdStrike Falcon's AI capabilities in terms of accuracy and reliability of its output are quite impressive, as Charlotte has been very descriptive any time an alert occurs, and the AI is doing very well at breaking down what needs to be done, including next steps and what happened in the alert.
Using Falcon platform has changed the way my security team detects, investigates, and responds to threats by escalating detections and responding on our end because CrowdStrike already gives us the breakdown of what has happened.
The benefits I have seen from having multiple security capabilities on a single platform include saving time and preventing us from constantly going to different multiple platforms, as we could just all look at one platform.
A security incident where Falcon helped my team detect or stop a threat was during the time of the DPRK, North Korean attack, and they helped stop and prevent that.
The impact that the Falcon sensor has had on endpoint performance and my ability to deploy security at scale is that the endpoint Falcon sensor has helped keep visibility into any and all devices that we have.
I am using AI within Falcon platform to monitor which users use AIs and to make sure they are only using permitted AI, not every AI out there.
What differentiates Falcon from other cybersecurity platforms I have used or evaluated is that they are constantly doing well and they have never let us down.
The advice I would give to others looking into using CrowdStrike Falcon is to please hurry this process up, but trust Falcon, use the demo and attend their events, and you will appreciate the product.
I am giving this review an overall rating of 10.