Excellent Visibility and Investigation Tools
What do you like best about the product?
The Kestrel Lead Generator has got to be the best development CrowdStrike has put out so far. This feature has saved me so much time in detection investigations!
What do you dislike about the product?
The fact that their query language is only slightly different than SQL. If you know SQL and jump into this platform, CQL is similar enough but different enough to slightly annoy you.
What problems is the product solving and how is that benefiting you?
Visibility and quick detection/incident resolution within each endpoint. It's always beneficial when mean time to resolution is reduced and CrowdStrike has helped us get our time down and feel better about the security of our environment.
Fast to implement at scale | Rapid response for all Critical Detections
What do you like best about the product?
In the Endpoint Protection Platform space, the CrowdStrike Falcon sensor—together with the Falcon Complete service—feels unrivaled. Having a team of experts always available to help resolve detections in an environment of our scale means we can stay focused on critical business issues instead of constantly triaging alerts and detections.
What do you dislike about the product?
The main problems we face are with some of the supporting modules that are offered, such as data consistency issues in Exposure Management. Also, the lack of feature parity between Linux, MacOS, and Windows means we have to implement different policies and features across the different OS types. We haven’t faced any problems with the core product itself.
What problems is the product solving and how is that benefiting you?
CrowdStrike Falcon Endpoint Protection Platform allows us to maintain a lean team. With the same team size, we can now manage an environment that is 2x larger than before, while still improving our security posture (reducing MTTR, enhancing coverage, and delivering better security than traditional tools).
Top-Notch Security with Easy Deployment
What do you like best about the product?
I like how easy it is to deploy CrowdStrike Falcon Endpoint Protection Platform. Because it’s entirely cloud-based, it’s straightforward to roll out at scale across endpoints and servers. Resource utilization is minimal, so end users aren’t bottlenecked during day-to-day work. The detection rate is top-notch and, in my experience, among the best in the industry, which helps give us an edge over attackers.
I also value the different modules it can integrate with, since it works seamlessly with other Falcon modules as well as third-party vendors. The initial setup was simple, and the documentation was robust and genuinely helpful. CrowdStrike Charlotte AI has also been very useful for investigations and log correlation.
What do you dislike about the product?
The pricing for SMBs can be improved. The UI/UX can also be improved as it's outdated and it needs to be more intuitive. Also, if the other Falcon modules were included with endpoint protection in the base package, it would be a great advantage. The current UI/UX of CrowdStrike seems outdated and it's not easy to navigate and not easy on the eyes.
What problems is the product solving and how is that benefiting you?
I use CrowdStrike Falcon Endpoint Protection Platform to secure servers and endpoints against cyber attacks, gain visibility across our environment, and meet compliance requirements. It's effective, easy to deploy, has a top-notch detection rate, minimal resource use, and integrates well with other tools.
Excellent Network Containment, RTR, and Endpoint & Identity Protection
What do you like best about the product?
Network containment, RTR, and managing endpoints and workflows, identity protection everything is so good
What do you dislike about the product?
Endpoint on-demand scan: if I initiate a scan on an offline host, it won’t run when the host comes back online, and the scan just fails. It would be really helpful to have a feature where an on-demand scan can be queued and then automatically start once the endpoint is online again.
What problems is the product solving and how is that benefiting you?
It helps with data breaches and with protecting the organisation from malware, and similar threats.
A Comprehensive Security Solution with Easy Deployment
What do you like best about the product?
I like that CrowdStrike Falcon Endpoint Protection Platform works efficiently in the background, which means it takes very little effort from our own team. This allows us to sleep better knowing our computers and servers are protected from malware. The platform also saves us a lot of time because we wouldn't have the resources to run a 24/7 security operations center with our own staff. Switching to CrowdStrike Falcon was significant because it offers both 24/7 service and expert support, not just the technology. The initial setup was very easy, and now it's automated, which I appreciate.
What do you dislike about the product?
They do have additional modules that might add value but we would have to pay extra for those. The admin portal is quite 'made for engineers' and requires knowledge and training to use it for customer.
What problems is the product solving and how is that benefiting you?
CrowdStrike Falcon Endpoint Protection Platform protects our computers and servers from malware, provides SOC services, and operates efficiently in the background, saving us time and resources.
Crowdstrike Helps Your Technical Health, and Mental Health
What do you like best about the product?
The fact that the platform is so insanely robust and granular is an absolute lifesaver. I can make my rules ridiculously complicated if I want to, or I can set up more of a “set and forget” approach that I don’t have to think about again until something actually triggers. The detection rating feels unmatched—the platform gathers more threat intelligence than almost anyone else in the world—and that has been a complete game changer for us. No more spending all day hunting through false positives, and no more overly complex reports that don’t make sense and are frustrating to explain to management. Everything is there, it’s ready, and it’s exportable. You can do just about anything with Crowdstrike, and when I say that, I quite literally mean it.
If you want to sleep at night knowing your organization is protected with what I consider the best protection available on the market, I’d strongly suggest going with Crowdstrike. I’m personally sleeping better at night, and members of my team are far less stressed on weekends—we’re no longer dreading a call that our infrastructure has been compromised.
We use this as our main source of protection across our entire enterprise.
What do you dislike about the product?
It's a complex beast to master - it takes time. That's not even really a dislike, it's more of a fact. If you want to be able to fully understand the product, and use all of the features to their fullest, you need to sit down, and do some training and education. Anything worth using though, takes time to master.
What problems is the product solving and how is that benefiting you?
The ever present issue of a breach - if we are breached, we know that response and remediation will take place in minutes, not hours or days. You can do everything right, but the end user is always going to be your weakest link, and the juciest target. However, while users maybe juicy targets, Crowdstrikes Spotlight Vulnerability Mangement platform gives me the ability to patch Windows on the fly, and show me what other third programs need to be patched as well. Not only that, but the remediation time frame window reports, and the general reporting ability of Spotlight is amazing. The reports are straightforward and easy to read for non-technical members of management. They aren't focused on flashy statistics - they're focused on giving you a no frills picture of what's going on in your environment.
Feature-Rich EDR
What do you like best about the product?
It has features you don't see in other technologies; it's a fantastic EDR and offers plenty of options for configuration and customization—something that's difficult to find in other technologies.
What do you dislike about the product?
The learning curve is steep, and there are many modules that change frequently
What problems is the product solving and how is that benefiting you?
Implementing better security policies to strengthen teams against potential breaches, using RTR connections to deploy scripts, and the new approach CrowdStrike is taking with SIEM help provide greater visibility into events as they occur.
Peace of Mind with 24/7 Threat Detection
What do you like best about the product?
I love that with CrowdStrike Falcon Endpoint Protection Platform, I don't have to worry about my endpoints. If there's a problem, they take care of it and notify me, which allows me to sleep much better at night knowing that CrowdStrike Falcon has our back. The platform is worth every penny. It's very easy to set up, and we were able to automate the deployment of the agent, making it very helpful for our team.
What do you dislike about the product?
Absolutely nothing!
What problems is the product solving and how is that benefiting you?
I use CrowdStrike Falcon Endpoint Protection Platform for threat detection, 24/7 endpoint monitoring, and remediation, allowing us to avoid hiring a round-the-clock internal staff.
Crowdstrike : Your End point savior
What do you like best about the product?
It is very easy to use, easy to implement & integrate and highly effective at protecting endpoints from vulnerabilities. It also gives administrators the ability to fine-tune settings, which helps ensure that all systems remain protected and well managed. Their customer success team is so prominent and due to this, it is frequently used almost daily
What do you dislike about the product?
Prices could be a bit more economical to fit it to small and mid cap oragnisations
What problems is the product solving and how is that benefiting you?
It is helping us manage and secure our endpoints against vulnerabilities.
Endpoint protection has blocked ransomware and malware and gives me real-time control
What is our primary use case?
I am using CrowdStrike Falcon because I want to secure my end-user devices.
What is most valuable?
I am using CrowdStrike Falcon because it works on signature-based and signature-less technology, which will prevent me from outside attackers and outside malware.
CrowdStrike Falcon will protect me from ransomware, and after the installation of CrowdStrike Falcon, I get full control on my endpoints and I am secure from outsiders.
CrowdStrike Falcon features are robust and reliable.
There are multiple features including real-time detection, real-time prevention, ATP, and IPS.
CrowdStrike Falcon makes my job easier because it will prevent me from outsider attacks and outsider detection; for example, if I want to stop any types of pen drive block or allow, it will prevent me from that as well.
It will impact my organization positively because if anybody wants to try to hit something, wants to take access, wants to perform CNC attacks, wants to do DOS attacks, CrowdStrike Falcon will protect me regarding real-time protection, PUA detection, scanning, and scheduler scanning.
I have seen on my portal, as the owner, that last week there were some detections about Trojan malware and some detections about CryptoGuard crypto malware. There are many detections, and I have seen that Trojans and malware have been blocked by CrowdStrike Falcon.
What needs improvement?
As of now, CrowdStrike Falcon does not have application control and web control. If CrowdStrike Falcon applies those types of features, it will be more reliable and stronger than any other antivirus or next-gen antivirus in the world or in the industries.
For how long have I used the solution?
I am using CrowdStrike Falcon from last two years.
What do I think about the stability of the solution?
CrowdStrike Falcon is stable right now.
What do I think about the scalability of the solution?
It is good; I can increase it any time.
How are customer service and support?
Customer support is good for CrowdStrike Falcon; they have the best support.
Which solution did I use previously and why did I switch?
I have used Seqrite, but I have switched because Seqrite does not have signature-less technology.
What was our ROI?
CrowdStrike Falcon has saved me money because if any attacker attacks, they can borrow money to decrypt the file, so it is the money saved and time saved.
What's my experience with pricing, setup cost, and licensing?
Pricing, setup cost, and licensing is very good for CrowdStrike Falcon based on what I have seen.
Which other solutions did I evaluate?
What other advice do I have?
As of now, I think CrowdStrike Falcon is better and it is working fine. I rate it 10 out of 10 because it is lightweight, it has real-time detection, and it has the more powerful signature-based and signature-less technology. I can advise others that if there are any opportunities, they should use CrowdStrike Falcon because it is a very lightweight agent with signature-based and signature-less technology. CrowdStrike Falcon has real-time scanning, real-time prevention, and multiple other features. My overall rating for this product is 10 out of 10.