TrustRadius: an HG Insights company

CrowdStrike Falcon

Score9.1 out of 10

299 Reviews and Ratings

What is CrowdStrike Falcon?

CrowdStrike offers the Falcon Endpoint Protection suite, an antivirus and endpoint protection system emphasizing threat detection, machine learning malware detection, and signature free updating. Additionally the available Falcon Spotlight module delivers vulnerability assessment with no performance impact, no additional agents, hardware, scheduled scans, firewall exceptions or admin credentials.

Top Performing Features

  • Endpoint Detection and Response (EDR)

    Continuous monitoring and response to advanced internet threats by endpoint agents.

    Category average: 9.1

  • Anti-Exploit Technology

    In-memory and application layer attack blocking (e.g. ransomeware)

    Category average: 8.6

  • Centralized Management

    Centralized management supporting multi-factor authentication, customized views, and role-based access control.

    Category average: 8.5

Areas for Improvement

  • Infection Remediation

    Capability to quarantine infected endpoint and terminate malicious processes.

    Category average: 8.8

  • Hybrid Deployment Support

    Administrators should be able to choose endpoint security on-premise, cloud, or hybrid.

    Category average: 8.3

  • Vulnerability Management

    Vulnerability prioritization for fixes.

    Category average: 8.3

CrowdStrike Falcon Complete you'll pay for best in class protection.

Use Cases and Deployment Scope

We are a business associate to many healthcare organizations, and rely on ingesting ePHI data for our software. We absolutley need "best in class" threat protection and mitigation to protect not only our business, but the hospitals and other healthcare entities we serve. CrowdStrike Falcon complete absolutely protects us and our clients, and provides the visibility and peace of mind into our systems we are looking for.

Pros

  • Threat protection
  • Threat Mitigation
  • Idenity protection

Cons

  • Customer Service / Tech assistance
  • Siloed functionality

Return on Investment

  • Customers have asked us directly if we use CrowdStrike
  • Learning curve has been steep, but once we had it implemented, has shown a few critical incidents that have occured and were mitigated.

Alternatives Considered

Trend Micro Cloud One - Application Security and Symantec Advanced Threat Protection

Other Software Used

Microsoft Intune, Ramp, Salesforce CMS

CrowdStrike Review

Use Cases and Deployment Scope

We use CrowdStrike for our EDR solution. They have been a great partner to work with!

Pros

  • Malware Detection
  • Next Gen SIEM

Cons

  • I would like the Next Gen SIEM to have more API integrations
  • It would be nice if the Next GEN SIEM had a natural language search capabilities

Return on Investment

  • It has had a great ROI. We have not had any cyber security breaches so far

Alternatives Considered

Huntsman Next Gen SIEM SOAR (Analyst Portal), Datadog, Splunk Enterprise and Arctic Wolf Managed Detection and Response

Other Software Used

Abnormal Security, Cisco Umbrella, KnowBe4 Security Awareness Training

CrowdStrike Falcon Complete - It really is complete

Use Cases and Deployment Scope

My organization uses CrowdStrike Falcon to monitor and protect all of our endpoints. This provides the team insight into any potential malicious activity based upon scripts spawning from word or excel files. CrowdStrike Falcon allows the team to get detailed analysis and records of the who, what, when, where and why that other solutions could not provide.

Pros

  • Granular Details
  • Kill Chain Analysis
  • Minimal impact to users

Cons

  • Transparency into the global outage 1-2 years ago
  • For a new tech, there is sometimes too many details
  • If there could be an AI guiding a tech where to look/review next.

Return on Investment

  • Allows smaller companies the ability to set it and forget it
  • Saves time pulling multiple logs from different sources
  • Provides insight past a blocked trojan, etc...

Alternatives Considered

Webroot Endpoint Protection and Kaspersky Endpoint Security

Other Software Used

Tenable Nessus, Citrix DaaS, Suralink

Good product but small/medium business may not be the ideal customer.

Use Cases and Deployment Scope

We use CrowdStrike and Falcon Complete as our security partner. It is deployed across all desktop endpoints. It is one of our primary layers of defense with regard to security. It is managed by our head of security and some tasks are outsourced to other I.T. staff. We count on this product to increase our uptime with employees and, therefore, their productivity.

Pros

  • The false positives are minimal for our I.T. staff.
  • I think it's an innovative product.
  • There is a large user base, which gives us some confidence in their reliability.

Cons

  • Support - we are often tasked with running down problems rather than being directed by support.
  • The sales staff we have dealt with are not very responsive or timely.
  • I believe this is a product built for installations of 300 users or more.

Return on Investment

  • Due to some of the difficulties with Support and Sales, we are likely looking to change to another vendor. We sometimes don't feel like customers.
  • When the bluescreen incident occurred (worldwide outage) in July 2024, we were unable to contact support due to the high volume of calls at the same time. We had to figure out how to remediate it ourselves, which we did, and recovered before the vendor's official release of fixes. It shook my confidence in them.
  • The product itself performed well over the last 2 years, which has kept us safe and productive. The product is good.

Alternatives Considered

Cylance Smart Antivirus, Kaspersky Cybersecurity Services and Arctic Wolf Cloud Posture Security Management

Other Software Used

CheckPoint, Cisco Umbrella, Rubrik

CrowdStrike delivers Is the next level of protection.

Use Cases and Deployment Scope

We use CrowdStrike for XDR and Identity protection. We have a very distributed team; for us, it is very important to keep our assets protected, and to maintain a healthy AD, we rely on identity protection. We love the ease of use and the valuable insights and dashboards we receive from CrowdStrike. We compared it against other vendors, and the most complete was CrowdStrike. It features numerous third-party integrations for logs, elevating our SOC to the next level.

Pros

  • Endpoint protection.
  • Next Gen Siem.
  • Identity Protection.
  • CNAP

Cons

  • Offline protection.

Return on Investment

  • Having more mature cybersecurity strategy.
  • ROI
  • Faster detection.

Alternatives Considered

Sophos Managed Detection and Response, Sophos Mobile, BlackBerry Optics (CylanceOPTICS) and BlackBerry Protect (CylancePROTECT)

Other Software Used

Proofpoint Email Data Loss Prevention, Veeam Data Cloud for Microsoft 365