OpenText Enterprise Security Manager and CrowdStrike Falcon are both leading solutions in the cybersecurity sector, targeting enterprise users. While ESM is noted for its extensive vendor integration and correlation engine, CrowdStrike Falcon shines with its lightweight, cloud-native approach and exceptional endpoint capabilities.
Features: ESM offers advanced integration with unsupported vendor products, a powerful correlation engine, and custom parsers, making it highly adaptable. CrowdStrike Falcon excels with real-time threat detection, AI-driven analytics, and a potent incident response system, making it ideal for endpoint security.
Room for Improvement: ESM users express difficulties with its complex setup and steep learning curve, highlighting a need for improved database performance and documentation. CrowdStrike Falcon users seek enhanced integration with other technologies, expanded out-of-the-box features without extra costs, and better reporting tools.
Ease of Deployment and Customer Service: ESM, typically deployed on-premises, meets specific compliance demands but has inconsistent support quality. CrowdStrike Falcon, praised for its efficiency in cloud deployment, generally receives positive feedback for customer service, although some note variability in technical support.
Pricing and ROI: ESM has a premium pricing model with significant upfront and ongoing costs, tailored to large deployments. Although CrowdStrike Falcon may seem initially costly due to its licensing structure, it delivers value through quick threat detection and high-quality cloud security.
CrowdStrike Falcon saves time and offers good value for money, especially for enterprise companies, because it can stop breaches.
It's very easy to deploy without many IT admins, saving time.
On a scale of one to ten, I would rate the technical support as a 10 because they resolve many issues for us.
The CrowdStrike team is very efficient; I would rate them ten out of ten.
They could improve by initiating calls for high-priority cases instead of just opening tickets.
If I raise a P1 or P0 ticket, the response time is often delayed by four to eight hours.
It has adequate coverage and is easy to deploy.
In terms of scalability, I find CrowdStrike to be stable, and I have not encountered any limitations with it.
There's no scalability limitation from CrowdStrike itself, as it just requires agent deployment.
It lacks some capabilities compared to other tools available in the market.
I have never seen instability in the CrowdStrike tool.
We are following N-1 versions across our environment, which is stable.
The biggest issue occurred when every computer worldwide experienced a blue screen.
The stability of ArcSight Enterprise Security Manager (ESM) is not very robust.
Simplifying the querying process, such as using double quote queries or directly obtaining logs based on IP addresses or usernames, would be beneficial.
Another concern is CrowdStrike's GUI. It changes annually, making it hard to work and find options.
Threat prevention should be their first priority.
The integration aspect of ArcSight Enterprise Security Manager (ESM) needs improvement.
It is expensive compared to SentinelOne, but as the market leader, it is worth it.
The licensing cost and setup costs are affordable.
The solution is a bit expensive.
ArcSight Enterprise Security Manager (ESM) is very cheap compared to other tools.
I can investigate by accessing the customer's host based on the RTR environment and utilize host search to know details for the past seven days, including logins, processes, file installations, malicious processes, and network connections.
The real-time analytics aspect of CrowdStrike performs well because we get all logs in real-time, with no delay, allowing us to take action immediately.
Being an EDR solution, it helps us identify attacks in real-time.
The ability to interpret data is highly valued.
Product | Market Share (%) |
---|---|
CrowdStrike Falcon | 4.1% |
OpenText Enterprise Security Manager | 1.6% |
Other | 94.3% |
Company Size | Count |
---|---|
Small Business | 46 |
Midsize Enterprise | 34 |
Large Enterprise | 61 |
Company Size | Count |
---|---|
Small Business | 37 |
Midsize Enterprise | 14 |
Large Enterprise | 57 |
CrowdStrike Falcon offers comprehensive endpoint protection with real-time threat detection, AI-driven capabilities, and seamless integration with other platforms. Its cloud-native design provides robust security across diverse environments, making it a reliable choice for modern cybersecurity needs.
CrowdStrike Falcon is heralded for features like robust endpoint visibility, threat detection, and AI-driven capabilities. Users value its efficient real-time monitoring, which maintains low impact on performance while offering seamless integration with platforms. The lightweight design, coupled with comprehensive dashboards and automated threat responses, enhances security operations while reducing resource strain. CrowdStrike's cloud-native architecture ensures flexible, always-on protection, making it adaptable to a wide range of environments. However, improvements can be made in log management, compatibility with diverse operating systems, and integration with third-party technologies. Users also seek more robust reporting features, fewer false positives, and better support for legacy systems. Enhanced policy application, AI capabilities, and extended on-demand scanning are desired, while pricing and technical support responsiveness are concerns.
What are CrowdStrike Falcon's key features?CrowdStrike Falcon is implemented widely in industries relying on robust endpoint protection for monitoring, securing endpoints, forensic analysis, and malware detection. Its cloud-based AI capabilities ensure comprehensive security across devices, making it a preferred choice for networks, servers, and workstations globally. The efficient management of security threats and compliance with regulations is achieved with minimal resource consumption.
OpenText Enterprise Security Manager enables real-time threat detection through scalable and adaptable solutions, integrating seamlessly with multiple platforms for complex security scenarios across different environments.
OpenText Enterprise Security Manager offers extensive security monitoring capabilities, combining log analysis and incident management to enhance cybersecurity and compliance. Its powerful event correlation engine provides real-time alerts for rapid incident response. Users benefit from customizable dashboards and comprehensive log collection, making it a significant tool in the SIEM market. Flexible deployment options cater to both on-premises and cloud environments, supporting enterprises in managing IT infrastructure and threat detection efficiently.
What are the key features of OpenText Enterprise Security Manager?In industries such as finance, healthcare, and energy, OpenText Enterprise Security Manager is implemented for monitoring critical systems and ensuring compliance with regulatory needs. Enterprises leverage its capabilities for forensic investigations and active threat management, serving as a central hub for cybersecurity operations across diverse IT infrastructures.
We monitor all Security Information and Event Management (SIEM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.