Skip to main content
TrustRadius
CrowdStrike Falcon

CrowdStrike Falcon

Overview

What is CrowdStrike Falcon?

CrowdStrike offers the Falcon Endpoint Protection suite, an antivirus and endpoint protection system emphasizing threat detection, machine learning malware detection, and signature free updating. Additionally the available Falcon Spotlight module delivers vulnerability assessment with no performance impact, no additional agents,…

Read more
Recent Reviews

Why CrowdStrike

9 out of 10
May 31, 2024
Incentivized
We use a company called Act Zero as an XDR solution provider. The tool they use is CrowdStrike Falcon and we use it and they use it to …
Continue reading

Best EDR Tool

10 out of 10
May 30, 2024
Incentivized
CrowdStrike Falcon is the best in class product with the ease of use and implementation. CrowdStrike Falcon sensors are installed in all …
Continue reading
Read all reviews

Awards

Products that are considered exceptional by their customers based on a variety of criteria win TrustRadius awards. Learn more about the types of TrustRadius awards to make the best purchase decision. More about TrustRadius Awards

Popular Features

View all 7 features
  • Endpoint Detection and Response (EDR) (75)
    9.3
    93%
  • Malware Detection (75)
    9.2
    92%
  • Infection Remediation (73)
    8.8
    88%
  • Centralized Management (76)
    8.6
    86%

Reviewer Pros & Cons

View all pros & cons
Return to navigation

Pricing

View all pricing

Falcon Pro

$6.99

Cloud
per endpoint/month (for 5-250 endpoints, billed annually)

Falcon Enterprise

$14.99

Cloud
per endpoint/month (minimum number of endpoints applies)

Falcon Premium

$17.99

Cloud
per endpoint/month (minimum number of endpoints applies)

Entry-level set up fee?

  • No setup fee
For the latest information on pricing, visithttps://www.crowdstrike.com/endpoint…

Offerings

  • Free Trial
  • Free/Freemium Version
  • Premium Consulting/Integration Services
Return to navigation

Features

Endpoint Security

Endpoint security software protects enterprise connected devices from malware and cyber attacks.

8.7
Avg 8.4
Return to navigation

Product Details

What is CrowdStrike Falcon?

CrowdStrike offers cloud-delivered endpoint protection. CrowdStrike aims to revolutionize endpoint protection by unifying next-generation antivirus (AV), endpoint detection and response (EDR), and a 24/7 managed hunting service — all delivered via a single lightweight agent.

The vendor states many of the world’s largest organizations use CrowdStrike, including three of the 10 largest global companies by revenue, five of the 10 largest financial institutions, three of the top 10 health care providers, and three of the top 10 energy companies.

CrowdStrike Falcon Features

Endpoint Security Features

  • Supported: Anti-Exploit Technology
  • Supported: Endpoint Detection and Response (EDR)
  • Supported: Centralized Management
  • Supported: Infection Remediation
  • Supported: Vulnerability Management
  • Supported: Malware Detection

CrowdStrike Falcon Video

CEO George Kurtz discusses challenges organizations face using legacy cybersecurity solutions & how easy, fast & effective the CrowdStrike Falcon platform is by comparison.

CrowdStrike Falcon Integrations

CrowdStrike Falcon Technical Details

Deployment TypesOn-premise, Software as a Service (SaaS), Cloud, or Web-Based
Operating SystemsWindows, Linux, Mac
Mobile ApplicationApple iOS, Android
Supported LanguagesEnglish, Japanese

Frequently Asked Questions

CrowdStrike offers the Falcon Endpoint Protection suite, an antivirus and endpoint protection system emphasizing threat detection, machine learning malware detection, and signature free updating. Additionally the available Falcon Spotlight module delivers vulnerability assessment with no performance impact, no additional agents, hardware, scheduled scans, firewall exceptions or admin credentials.

Reviewers rate Endpoint Detection and Response (EDR) highest, with a score of 9.3.

The most common users of CrowdStrike Falcon are from Enterprises (1,001+ employees).
Return to navigation

Comparisons

View all alternatives
Return to navigation

Reviews and Ratings

(240)

Attribute Ratings

Reviews

(1-25 of 79)
Companies can't remove reviews or game the system. Here's why
May 31, 2024

Why CrowdStrike

Score 9 out of 10
Vetted Review
Verified User
Incentivized
We use a company called Act Zero as an XDR solution provider. The tool they use is CrowdStrike Falcon and we use it and they use it to help protect our environment. We wanted to provide greater security across our enterprise and evalauted different soltuions. We liked CrowdStrike and that is why we chose Act Zero - they were using tool we liked.
  • Protects our endpoints
  • Provide data that is actionable
  • Comprehensive toolset
  • Better looking dashboard - better graphics
  • Better reporting capabilities
It is able to really identify the true issues we have with our endpoints. There is not a lot of noise with their tool. They provide a comprehensive toolset and they keep up to date in regards to the latest security scams/issues to protect our environment

The reporting and dashboards could be improved to provide more clarity and ease of understanding of the metrics
May 30, 2024

Best EDR Tool

Score 10 out of 10
Vetted Review
Verified User
Incentivized
CrowdStrike Falcon is the best in class product with the ease of use and implementation. CrowdStrike Falcon sensors are installed in all our computers, servers. Easy to use and well optimized. It automatically detects any threats or files when any external source is connected, or any unknown file is downloaded from the web to keep secure the computer.It help to assure the right protection against hacker attacks and generally malicious activity which other tools wont detect like - Lateral movement, Kerberoasting, AD recon attacks etc.
The solution is almost transparent for the users and the machines but the effectiveness against the malicious activities is on the highest levels, the false positives are also very low in according the total number of blocks against bad links, bad services and bad files.
  • Infection remediation
  • Sandboxing feature
  • Broadview on detection
  • Single agent and console
  • Network Containment
  • Interactive Sandbox
  • Threat hunting
CrowdStrike Falcon was able identify activity for kerberoasting which is critical as most of tools are not able to identify.Also its capability to DLL sideloading/hijacking is commendable.Interactive sandbox has helped a lot for getting to see how malware works. Great real-time visibility and reaction to all the endpoints.Offers a lightweight agent.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
CrowdStrike Falcon is the Extended Detection and Response (XDR) solution we use to secure our corporate assets and production servers. It single-handedly gives us the necessary protection and visibility into all our assets. I am security engineer and I use CrowdStrike Falcon everyday. My scope is to use it to investigate abnormalities in our assets and alerts it generates. The alerts comes with a great amount of details which is mostly helpful. Furthermore, it helps us keep an eye on unwanted applications installed by users and help get rid of it.
  • The detection is CrowdStrike Falcon is quite accurate. Based on how we configured we do get false positives but as per my experience it barely missed anything that is confirmed malicious. The way it understands the context of an artifact and classifies it being benign or malicious is brilliant.
  • CrowdStrike Falcon Real-Time-Response console is very powerful and usable too. It doesn't feel much different whether the endpoint that is being remote-accessed is using Mac, Linux, or Windows. It is quite resilient to spotty connections too.
  • The agents installed on the machines are quite silent and can be set to unobtrusive both in terms of computation and notifications to user.
  • The interoperability with other AVs or EDRs is amazing too. I have seen many instances where it worked together so well without contradicting that it was hard to remember the existence of the second EDR. It only fired up when the second EDR tried to access some sensitive locations.
  • The UI although a little complicated got many things right. It handles large amount of asset information quite comfortably. Doesn't lag or freeze the browser for a regular computer too.
  • CrowdStrike Falcon keeps on changing the UI of the Falcon Management Console quite frequently. It is very hard to create instructional documents as they get deprecated that fast.
  • They lack some basic AV features like running an On-Demand Scan for anything other than some Windows versions.
  • The alerts especially the Machine Learning ones sometime give too much information to investigate and doesn't point out what in particular is suspicious. It causes us to waste time looking up hundreds of DNS, IP, etc to find the culprit
  • They don't have a manual way of quarantining a file which is again basic.
  • The behavior-based rule creation got a sharp learning curve as it is based on Logscale/Humio query language. Need a good query builder.
CrowdStrike Falcon is good for a mid-large size industry where there are many engineers and analysts are working. It got many modules and a lot of data to analyze and correlate with other tools. Also, the price vs features get justified for a mid-large company. The system is also designed for users with high technical skill level as it has a steep curve. Due to its not so good ML based detection engine it is also suitable for environment with not many lab/developer activity going on as it creates a lot of noise. The policy granularity isn't as detailed as in some other competitors like Cortex XDR.
It is not so well suited for small companies with small security team as it got too many features to manage and mostly an overkill as it will only operate on a small asset-set. Plus it is not cheap. It is also not suited for companies that does large scale development and testing involving network access or File manipulation in their environment simply because the policy options aren't much granular to tune accordingly. Cortex is definitely better in that aspect.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
The Falcon agent is installed in all our computers, servers, tablet and mobile phones. It help to assure the right protection against hacker attacks and generally malicious activity, we also adopted the identity protection module to complete the user protection. The solution is almost transparent for the users and the machines but the effectiveness against the malicious activities is on the highest levels, the false positives are also very low in according the total number of blocks against bad links, bad services and bad files
  • Centralized efficient management
  • Infection remediation
  • Malware detection
  • Cloud native architecture
  • Limited coverage to endpoints
  • Legacy os support is very limited
  • Linux machines support is limited
In a scenario with endpoints located worldwide, it can assure to all, the same necessary security level in real time and the highest efficiency for servers and computers. If there are too many legacy operating systems linked to industrial machines it has weakness that need to be covered with different solutions or architectures.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
CrowdStrike Falcon provides end-user security, as well as data security, and sandboxing further allowing security researchers and analysts to dig into the malware some. It is an over security solution, or stack, that allows companies to use one platform rather than multiple. What I like most though is the compliance assessment. CrowdStrike Falcon recently added HIPAA to the list of compliance frameworks that it will test your environment against so that you can see how your companies security compares to different compliance standards. For example, I need to be hipaa compliant, so I can see how my company‘s security compares to hipaa compliance requirement and if it is not hipaa compliant, it will show me what to fix and how to fix it.
  • Compliance Audit
  • End user security
  • Data protection
  • The user interface can be challenging to navigate from time to time until you get the hang of it.
CrowdStrike Falcon is a robust security suite that would do well with any company, but it is geared more towards enterprises.
Score 7 out of 10
Vetted Review
Verified User
Incentivized
CrowdStrike is used for endpoint detection and response capability as part of our standard operating system. This ensures that anomalous activity on end user compute devices is detected and arrested before it can propogate and impact the network. Further, it allows for investigtion and response by providing a detailed map of activity to isolate, understand and identify affected systems.
  • Detecting suspect activity at the endpoint
  • Stopping potentially damaging network activity by isolating an endpoint
  • Tracing activity throughout the network to assist with investigation and remediation
  • Limitations in ability to make detailed rulesets to address edge cases
  • False positives continue to be an issue
  • Can be noisy leading to alert fatigue
The solution is relatively good as a set and forget, particularly if being operated by a small team. Similarly, the system will allow for a level of active monitoring and integrating into MSSP services; however there is a point at which the level of sophistication drops off, especially when heading down a path of automated response, etc.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
needed a new EDR as the current on was best at the time and there are way better for the same or better price point. Since our contract was up and the features that was present in the current EDR was outdated and not the best out there. We took a step back and had a look at what was on the market and came down to CrowdStrike as a short list candidate
  • better intrusion detection of external devices
  • better dash board
  • provides suggested best practices for people to follow
  • the granularity of role permissions
not the cheapest solution but the cost saving for that extra bit of knowhow that fills the gap between our old EDR and CrowdStrike is well worth the money. we modern protection is the current cost of doing business and will hopefully pay off in the extra layer of protection.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We used CrowdStrike Falcon as our main XDR platform within our organisation.
We can investigate/remediate and run scripts when we suspect any anomalies on the network. Using event search we are able to analyse events and devices on the network. We have an easy way of finding EOL devices through the asset dashboard. I can analyse user accounts and ensure that there are no strange accounts with passwords over the set period.
  • Event Search
  • Searching for unmanaged assets
  • Tagging for easier searching
  • Providing details on devices such as recently connected users and previously connected networks.
  • UI is cumbersome at times
  • Dashboard occasionally takes a while to load
  • Support is somewhat delayed
I believe CrowdStrike Falcon is great for teams who have a small security team with no 24x7 coverage. Using their Complete add-in you are covered by the 24 hours a day 7 days a week 365 days a year. This is all with a 4 minute window to remediate issues should one occur.
Chris Stutzman | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Incentivized
We use CrowdStrike Falcon as our exclusive EDR platform. CrowdStrike Falcon has been amazing! Not only is the application extremely lightweight, but it also catches all anomalous activity and can immediately stop it. It also gives you excellent visibility on the host machine and what has transpired. It has brought our organization great peace of mind!
  • Stopping malicious activity.
  • Provides great visibility into events.
  • Works as an extension of our IT team.
  • In dashboard filtering for all records, without needing to export.
CrowdStrike Falcon is well-suited for business that wants to take their virus protection to the next level. It is also great for IT departments that are smaller, or run leaner and don't have as much time to spend on endpoint security.
Humayoon Khan | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Incentivized
I use CrowdStrike Falcon as the main source of monitoring threats originating from operating systems used by our servers, workstations, staff laptops and guest users machines.
Our organization being a university where thousands of students and hundreds of staff turn up daily, puts our critical assets at risk of being compromised by an insider. CrowdStrike Falcon helps us identify the source of a threat accurately, blocks the triggering file or script before it can cause damage. The AI / ML based detections are very helpful because they catch threats that other vendors may fail at. The scope of our use case is endpoint monitoring and threat management.









  • AI / ML based malicious activity detections
  • Detection information presented clearly and concisely on dashboard
  • Easy filtering of detections on hostname, detection name, severity, date, time, hash, technique etc
  • traces full process chain instead of just showing the source file or script which really helps in tracing the main security concern of machine
  • If some malicious app uses microsoft's signed binary like onedrive, cmd, wscript CrowdStrike would tag the microsoft binary as malicious and fails to provide the actual file that tried to execute these.
  • For example if a
  • malware.exe tries to run this command
  • cmd /c bitsadmin
  • CrowdStrike would tag cmd or bitsadmin as malicious and does not mention malware.exe at all sometimes
  • There are two different dashboards (updated and deprecated) which causes confusion among my team, all must be on same page and use single dashboard.
  • Support is very slow in responding to problems and depend on automated bots which really frustrates when a major issue arises.
It is best suited for organizations that have lot of machines and users, since CrowdStrike agent-based deployment is easy to manage and maintain.
CrowdStrike Falcon may be less appropriate for smaller organizations due to its cost, also a technical support team is required to install / remove agents from machines and monitor the dashboard for detections daily.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
It's been used as ERD solution. Great ability to achieve network segmentation via the host firewall. We also used the IdP module and Horizon for cloud security. Data protection is a product we're still testing but looking promising. The visibility and telemetric getting from each sensor is great and the CrowdStrike Falcon complete visibility is pretty reliable.
  • Network segmentation for host and servers using the firewall.
  • USB block by the sensor.
  • IDP alerts from our domain and different identities
  • Support response.
  • Sensor stability, sometimes the sensor fails on computers
  • Improve menus
Incident response containment works really well, we have contained a couple of machines during incidents and it works pretty well. Also telemetry from different devices is useful. Identity protection alerting also works very well for us, we get tickets and calls from CrowdStrike Falcon when users connects from suspicious countries.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
CrowdStrike is the corporate protection against known (and unknown) malware and bad people.
We were using other solution and we were forced to change it really quick.
The process has been really simple, and for the moment we are really happy with how it works and how it performs.
It can be used both on computers and servers, and it supports quite good both Windows & Linux
  • Protection against all kind of malware
  • Performance
  • Real Time Response
  • Custom IOC Management
  • Notifications to end users
  • Tray Icon
It can be used in combination with your current AV solution or even as an standalone product.
It seems to work pretty well and protects you from almost everything tested.
Maybe RFM can be improved, specially with patch Tuesdays, but nothing to worry too much about.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
  • Default endpoint protection tool on all servers and laptops.Laptops
  • local firewall, and device lockdown (USB drives blocked)
  • Spotlight
  • vulnerabilities
  • Identity Protection - lateral movement, service account protection, insider threat
  • Threat Intel / Sandbox
  • EDR
  • Threat Intel
  • USB blocking
  • Complete team - triage and escalation
  • Better reporting
CrowdStrike Falcon is an all in one solution - One agent, low impact
James Dilley | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We deployed CrowdStrike Falcon across our organization to strengthen our cyber defenses. The use cases ranged from endpoint protection to threat intelligence, covering a broad spectrum of security needs. The deployment was organization-wide, safeguarding endpoints and critical systems against evolving cyber threats. The reduction in manual tasks and real-time updates contribute to time savings for our security team.
  • CrowdStrike Falcon's next-gen endpoint protection consistently outperforms traditional solutions.
  • The cloud-native architecture ensures seamless scalability and real-time updates, eliminating the need for manual interventions.
  • CrowdStrike Falcon's threat intelligence and hunting capabilities are unparalleled.
  • The advanced features may pose a learning curve for users unfamiliar with modern cybersecurity tools.
  • A more transparent pricing model could assist in budget planning.
  • Expanding compatibility with a broader range of security solutions would be advantageous.
I would highly recommend CrowdStrike Falcon to any organization serious about bolstering its cybersecurity defenses. The platform's effectiveness in threat detection, proactive mitigation, and scalability make it a valuable asset in today's ever-evolving threat landscape. Despite some learning curves and integration challenges, the return on investment and the overall security enhancement justify its strong recommendation.
Score 8 out of 10
Vetted Review
ResellerIncentivized
We use Crowdstrike to protect the company's servers and keep them safe from as many threats as possible.
  • Known malware detection.
  • Software detection with malicious behavior.
  • Identification of processes with anomalous behavior.
  • User management in cases where the service is provided as an MSP.
  • Clarity in console menus.
  • Integration with third-party EPP.
It is suitable for large companies with complex organizational structures that are managed by the company's own staff or by Crowdstrike. It is less suitable for small companies due to its high initial costs, especially if it is offered as a service from an MSP, since the management of MSP users is complicated and, in some cases, it cannot even be a real vision of the users that can manage each company.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
We use CrowdStrike Falcon as our Security Solution for the Clients an the Server. Also we do vulnerability management with CrowdStrike Falcon. We also use the Identy Modul to secure oour Active Directory Accounts. We also use the multi factor autorisation of CrowdStrike Falcon. In the Future we plan to use CrowdStrike Falcon in our cloud envirements.
  • prevention
  • vulnerability management
  • sensor is very small
  • Client tray
  • On demand Scans
The deployment is very easy and very fast. You don't need an enviremont in your own data center. It is easy to use and you have a good on demand online traning. You can't see the status on the client easy. There would be a tray or somethimg like this very good.
November 06, 2023

CrowdStrike Falcon Review

Score 8 out of 10
Vetted Review
Verified User
Incentivized
We use CrowdStrike Falcon to detect potential malicious activity on both end user computers and servers.
  • Detects suspicious activity
  • Shows exact location and processes involved in suspicious activity
  • Isolate computers with suspicious activity
  • Setting up on MacOS was more complicated than expected (as kernel extensions were being phased out)
  • Remediation is not always as automated as some other systems (e.g. Malware Bytes)
CrowdStrike has detected some malicious activity on computers that it has stopped successfully. It works on Windows, MacOS, and Linux which is helpful for organizations with multiple OS's. It hasn't always been as great at preventing more minor adware or annoyance software. It can still sometimes be difficult to figure out exactly what a user was doing that triggered an alert.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
CrowdStrike Falcon is used as an EDR agent and we also leverage Falcon Complete services for additional security operations assistance. Additionally, EDR logs are combined with SIEM logs to gather better insights about a security event which may or may not qualify for additional deep dive research. CrowdStrike Falcon is customizable and has a robust threat intelligence inbuilt.
  • Endpoint Detection and Response
  • Great communication to the security operations teams for triaging a security event
  • Customizable policies which can be globally applied
  • Ease of integration with SIEM
  • Ability to query endpoint logs within the Falcon portal itself
  • Sandbox can get better in my opinion.
  • Detection of source of infection in case of lateral movements recommended
  • Browser based logs/ DNS queries for getting to the root of the issue
CrowdStrike Falcon can be treated as a single source for endpoint protection. With additional features, CrowdStrike Falcon has a strong use case for preventing malware infection in the infrastructure security ecosystem. CrowdStrike Falcon's complete helps get the MSSP capabilities for SOC detection and incident response from a league of experts.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We use endpoint protection, MFA anywhere and identity management to protect our organization. Falcon complete oversees all of the system to make sure we are protected at all times. We feel confident in the protection the platform provides and have nothing negative to say about the product. We have had great success.
  • MFA Everywhere to protect our systems from remote login connections.
  • Realtime endpoint protection that is updated regularly without intervention from our system administration team.
  • 24 x 7 x 365 monitoring of the system to provide protection at all times.
  • Walkthroughs of new features when added to the console.
  • Better instructions on how and where to add or change policies for various tools.
I have been in the industry for close to thirty years and this has been one of the best endpoint protection programs I have ever used. We feel confident as an organization that we are protected on the endpoints at all times. The Falcon Complete team is great for providing assistance whenever we need it.
November 01, 2023

CrowdStrike real review.

Score 10 out of 10
Vetted Review
Verified User
Incentivized
We use it to protect all of our computers and servers.
  • Malware detection.
  • Bad behaviour detection.
  • Support on old Operatives Systems.
Protecting Windows, Linux, and MAC Operative Systems from all kinds of threats. Not only alerting but also preventing, using behavior detection and file analysis.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
Fully Managed Security Service that investigates detections and either escalates or deals with them directly for us.
  • MDR
  • Vulnerability assessment.
  • Identity Protection.
  • Easier to use interface.
  • Log management.
  • Investigations
It is suited to small teams who require additional backup and assistance within the security area.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
We use CrowdStrike as an end-point protection application. We also use CrowdStrike's Identity Threat Protection module, which allows us to gain greater insight into and secure our end user by tying into our IAM solution. This helps us achieve our new cybersecurity goals of providing a primary focus on protecting user's identities and not putting the main focus on protecting endpoints. By implementing CrowdStrike Falcon Complete, we are able to monitor security for our endpoints and our user identities 24/7. This is a big plus for us as we are not staffed 24/7 and can rely on a reputable SOC from CrowdStrike to oversee and monitor security for all of our endpoints and our identities.
  • Protection of end points.
  • Protection of user identities.
  • Providing quick response to any identified security issues.
  • CrowdStrike can be on the more expensive side of end point and identity management, but it's worth it.
I feel CrowdStrike Falcon is well suited for anybody who takes securing their systems and employees safe. They have a $1 million breach policy, which helps give peace of mind that they stand behind their product and really believe in it. This was the big determining factor for us. Not because we needed the $1 million policy but because it shows how much they are willing to invest in their products as the best on the market.
August 26, 2023

Great product

Score 10 out of 10
Vetted Review
ResellerIncentivized
we use the product to protect computers and servers. We have a 7x24 soc service, crowdstrike allows us to detect, investigate and respond to incidents in a few minutes.decreased and the facilities for sharing information and research have allowed the soc to reduce response times.playbooks have made it possible to respond on other platforms
  • Identifícate IOA
  • Facilita to investigate
  • Playbooks
  • Vulnerability magnament
  • Logscale
  • Xdr
the mdr service is very good, the response and remediation capabilities work very well. The growth of the platform and the new modules show the continuous innovation that the product has.It could improve the responses to support tickets.
Score 9 out of 10
Vetted Review
ResellerIncentivized
CrowdStrike Falcon is installed on all endpoints and Server VMs at our end.It helps us to stop security breaches as well as prevent all types of attacks (including malwares, ransomwares and many other such attacks)
  • It helps us to stop security breaches as well as prevent all types of attacks (including malwares, ransomwares and many other such attacks)
  • It helps in Adversary Emulation Exercise
  • it helps in Red Team / Blue Team Exercise
  • should improve threat visibility
  • its overall TCO should be reduced
  • seamless integration with solutions like SIEM
It helps in Adversary Emulation Exercise.
It helps in Red Team / Blue Team Exercise.

Threat visibility is something where it is less appropriate.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We use Crowdstrike Falcon for the below points
1. To prevent Ransomware
2. Device Control
3. Protection of Workstations and servers
4. Advanced protection for Zeroday
4. To find malicious activities on systems
  • Overwatch feature is amazing
  • Accuracy to identify True Positive
  • Powerful AL based detection method
  • RFM issue
  • Certificate Pinning, older sensor versions stops communicating
  • Sensor Duplication
Unmatched AI capability to find security threats & seamless Customer Support
Return to navigation