Overview
Product Information on CrowdStrike Falcon
What is CrowdStrike Falcon?
CrowdStrike Falcon Pricing
CrowdStrike Falcon Product Images


Overall experience with CrowdStrike Falcon
“Seamless Deployment and Strong Detection Capabilities Highlight Crowdstrike Experience”
“AI Detection and Threat Intelligence Shine, but Cost Might Be Prohibitive”
Badges
Endpoint Protection Platforms
About Company
Company Description
CrowdStrike is a recognized entity in the cybersecurity space, specializing in enterprise risk management through the innovative application of technology. The company focuses primarily on protecting essential business risk areas such as endpoints, cloud workloads, identity, and data. Employing the state-of-the-art CrowdStrike Security Cloud and advanced AI technology, the firm provides effective solutions. Its CrowdStrike Falcon platform uses real-time indications of attack, threat intelligence, telemetry enhanced from diverse enterprise sources, and evolving adversary knowhow for high-grade detection, automated protection and healing, advanced threat tracking, and efficient vulnerability visibility. The Falcon platform, designed in the cloud with a singular lightweight-agent architecture, offers swift deployment, unique protection and performance, and reduced complexity. Therefore, CrowdStrike delivers a significant value proposition right from the beginning.
Company Details
Key Insights
A Snapshot of What Matters - Based on Validated User Reviews
User Sentiment About CrowdStrike Falcon
Reviewer Insights for: CrowdStrike Falcon
Deciding Factors: CrowdStrike Falcon Vs. Market Average
Performance of CrowdStrike Falcon Across Market Features
CrowdStrike Falcon Likes & Dislikes
The ability to detect novel malicious and anomalous behavior on endpoints was a critical factor in our selection. Crowdstrikes cloud-based telemetry analysis enables rapid innovationnew tactics and techniques discovered in the wild are quickly addressed, often within hours. This is a major advantage over legacy signature-based protection, which may only update daily. Response, innovation, and monitoring improvements must be measured in hours, not days. Falcon has proven highly effective at detecting advanced threats and suspicious activity. Ive used Red Team tools, especially Stratus Red Team (by Datadog), to verify detection of complex attack simulations, like creating a backdoor user. These tests offer a strong end-to-end assessment of our SOC processes, from alerting through log analysis and escalation. The administrator experience for investigating alerts is excellent; the interface is clean and intuitive, making it easy to trace events leading to an alert and determine the right response. While price is important, so are market share and innovation. Integrations are vital for maximizing value, and Crowdstrike connects seamlessly with our ticketing system, SIEM, SOC, and other endpoint health sources. Crowdstrike has addressed feedback such as enabling searches by device namea previous gap, since alerts often reference device names rather than unique IDs. The ability to create department-focused protection profiles is extremely useful, letting us apply stricter monitoring or more aggressive protection for sensitive departments like finance, while roles with less sensitive data, like marketing interns, receive baseline protection. This allows for tailored rules based on departmental risk and data classification. I havent observed Crowdstrike agents negatively impacting endpoint performance, and in terms of capabilities, I dont know of any tool doing a better job right now.
Read Full ReviewCrowdStrike Falcon stands out with its lightweight, cloud-based agent that provides real-time threat prevention and greater visibility. Its AI detection, easy scalability and integration with Falcon's threat intelligence simplify security tasks. With a user-friendly interface and low impact on performance, it's a top choice for effective endpoint protection in today's businesses. I highly recommend this product for business that have many endpoints.
Read Full ReviewWhat I like most about CrowdStrike Falcon is its proactive detection and rapid response to threats. The combination of real-time analysis, process behavior and cloud-based protection allows you to identify even unknown or fileless attacks that other traditional solutions could miss. For example, Falcon once detected suspicious activity on an endpoint that was running a legitimate script modified by an attacker. The platform automatically blocked the malicious execution and generated a detailed report with recommendations on how to enforce application policy, allowing the security team to remediate the situation without impacting operations. Additionally, the centralized interface and clear alerts make managing and monitoring all endpoints much simpler and more efficient. This gives me confidence that our devices are constantly protected without the need for constant manual intervention.
Read Full ReviewMy primary concern with the product relates to the shoot themselves in the foot incident, an outage that caused significant disruption. This incident led to questions from senior leadership regarding whether we should consider switching away from Crowdstrike, given its very large impact, even affecting global air travel for a few hours. It is important to note that this was a Windows Crowdstrike outage, not a Linux Crowdstrike outage. This distinction is significant because it highlights the inherent fragility of the Windows operating system, where a single file change can lead to a blue screen of death loop, often requiring manual intervention to restore functionality. In my view, Microsoft bears a share of the blame for this outage due to the design of their operating system. Crowdstrike, to their credit, acknowledged this as a root cause analysis and published commitments to prevent similar occurrences in the future. Their stated actions include more regression testing, automated testing, and Quality Assurance (QA) of changes. While the incident was disruptive, the company's response and commitment to preventing recurrence were positive
Read Full ReviewIt has a high cost barrier for small businesses, relying heavily on its ecosystem might lead to vendor lock-in, and it has fewer third-party integrations which can be tough in mixed environments.
Read Full ReviewWhat I like least about CrowdStrike Falcon Endpoint Protection is that, although the platform is very powerful, some reports and alerts can be too technical for non-specialized personnel. For example, when an alert is generated about advanced suspicious behavior, the report includes many details of processes and scripts that require in-depth knowledge to interpret correctly. This can slow down decision making if the team receiving the alert is not fully familiar with the terminology. Another minor point is that, at first, configuring certain advanced policies can be a bit complex, especially for organizations that do not have a dedicated security team or experience in PPE. However, these are minor aspects compared to the overall value and effectiveness of the platform.
Read Full ReviewTop CrowdStrike Falcon Alternatives
Peer Discussions
What Your Peers Are Saying About CrowdStrike Falcon
CrowdStrike Falcon Reviews and Ratings
- Adjunct Professor10B+ USDIT ServicesReview Source
Seamless Deployment and Strong Detection Capabilities Highlight Crowdstrike Experience
My overall experience has been excellent. As a previous customer for several years, I have brought Crowdstrike into several organizations. The main need has been to detect novel malicious and anomalous endpoint behavior. After evaluating several vendors, Crowdstrike was the clear winner. Key factors included the administrator interface, which is clean and intuitive for investigating alerts. This made it easy to track event sequences and determine responses to anomalies. While price was important, we also considered market share, innovation, and integrations with tools like our ticketing system, SIEM, and SOC, maximizing our investment. Measuring ROI is difficult, but the product has delivered value. It effectively handles events, quarantines malicious files, and prevents incidents, thus avoiding significant costs from investigations and threat spread. As a CISO, I have peace of mind knowing I can verify its monitoring and blocking. For example, I tested detection by downloading Mimikatz on a test machine, confirming the agent’s effectiveness. Deployment and onboarding were seamless thanks to mobile device management, enabling zero-touch installation of Crowdstrike agents and removal of our previous solution, migrating all devices in two weeks. The agent worked well with our unattended installation method and caused no compatibility issues with legacy systems; only offline devices (due to user leave) were missed—a common issue for any software. Crowdstrike Falcon scales well; it can support thousands of endpoints, and at around 500 now, I foresee no scaling issues as we grow. Its ability to detect advanced threats and suspicious behavior is very high. I’ve used Red Team tools like Stratus Red Team to simulate complex attacks (e.g., creating backdoor users, deploying scenarios across servers, laptops, and cloud). These tests validate its detection and provide a full assessment of our monitoring, SIEM, SOC, log analysis, and escalation processes. - IT ASSOCIATE<50M USDServices (non-Government)Review Source
Powerful, Lightweight with Proactive Threat Detection and Clear Endpount Visibiliy
My overall experience with CrowdStrike Falcon Endpoint Protection has been very positive. The platform is light on endpoints and does not affect device performance, which has facilitated its mass deployment without end users noticing interruptions. A concrete example: during a deployment to remote employee laptops, Falcon detected a script-based malware attempt that had not been identified by our previous solution. The alert quickly reached the central dashboard, and the security team was able to isolate the affected computer, analyze the behavior, and eliminate the threat in less than an hour. On a day-to-day basis, the Falcon console provides complete endpoint visibility and facilitates incident investigation, which has significantly reduced response time and manual workload for our security team. Overall, it has been a reliable and efficient tool to protect our endpoints and minimize - Operations engineer<50M USDIT ServicesReview Source
Automatización y personalización destacan en CrowdStrike pese a desafíos de documentación
Mi experiencia con CrowdStrike ha sido muy retadora pero a su vez gratificante. Es una herramienta muy efectiva para asegurar equipos tanto computadoras como servidores. Adicionalmente, estoy feliz con mi experiencia debido a que he aprendido mucho durante el camino en las implementaciones realizadas, no solo aprendiendo cosas específicas de CrowdStrike sino temas generales de ciberseguridad. - Engineering Manager<50M USDIT ServicesReview Source
Despliegue Ágil y Sensor No Invasivo Destacan Entre las Ventajas de Crowdstrike
El producto de Falcon Crowdstrike me parece de las plataformas mas amigables e innovadoras para los usuarios finales, una de las bondades que tenemos con el producto es el modo Flex que nos permite que el usuario final tenga mas posibilidades de ampliar su licenciamiento, la manera en que no es invasivo el sensor de Crowdstrike en Workstations, favorece en el tema del despliegue que es de los mas agiles y rápidos que yo eh visto a comparación de otras marcas. - INFOSEC ENGINEER50M-1B USDHealthcare and BiotechReview Source
Crowdstrike is a recommendation for medium to large enterprises.
I have been using Crowstrike's Falcon Platform for over 5 years now. It is great at what is does and while the Falcon Platform itself can be pricey (though about on par for the competition), additional tools are included or very affordable (SIEM/Log Collector or CSPM for example). It's very easy to deploy, especially in a modern setting. The functionality within the tool is exactly what our team is looking for - EDR, isolation, remote response, and more.



