We are using CrowdStrike Falcon for endpoint protection across the organization.
CrowdStrike Falcon Cloud Security
CrowdStrikeExternal reviews
External reviews are not included in the AWS star rating for the product.
Reliable protection with future user interface improvements
What is our primary use case?
What needs improvement?
I think the UI could be improved, but the technical support said CrowdStrike will improve the UI in the near future. But right now, it’s so messy.
For how long have I used the solution?
We have been using it maybe since last year.
What do I think about the stability of the solution?
It's stable, and we already forgot—it just installed and forgot.
How are customer service and support?
Technical support is quite good. We can just WhatsApp the technical easily.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
This is our first time using CrowdStrike.
How was the initial setup?
It's easy to implement the product and we are already up and running in five minutes.
What's my experience with pricing, setup cost, and licensing?
The pricing is still manageable. I think it's about five or six thousand per year. No additional cost for maintenance or support; it's all included in the quotation.
What other advice do I have?
I don’t know if I need to recommend it. I think the overall solution should be rated a ten out of ten.
Machine learning enhances security and detects unauthorized scripts and potential data exfiltration
What is our primary use case?
We are a small company using CrowdStrike Falcon Cloud Security for next-generation endpoint security and antivirus protection. We do not have dedicated threat hunters on the platform and primarily use it for endpoint protection.
How has it helped my organization?
CrowdStrike Falcon Cloud Security helps us ensure that our endpoints are protected, which was essential for achieving the Cyber Essentials Plus certification. It also allows us to demonstrate to partners that we are diligent about protecting both our data and theirs.
What is most valuable?
The most effective feature is the machine learning aspect, which detects unauthorized scripts and potential data exfiltration. It provides alerts on suspicious command executions, helping us safeguard our systems.
What needs improvement?
The user interface needs improvement as it's sometimes difficult to locate specific dashboards or reports. Simplifying the naming of elements in the UI could make it easier and more intuitive for users.
For how long have I used the solution?
We have been using the solution for about six months.
What do I think about the scalability of the solution?
I recommend CrowdStrike Falcon for companies of all sizes, from small businesses like ours to some of the largest companies in the world.
What was our ROI?
We do not expect to get a direct ROI. It is an expense we are willing to pay to conform to Cyber Essentials Plus and demonstrate responsibility in protecting our data and that of our partners. It also helps in mitigating third-party risks.
What's my experience with pricing, setup cost, and licensing?
The pricing for CrowdStrike Falcon Cloud Security is reasonable, especially for small companies with limited budgets. It is essential for achieving Cyber Essentials Plus and is cheaper than solutions like Splunk for Next Gen SEAM.
What other advice do I have?
CrowdStrike Falcon Cloud Security is not recommended for highly sensitive data environments, such as government intelligence services, where cloud products might not be suitable.
I'd rate the solution nine out of ten.
Accelerated incident response with real-time threat management
What is our primary use case?
I have been using CrowdStrike Falcon Cloud Security extensively for maintaining endpoint security. It is mainly used to protect systems against malicious binaries. In our cloud environment, we use it by deploying agents on our cloud instances operating in AWS and GCP to protect these instances from malicious binaries.
How has it helped my organization?
The solution has significantly enhanced our incident response times when dealing with malware or possible malicious file activities. It allows me to log into machines and pull copies of suspected files, eliminating the need to physically obtain the machines for analysis.
What is most valuable?
The most valuable features are the real-time response, which allows me to log into a machine to pull files and check signatures for malicious activities, and the ability to restrict USB block storage usage on endpoints by policy.
What needs improvement?
There is room for improvement in the solution's ability to handle Linux systems. It does well for Windows, but it relies on binary scanning for Linux and lacks comprehensive rules for detecting suspicious behavior. I have had to develop my own custom rules in CrowdStrike for Linux.
For how long have I used the solution?
I have been using this product extensively for about the past four years.
What do I think about the stability of the solution?
Apart from the recent media attention for causing some instability worldwide, the solution is quite stable and I haven't had any major concerns.
What do I think about the scalability of the solution?
The solution scales very well, with the only limitation being the licensing purchased.
Which solution did I use previously and why did I switch?
I have used Carbon Black extensively in the past.
How was the initial setup?
The initial setup is mostly straightforward. They provide a simple way to deploy the endpoint, simplifying the installation process for users.
What's my experience with pricing, setup cost, and licensing?
The solution is quite expensive. The pricing fluctuates based on various factors such as company size, and there is room for negotiation, but it is generally expensive enough that most midsize companies find it difficult to afford.
What other advice do I have?
I would advise first-time users to monitor the number of endpoints regularly to ensure they are checking in. Additionally, they should add custom detections for Linux to identify unexpected behaviors, as the default detection for Linux is not very comprehensive.
I'd rate the solution nine out of ten.
Streamlined malware detection with hassle-free cloud integration and responsive support
What is our primary use case?
I sell and resell CrowdStrike Falcon Cloud Security as part of my company's cybersecurity portfolio for endpoint detection platforms.
How has it helped my organization?
CrowdStrike Falcon Cloud Security assists in detecting malware and provides effective security solutions without the need for hardware servers, saving resources on infrastructure.
What is most valuable?
I find the easy installation process, quick detection capabilities, and the cloud-based console very useful for this solution.
What needs improvement?
CrowdStrike had a significant issue with Windows integration two months back. The pricing is very high and should be improved.
For how long have I used the solution?
I have been working with and reselling CrowdStrike Falcon Cloud Security for five years.
What do I think about the stability of the solution?
CrowdStrike Falcon Cloud Security is very stable, and I would rate it at ten out of ten for stability.
What do I think about the scalability of the solution?
CrowdStrike Falcon Cloud Security is scalable. I would rate its scalability as seven out of ten.
How are customer service and support?
The technical support is very easy to reach and helpful; I would rate it as ten out of ten.
How would you rate customer service and support?
Positive
What about the implementation team?
My company is an integrator, and I handle the deployment and implementation process personally.
What's my experience with pricing, setup cost, and licensing?
The pricing of CrowdStrike Falcon Cloud Security is very high, and I would rate the current pricing as four out of ten.
Which other solutions did I evaluate?
I also work with Microsoft and ESET as part of my company's cybersecurity portfolio for endpoint detection platforms.
What other advice do I have?
I recommend CrowdStrike Falcon Cloud Security because it provides excellent services for endpoint security and is very effective as a security solution.
I'd rate the solution nine out of ten.
Reliable threat hunting with advanced auto-detection and advisory capabilities
What is our primary use case?
We primarily use CrowdStrike Falcon Cloud Security as an XDR (Extended Detection and Response) solution, focusing on antivirus and malware protection.
How has it helped my organization?
It has been effective in protecting against common virus alerts, operating as a reliable security measure.
What is most valuable?
The most valuable feature is the auto-detection capability for threat hunting and issuing advisories on remedies.
What needs improvement?
The main area for improvement is pricing, as it is quite expensive. We are also curious about how it will interact with other AI tools, however, we have not encountered any limitations.
For how long have I used the solution?
I use the solution lightly, not extensively.
What do I think about the stability of the solution?
It has been stable, with no observed glitches.
What do I think about the scalability of the solution?
The solution is scalable enough, as we are managing more than 4,000 endpoints.
How are customer service and support?
The customer support is very good, earning a rating of nine out of ten.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup is straightforward as it is cloud-based and one person is sufficient for installation.
What was our ROI?
We are budget-conscious and look for cost-effective solutions that can do the job efficiently.
What's my experience with pricing, setup cost, and licensing?
Pricing is expensive. That said, if it does the job and is cost-effective, we go for it.
What other advice do I have?
I'd rate the solution eight out of ten.
Enhances cloud security with advanced automation and improved resource allocation
What is our primary use case?
CrowdStrike Falcon is used primarily to enhance cloud security through a lot of automation in the platform. It provides benefits like automation, efficacy, and lower risk, allowing security analysts to focus on high-value tasks.
How has it helped my organization?
By deploying CrowdStrike Falcon, the organization can repurpose security analysts to focus on more high-value tasks due to the automation. It also optimizes on licensing because CrowdStrike covers a significant number of capabilities, which allows for the replacement of several vendors, thus reducing licensing and labor costs.
What is most valuable?
The most valuable features of CrowdStrike Falcon include its automation capabilities, efficacy, and lower risk. It also helps optimize on licensing since it covers a wide range of capabilities.
What needs improvement?
The SIEM needs to be more developed. Additionally, AI features could be enhanced.
For how long have I used the solution?
I have been using the solution for only one year.
What do I think about the stability of the solution?
On a scale of one to ten, the stability of CrowdStrike Falcon Cloud Security is nine.
What do I think about the scalability of the solution?
CrowdStrike Falcon is very scalable. I would rate its scalability as nine out of ten.
How are customer service and support?
As far as I know, the technical support for CrowdStrike is rated as another nine out of ten.
How would you rate customer service and support?
Positive
How was the initial setup?
One person from the partner side and two people from the customer side are usually involved in the installation process.
What about the implementation team?
One person from our side and about one or two people from the customer's side are generally involved.
What's my experience with pricing, setup cost, and licensing?
CrowdStrike Falcon is definitely affordable compared to competitors in the market. On a scale of one to ten, I would rate the pricing as eight out of ten, indicating some room for improvement.
What other advice do I have?
I'd rate the solution nine out of ten.
An expensive solution that has wasted money with 'Blue Screen of Death'
What is most valuable?
We like the solution's management and monitoring tools for our network. We use it to monitor our network between workstations and outside our organization. The AI provides useful visualizations of our network on a dashboard.
What needs improvement?
The tool is expensive.
For how long have I used the solution?
We started using the product early this year.
What's my experience with pricing, setup cost, and licensing?
CrowdStrike Falcon Cloud Security is very expensive for us. Last month, we had a big issue that took much time and money to resolve. It slowed down our business and required our management team to get involved. We had a problem similar to the "Blue Screen of Death" issue many US companies faced. This incident used up many of our IT resources in just a few months. That's why we're looking for a replacement tool now.
It costs us about 400,000 US dollars, and we also spend about 10,000 US dollars more on other security products.
What other advice do I have?
I rate the solution as one out of ten. We must replace this software. We plan to buy a replacement for it as soon as possible.
Offers threat detection capabilities to users
What is our primary use case?
I use the solution in my company to collect information about protecting the endpoint, configuration assessment, and vulnerability assessment.
What is most valuable?
The solution's most valuable feature is its threat emulation part, but there are many other important features for cybersecurity security, including endpoint protection. However, vulnerability management is for prevention, and so on.
What needs improvement?
In terms of the improvements, a detailed profile for the users for the administration of the assets will be provided so they can see the events directly on the platform if needed. In order to see events, with our policies, it should be possible from the specific assets; a user should be able to see the events related to the datasets. One of the main concerns about the tool is that the solution provides features without detailed profiles for those who should see what type of information.
The tool should do some more tests before going for updates automatically.
For how long have I used the solution?
I have been using CrowdStrike Falcon Cloud Security for around a year. I am a user of the tool.
What do I think about the stability of the solution?
In terms of stability, a few days ago, there was a huge issue with CrowdStrike Falcon Cloud Security. There are some issues with the tool's stability. Many airports faced issues as airplanes were delayed in July 2024. It was a large event that left a bad impact worldwide.
I rate the tool's stability as a six out of ten.
What do I think about the scalability of the solution?
It is a scalable solution. Scalability-wise, I rate the solution an eight out of ten.
The tool is used in telecommunications.
Around 20 people use the tool with the administration team.
I think there is a plan to increase the number of users, and it is necessary to provide this information for the different operational areas where there are a lot of people.
How are customer service and support?
The support team is not able to resolve our issues in a timely manner. I rate the technical support a seven out of ten.
How would you rate customer service and support?
Neutral
How was the initial setup?
The product's initial setup phase is easy. If ten is easy, I rate the product's initial setup phase an eight out of ten.
It takes a long time to deploy the product since we have a large pack of devices here. We have a lot of different types of devices, so we need to be careful when implementing the functionalities and the agents.
The solution is deployed on an on-premises model, but we are planning to go to the cloud.
The solution can be deployed in around six months.
Which other solutions did I evaluate?
My company has evaluated tools for vulnerability management.
What other advice do I have?
In terms of the threat detection capabilities, it is a good product. It is a good tool, considering all the information it provides and the automation it delivers.
In terms of the automation part, the tool has some rules that can be applied automatically. I can identify or be aware about a specific event with the help of the tool.
In terms of the improvements I have seen in my company using the tool, I would say that it offers a clear visualization of all the threats that could be on our network. I can see all types of vulnerabilities that could be dangerous or critical for us.
For now, it seems the tool is a good solution for protecting endpoints and mainly for the areas that are using Windows-operated systems.
I recommend the tool to others. It seems that when we installed the agent, it became a solution that could provide a lot of information in a centralized way.
I rate the tool an eight out of ten.
An user-friendly solution but scalability is low
What is most valuable?
CrowdStrike Falcon Cloud Security is user-friendly.
What needs improvement?
The tool's scalability is low.
For how long have I used the solution?
I have been working with the product for one year.
What do I think about the stability of the solution?
I rate CrowdStrike Falcon Cloud Security's stability a nine out of ten.
What do I think about the scalability of the solution?
I rate the solution's scalability a four out of ten. My company has 2000 users.
How are customer service and support?
I haven't contacted support yet.
How was the initial setup?
I rate the tool's installation a seven out of ten. You need two resources to maintain it.
What other advice do I have?
I rate the overall solution a five out of ten.
Effective for detecting and mitigating threats and good automated response capabilities
What is our primary use case?
We give MDR services to many clients and extend the basic capabilities with these modules.
How has it helped my organization?
The automation capabilities that the tool has in order to automate responses and actions.
It's quite easy to use, as I understand the feedback from the team.
What is most valuable?
It is effective for detecting and mitigating threats.
We are automating a lot. So, it offers good automated response capabilities.
What needs improvement?
There are some issues with certain applications. We have been having some problems with Microsoft Teams and other applications.
So, there were some integration issues with this product.
The main concerns are occasional maintenance issues, less than perfect stability, and complexity compared to SentinelOne.
For how long have I used the solution?
We have been CrowdStrike partners for three years and have been using ASPM for one year.
What do I think about the stability of the solution?
The agent is usually stable, but there have been recent instances of high CPU usage. In general, it works fine.
Overall, I would rate the stability a nine out of ten, one being unstable and ten being very stable. So, there's always room for improvement.
What do I think about the scalability of the solution?
In our experience with clients no larger than 10,000 endpoints, it's scalable.
I am not sure about the large infrastructure for around 20,000 to 50,000 endpoints because it is complex for a large infrastructure.
How are customer service and support?
The customer service and support are satisfactory.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We are CrowdStrike partners and have a client that uses Kaspersky, but we are looking at what kind of analysis and comparisons are available in the market.
How was the initial setup?
It's easy. In general, all of the CrowdStrike modules and deployments are easy.
We provide support to the client, and the IT people install it. There are no problems because some clients have better tools to deploy, but there are many ways to do the deployment. It's easy, and we have a 24/7 support team. Deployment doesn't consume many hours.
It's easy to maintain, but sometimes there are issues with particular applications. Those have to be worked around, but in general, there are no other issues.
What about the implementation team?
One engineer is enough to deploy the solution.
What's my experience with pricing, setup cost, and licensing?
It's not the cheapest, but the price is fair. Some clients find it expensive, but it's scalable and has many modules.
So, the price is not too high, it is okay.
Which other solutions did I evaluate?
We have tried others but ultimately decided to provide MDR service only with CrowdStrike. We tested Microsoft and Palo Alto Cortex.
We do a lot of incident response, and we chose CrowdStrike for its superior features in that field. The alerts are clearer, and the capabilities are much better than the others.
But, it's a complex product. SentinelOne, for example, is much easier to use but lacks the same capabilities. For an EDR, it's better to have experts handling it and utilizing all the features CrowdStrike offers.
So, CrowdStrike is a bit complex compared to SentinelOne. It's more complex because it has more features and configuration options, but not inherently complex. The solution is complex because it's very good and has a lot of customization options.
What other advice do I have?
Overall, I would rate it a nine out of ten.