President and CEO at a tech services company with 51-200 employees
Real User
Straightforward to set up with excellent detection and response capabilities
Pros and Cons
  • "Scalability hasn't been an issue for us."
  • "The price is too high."

What is our primary use case?

We primarily use the solution for our Windows and Macs.

What is most valuable?

The detection and response have been excellent overall. We've had no ransomware attacks. 

We found the initial setup to be straightforward. 

The solution is stable. 

Scalability hasn't been an issue for us.

What needs improvement?

The price is too high.

For how long have I used the solution?

I've been using the solution for three years now. 

Buyer's Guide
CrowdStrike Falcon
April 2024
Learn what your peers think about CrowdStrike Falcon. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
768,924 professionals have used our research since 2012.

What do I think about the stability of the solution?

The stability has been fantastic. We have never had an outage. There are no bugs or glitches. The performance is great.

What do I think about the scalability of the solution?

As we are a smaller organization, scalability hasn't been an issue. It's been very good so far. 

We have about 120 users and they include technical people, salespeople, project managers, and developers.

This solution is being widely used in our organization as it is mandatory. All of our users need to have it. 

How are customer service and support?

The product works really well. We very rarely had to reach out to technical support. When we reached out to them, they've been pretty good.

Which solution did I use previously and why did I switch?

We were in the old McAfee EPO and with all the ransomware and all that stuff hitting us, we found that McAfee wasn't really cutting it. That's why we switched.

How was the initial setup?

The initial setup is simple. It's not overly complex or difficult. 

For us, the deployment took a couple of weeks and we were good to go.

You need very few staff members for deployment and maintenance. 

What about the implementation team?

We did not use an integrator, consultant, or reseller to help us with the implementation. We were able to handle it ourselves.

What was our ROI?

There's not really an ROI. The ROI is that we haven't been hit by ransomware.

What's my experience with pricing, setup cost, and licensing?

The product is quite expensive. It's higher than the competition in general in terms of cost. 

We pay a yearly licensing fee.

They also offer what they call the Falcon Complete, which was a complete managed service, which we chose not to go with. We measured it ourselves.

Which other solutions did I evaluate?

We looked at Carbon Black, Cybereason, and Microsoft Defender ATP. We chose CrowdStrike, as it's always easy to use. It was the most mature product as well. We liked what Gartner had to say about CrowdStrike.

What other advice do I have?

We're a managed security services provider.

I can't speak to the exact version of the solution we're using at this time. 

I would advise users to just follow the advice of CrowdStrike. They have some very good manuals and YouTube videos and stuff of that. It's a complex piece of software, however, you need to work very well and make sure your implementation is correct.

I'd rate the solution at a ten out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Chief Technology Officer at a manufacturing company with 1,001-5,000 employees
Real User
Is user-friendly, improves performance, and protects our end users
Pros and Cons
  • "CrowdStrike Falcon offers a comprehensive dashboard that is highly effective in protecting against and blocking external infiltration attempts."
  • "The pricing structure should allow for some flexibility."

What is our primary use case?

We use CrowdStrike Falcon for endpoint protection and cybersecurity.

We implemented CrowdStrike Falcon to ensure our systems were secure and there were no infiltrations to our system.

We deploy CrowdStrike Falcon across a variety of platforms, including cloud and edge environments. We ensure it meets rigorous security standards, is properly certified, and adheres to our data management policy.

How has it helped my organization?

We integrated CrowdStrike Falcon with our end-user systems and servers.

Since implementing CrowdStrike Falcon, we haven't experienced any serious threats, and we've seen a decrease in phishing and ransomware emails. This suggests it's been very effective in mitigating those threats.

The UI is easy to use and comprehensive.

CrowdStrike Falcon's performance has improved our user productivity.

What is most valuable?

CrowdStrike Falcon offers a comprehensive dashboard that is highly effective in protecting against and blocking external infiltration attempts.

What needs improvement?

The pricing structure should allow for some flexibility.

For how long have I used the solution?

I have been using CrowdStrike Falcon for almost 3 years.

What do I think about the stability of the solution?

CrowdStrike Falcon is stable.

What do I think about the scalability of the solution?

I would rate the scalability of CrowdStrike Falcon 8 out of 10.

How are customer service and support?

The technical support is good. We have not had any issues with them.

How would you rate customer service and support?

Positive

How was the initial setup?

The initial deployment was straightforward. The deployment doesn't take more than one day. Those involved with the deployment are system engineers, IT analysts, and software engineers.

What about the implementation team?

The implementation was completed in-house.

What's my experience with pricing, setup cost, and licensing?

The price is fixed with no room for negotiation.

What other advice do I have?

I would rate CrowdStrike Falcon 8 out of 10.

We have deployed CrowdStrike Falcon in multiple departments, locations, and satellite offices.

CrowdStrike Falcon doesn't require maintenance from our end other than the updates.

I recommend CrowdStrike Falcon to others.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
Flag as inappropriate
PeerSpot user
Buyer's Guide
CrowdStrike Falcon
April 2024
Learn what your peers think about CrowdStrike Falcon. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
768,924 professionals have used our research since 2012.
Gogineni Venkatachowdary - PeerSpot reviewer
Cloud Operations Center Analyst at a pharma/biotech company with 10,001+ employees
Real User
Top 5Leaderboard
Easy to set up with good vulnerability monitoring but the performance could be better
Pros and Cons
  • "It's very easy to set up."
  • "The performance could be better."

What is our primary use case?

The solution is for alerts. It will trigger if there is malicious traffic or some scripting attack. Any attack that is there, then it'll alert automatically.

What is most valuable?

We can protect against the worst level of attacks. We can see everything from the dashboard.

The vulnerability monitoring is great.

It's very easy to set up.

What needs improvement?

The performance could be better. It's a bit slow. When we click to launch the dashboard, it should be more responsive.

For how long have I used the solution?

I've been using the solution for the last six months. 

What do I think about the stability of the solution?

The performance could be better. It's a little bit slow. 

It's not very stable. We can't seem to support the latest version.

What do I think about the scalability of the solution?

We don't really handle the scaling. I can't speak to that aspect of the product.

We have about 300 to 400 agents running.

How are customer service and support?

Technical support is great.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We did previously use a different solution. The security team made the decision to switch. It wasn't a decision from an operations standpoint. 

How was the initial setup?

We just install the agent and whatever other notes you need to monitor.

It is straightforward to set up the solution. 

There's no deployment. We just run the agents and those will take care the deployments. The security team will take care of the deployment part. Therefore, we just install the agents and hand over the environment to them. They will monitor everything.

What about the implementation team?

We don't need any outside help, really. Mostly they will give you the links and how you need to deploy everything. Based on that information, we'll follow that advice.

What's my experience with pricing, setup cost, and licensing?

I'm not sure of the exact cost of the solution. 

What other advice do I have?

We are on the latest update of the solution. 

There isn't really any specific knowledge required to use CrowdStrike, apart from maybe general knowledge of cyber security.

I'd rate the solution seven out of ten. If it had better performance, I would rate it higher. 

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Server Administrator at TIR Canada
Real User
Top 20
Stable solution that detects and prevents malware, but unreliable and weak tech support
Pros and Cons
  • "The solution has improved my organization by automating the detection and reporting of unwanted applications so we're aware of them and can respond appropriately."
  • "The technical support team often just replies to an issue with a link to an article rather than actually calling back and talking to someone and making sure the problem is solved. To me, that's kind of weak."

What is our primary use case?

We use this solution on all of our endpoints and servers.

How has it helped my organization?

The solution has improved my organization by automating the detection and reporting of unwanted applications so we're aware of them and can respond appropriately.

What is most valuable?

The most valuable features of the solution are the detection and prevention of unwanted applications and malware services.

What needs improvement?

The solution keeps changing their website to the point that it's hard to navigate. Also, the technical support is kind of hit-or-miss. Sometimes they really respond quickly and sometimes I don't hear from them for a long time.

For how long have I used the solution?

I began using this solution when I was hired at this company about 10 months ago, and they were using it before that.

What do I think about the stability of the solution?

The solution looks very stable. 

What do I think about the scalability of the solution?

It is a scalable product. 

How are customer service and support?

The technical support team often just replies to an issue with a link to an article rather than actually calling back and talking to someone and making sure the problem is solved. To me, that's kind of weak.

How would you rate customer service and support?

Neutral

How was the initial setup?

The initial setup was complex. On a scale of one to five, with one being complicated and five being very easy, I would rate it about a three.

What about the implementation team?

The deployment was handled in-house.

What's my experience with pricing, setup cost, and licensing?

The licensing cost isn't cheap, but it's appropriate. 

What other advice do I have?

My advice to those looking into this solution would be that it's in the top right quadrant of the Gartner quadrant, so it deserves consideration. You just have to be prepared to integrate it.

I would rate this solution as a four out of ten. This is mostly because of the weak technical support.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Head of IT Department at a pharma/biotech company with 10,001+ employees
Real User
Effective cyber attack prevention, light on resource, and great user expereince
Pros and Cons
  • "The most valuable feature is the machine learning that they use to check certain patterns in the endpoint devices. It checks the whole ecosystem or entire environment."

    What is our primary use case?

    CrowdStrike Falcon is leading the market in EDR. They are the first that to have this kind of solution against malware. They have an advantage in respect to the rest of the competitors. They offer a certain amount to protect in case of malware or cyber-attacks. They have a policy or insurance connected to the service. That's the reason why we choose CrowdStrike over other solutions.

    What is most valuable?

    The most valuable feature is the machine learning that they use to check certain patterns in the endpoint devices. It checks the whole ecosystem or entire environment.

    I am very happy with CrowdStrike Falcon because it does not use a lot of resources in the endpoint, it's a lightweight solution. It provides good protection and it is very effective. Additionally, it is easy to integrate, has great features, good capabilities, and the users have a positive experience.

    For how long have I used the solution?

    I have been using CrowdStrike Falcon for approximately one year.

    What do I think about the stability of the solution?

    CrowdStrike Falcon is stable.

    What do I think about the scalability of the solution?

    I have found CrowdStrike Falcon to be scalable.

    How are customer service and support?

    I have not needed to use technical support.

    What's my experience with pricing, setup cost, and licensing?

    The cost of CrowdStrike Falcon could be reduced. It is quite expensive if you compare it to other solutions, such as Blue Coat, Symantec, McAfee, or Kaspersky.

    What other advice do I have?

    My advice to those wanting to use CrowdStrike Falcon is to try it out to see if it works well in their environment. I consider CrowdStrike Falcon is a very accurate solution. They are confident about the capabilities of their solutions because they offer money or payback if there is a high-impact cyber incident or cyberattack while using the solution.

    They need to have special consideration about the different plans and budgets that they need to get the solution that they want.

    I rate CrowdStrike Falcon a ten out of ten.

    Which deployment model are you using for this solution?

    Public Cloud
    Disclosure: I am a real user, and this review is based on my own experience and opinions.
    PeerSpot user
    Dan Brunnquell - PeerSpot reviewer
    Director Of Information Technology at a financial services firm with 11-50 employees
    Real User
    Top 5
    Provides instant visibility and protection across an organization
    Pros and Cons
    • "It's given me a level of confidence that my network is secure."
    • "CrowdStrike Falcon by itself does not supply in-depth reporting."

    What is our primary use case?

    We use this solution for threat protection and endpoint security.

    Recently, we added on CrowdStrike OverWatch and Insightsoftware for better reporting. OverWatch monitors East-West issues that CrowdStrike Protect doesn't see. New next-generation endpoint security doesn't scan your PC. It doesn't scan files nightly. People have to get past that, it's so old school. 

    I have 50 end-users, one hundred endpoints, and workers of all types, both in-house and remote workers.

    How has it helped my organization?

    With the addition of Overwatch and the Insight tool, the reporting has gotten better and I've gained some quality insight that helps me remedy compliance issues and maintain security posture; however, in a year and a half, we haven't had an actual positive detection across a hundred endpoints. The reason for that is mostly due to our employee training and the way that our complete security stack is configured. I hope that the way that I've got it configured right now is the sole reason that we literally aren't letting things in.

    If the solution sees some issues, it reports them. Even though they're false positives, in a different scenario, what it's reporting could be a threat. Usually, they're just executables that were downloaded and installed by me. That's to be fully expected and maybe they came from a vendor, but it wasn't signed. 

    It's given me a level of confidence that my network is secure — the fact that it's not finding anything; however, I am not experiencing the issues that competitors are saying I should be experiencing. I literally have to test it manually to know it's working.

    What is most valuable?

    Falcon Protect looks at processes and issues in real-time.

    What needs improvement?

    CrowdStrike Falcon by itself does not supply in-depth reporting. 

    Falcon Protect does what it does. It's endpoint security — nothing more, nothing less. 

    What it does, It does well. However, if you need more information on what it found and how it got there (including board reporting and compliance reporting), that's not there. Some of the other solutions that are available give you that, right out of the box.

    For how long have I used the solution?

    I have been using CrowdStrike Falcon for the past year and a half.

    What do I think about the stability of the solution?

    We haven't experienced any issues regarding the stability of CrowdStrike Falcon.

    What do I think about the scalability of the solution?

    CrowdStrike Falcon is scalable. I've only got one hundred endpoints and I know companies that are hundreds of times bigger who use it.

    How are customer service and technical support?

    Trying to get somebody on the phone might not always be the easiest thing, but they usually respond in a fairly timely manner. I haven't had any issues where I've needed them to immediately fix things.

    On a scale from one to ten, I would give their customer support a rating of nine.

    Which solution did I use previously and why did I switch?

    We had a Vipre solution, but it was an On-Prem solution. The server was aging out and the software was up for renewal. It wasn't working well with our remote workers; they're not literally connected to my network so updating them was always a pain-point without a cloud-based solution.

    We were going to transition to "cloud" and Vipre just wasn't really up to the level of CrowdStrike at the time.

    How was the initial setup?

    The deployment literally took about 15 minutes across the wide area network. Regarding configuration, we took a look at it with their tech support and Implementation team. There's literally maybe a dozen settings and we basically maxed them out.

    What's my experience with pricing, setup cost, and licensing?

    The price of CrowdStrike Falcon is a little high, but it can be negotiated.

    What other advice do I have?

    If you're thinking about implementing this solution, I would suggest getting Overwatch and Insight along with it. Also, don't be afraid to try and negotiate for a better price.

    On a scale from one to ten, I would give this solution a rating of nine.

    The reporting is part of the Overwatch and Insight combination. It's doing what we want it to do and it's not causing a lot of overhead. Like I said earlier, maybe we're an anomaly. We don't have a lot of issues on our network.

    Which deployment model are you using for this solution?

    Private Cloud
    Disclosure: I am a real user, and this review is based on my own experience and opinions.
    PeerSpot user
    PeerSpot user
    Senior Cyber Security Analyst with 1,001-5,000 employees
    Real User
    Detailed incident reporting, stable, and the technical support team is well trained
    Pros and Cons
    • "The most valuable feature is the indicator of compromise, which show you what file was either quarantined or removed."
    • "Any kind of integration that you want to do, such as using the API to connect to a SIEM, is complex and it will be expensive to do."

    What is our primary use case?

    The primary use case is digital security investigations using the dashboard.

    How has it helped my organization?

    Every week, a manager would look at a detailed report to see what kind of CrowdStrike incidents we had.

    What is most valuable?

    The most valuable feature is the indicator of compromise, which shows you what file was either quarantined or removed. It shows you the malicious files in question, as well as the exact time, the machine, the endpoint, and the host IP address. Everything you need to know is right there in a single dashboard.

    What needs improvement?

    Any kind of integration that you want to do, such as using the API to connect to a SIEM, is complex and it will be expensive to do. It is quite a pricey product.

    For how long have I used the solution?

    I used CrowdStrike Falcon in my last two cybersecurity jobs, over a period of at least two years.

    What do I think about the stability of the solution?

    The product is stable as a rock. I have never seen any crashes. When it came to patching updates, we were always notified. It is not Windows-based, but rather Linux or Unix-based. It was more stable than any Windows product.

    What do I think about the scalability of the solution?

    We had a small shop, so we never had any reason to scale.

    How are customer service and technical support?

    The technical support is pretty good. They're trained in their product and they have a system in place where if the first line of support does not resolve the issue, they are emailing us directly back and forth, and they'll hand over the problem from one shift to the next.

    It is not very difficult to get in touch with the support team, although it does require clearance from whoever handles the money aspect. You have to be really careful because they will charge you fees for any kind of solution that they provide.

    I have used them twice, once for each company that I was working for. The first time, we used the CrowdStrike service to do the investigation so that we could focus our time on other products. They have teams that will act like a managed service provider to take care of incidents. We handled major incidents in-house but we let them handle the minor ones.

    With the second company, we had to do the investigations as the incidents came in, so it was two totally separate vantage points. Both worked extremely well in both manners and forms.

    Which solution did I use previously and why did I switch?

    CrowdStrike was already in place before I arrived, at both places where I have used it.

    We were also using Carbon Black, as well as other tools, but they were not being used to the same degree. I think that we were using Carbon Black for white-listing applications.

    I also spent a lot of time using Nessus, which is a vulnerability scanner. I would look at scans to see what kind of vulnerabilities were present, and patch management updates with other teams.

    How was the initial setup?

    I was not there for the initial setup, but what I did learn was that the implementation team came in and worked with our engineering team. They set it up and then our team verified that all of the endpoints where there and that we had the visibility we needed for all of the subnets in all of the locations.

    When I spoke with my teammate, I was told that it was pretty much straightforward and out of the box. The fact that it is a cloud-based deployment made it easier, too.

    What's my experience with pricing, setup cost, and licensing?

    Our licensing fees were between $50,000 and $60,000 per year, which was pretty expensive for a small business. It is not a one-time payment. Any upgrades that you want to do, you're going to have to pay multiple times.

    What other advice do I have?

    My advice for anybody who is implementing CrowdStrike Falcon is to get in touch with the vendor and then follow best practices. They have a lot of documentation and everything is there. For the most part, I would suggest looking at the technical support documentation first and then contacting a representative at the vendor to continue the process.

    Most companies have it integrated with the SIEM and with their ticketing system, although I did not use it in that capacity because it costs more money.

    Most of the time, you're not going to have to lay a finger. Once it finds an infected file, you might have to reboot the computer if it can't immediately remove it, or other such minor stuff. In general, however, it's never given me any issues and it's never given me a headache. Overall, it's very straightforward and just one tool out of the whole.

    I would rate this solution a nine out of ten.

    Which deployment model are you using for this solution?

    Public Cloud
    Disclosure: I am a real user, and this review is based on my own experience and opinions.
    PeerSpot user
    Sr. IT Support Executive at a hospitality company with 1,001-5,000 employees
    Real User
    Great online learning and flawless endpoints but takes a while to scan
    Pros and Cons
    • "Their endpoint is pretty flawless. There is no lag on the machines at all. Even though I have a good overview of all the machines, that's pretty much the most valuable feature of CrowdStrike Falcon."
    • "It does take more time to scan than other solutions."

    What is our primary use case?

    We primarily use the product as a security solution.

    What is most valuable?

    Their endpoint is pretty flawless. There is no lag on the machines at all. Even though I have a good overview of all the machines, that's pretty much the most valuable feature of CrowdStrike Falcon. 

    The machines are flawless. They don't have any issues. There I don't even recognize the machines which are on endpoints. Even when I go to the console to check these machines, they are working on a very good level, even though the wireless migration should detect those aspects. 

    The AI features are pretty good.

    They've recently introduced more webinars that make remote learning of the solution very easy. For people such as myself, or even a company looking to develop their skillsets and interested in better understanding the cloud, providing good web courses is really helpful.

    What needs improvement?

    I'm new to the solution. Currently, I'm comparing it to other EDR solutions to see if anything is missing, however, I'm still learning the ins and outs of the product.

    It may be due to the fact that I am new, however, I'm having trouble understanding their licensing.

    It does take more time to scan than other solutions.

    The solution should continue to make the learning curve as short as possible by providing even more training and documentation.

    For how long have I used the solution?

    I've been working with the solution for two months. I recently joined my company and they mostly prefer using CrowdStrike Falcon. The solution is pretty new to me.

    What do I think about the stability of the solution?

    The stability of the solution is excellent, especially in a market like India.

    What do I think about the scalability of the solution?

    The product is very scalable. The solution can scale well, especially for small setups looking to expand out in the future.

    How are customer service and technical support?

    If they're having an issue, we tend to stick to the team and occasionally reach out to the support team of Falcon CrowdStrike.

    I've never directly been in contact with the technical support team, however, my colleagues have. I'd say that overall we are satisfied with their level of service. Typically, their technical support team will give us direct intel and then our internal team with resolve the issue, so it's a true partnership.

    Also, during the pandemic, they've provided everyone with lots of webinars to help their clients understand the solution better. For me especially, being anew user, I'm benefitting from this new level of service.

    Which solution did I use previously and why did I switch?

    We've used different solutions in the past. It really depends on the environment. That typically dictates which solution we would implement. We use, for example, McAfee as well. I personally have worked with Amnesia.

    When it comes to Amnesia, initially I was able to employ them on my on-premise machine. I have installed Falcon on the cloud and infrastructure, however, I haven't dealt with the on-premise deployment. 

    You can use Amnesia with McAfee. Apart from that you also have a provision for signing with McAfee and using their host software and the server software and their media solution and placing those onto an on-premise machine or onto a particular server and you would have the ability to administrate from there. That's more for a company that is into privacy and doesn't want to share their data on a cloud.

    How was the initial setup?

    The solution isn't complex in terms of setup. It's very straightforward, actually.

    I'm sure that for small environments or a company that may scale up, the installation would be minimal. It wouldn't be a standard installation, however, we're able to implement rather easily in small environments.

    What's my experience with pricing, setup cost, and licensing?

    The solution is much more costly than other cloud or on-premises solutions. However, it offers good stability, so if a client can afford it, we tend to recommend it as an option.

    Which other solutions did I evaluate?

    I'm currently checking other EDR solutions to see what is on offer. Clients are asking about McAfee and Symantec, so I am looking at those as options.

    What other advice do I have?

    I'm unsure which version of the solution we are using.

    I'm currently practicing my skills on this EDR solution. I have worked with this software and I've already collaborated with my seniors who are currently experts on this particular product. I'm getting pretty good help. 

    Most of our clients have their own infrastructure which is mostly on the cloud. They have their own solid, robust infrastructure. When it comes to small environments that are currently adapting to the cloud, CrowdStrike could be a great opportunity. The solution, for example, doesn't require a minimum installation. It can work well for very small companies as well as larger organizations.

    If a company has the financial means, we tend to recommend this product. There are great security features on offer that are much better than other options in India at this time.

    I'd advise companies considering this solution to check their resources. They have to choose the option between being on-premise and the cloud option. They need to try and run it before adopting any solution. It's important also to consider security and monitoring for threats.

    Overall, I'd recommend companies study their environment and check and compile an e-solutions calendar. There's a lot of them. Microsoft has provided a 99GB advanced dataset collection and it is on the cloud.

    I'd rate this product seven out of ten overall. While I've never had any problems with it, there are just so many other options on the market.

    Which deployment model are you using for this solution?

    Public Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Microsoft Azure
    Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
    PeerSpot user
    Buyer's Guide
    Download our free CrowdStrike Falcon Report and get advice and tips from experienced pros sharing their opinions.
    Updated: April 2024
    Buyer's Guide
    Download our free CrowdStrike Falcon Report and get advice and tips from experienced pros sharing their opinions.