Skip to main content
TrustRadius
CrowdStrike Falcon

CrowdStrike Falcon

Overview

What is CrowdStrike Falcon?

CrowdStrike offers the Falcon Endpoint Protection suite, an antivirus and endpoint protection system emphasizing threat detection, machine learning malware detection, and signature free updating. Additionally the available Falcon Spotlight module delivers vulnerability assessment with no performance impact, no additional agents,…

Read more
Recent Reviews

Why CrowdStrike

9 out of 10
May 31, 2024
Incentivized
We use a company called Act Zero as an XDR solution provider. The tool they use is CrowdStrike Falcon and we use it and they use it to …
Continue reading

Best EDR Tool

10 out of 10
May 30, 2024
Incentivized
CrowdStrike Falcon is the best in class product with the ease of use and implementation. CrowdStrike Falcon sensors are installed in all …
Continue reading
Read all reviews

Awards

Products that are considered exceptional by their customers based on a variety of criteria win TrustRadius awards. Learn more about the types of TrustRadius awards to make the best purchase decision. More about TrustRadius Awards

Popular Features

View all 7 features
  • Endpoint Detection and Response (EDR) (76)
    9.3
    93%
  • Malware Detection (76)
    9.2
    92%
  • Infection Remediation (74)
    8.9
    89%
  • Centralized Management (77)
    8.5
    85%

Reviewer Pros & Cons

View all pros & cons
Return to navigation

Pricing

View all pricing

Falcon Pro

$6.99

Cloud
per endpoint/month (for 5-250 endpoints, billed annually)

Falcon Enterprise

$14.99

Cloud
per endpoint/month (minimum number of endpoints applies)

Falcon Premium

$17.99

Cloud
per endpoint/month (minimum number of endpoints applies)

Entry-level set up fee?

  • No setup fee
For the latest information on pricing, visithttps://www.crowdstrike.com/endpoint…

Offerings

  • Free Trial
  • Free/Freemium Version
  • Premium Consulting/Integration Services
Return to navigation

Features

Endpoint Security

Endpoint security software protects enterprise connected devices from malware and cyber attacks.

8.7
Avg 8.4
Return to navigation

Product Details

What is CrowdStrike Falcon?

CrowdStrike offers cloud-delivered endpoint protection. CrowdStrike aims to revolutionize endpoint protection by unifying next-generation antivirus (AV), endpoint detection and response (EDR), and a 24/7 managed hunting service — all delivered via a single lightweight agent.

The vendor states many of the world’s largest organizations use CrowdStrike, including three of the 10 largest global companies by revenue, five of the 10 largest financial institutions, three of the top 10 health care providers, and three of the top 10 energy companies.

CrowdStrike Falcon Features

Endpoint Security Features

  • Supported: Anti-Exploit Technology
  • Supported: Endpoint Detection and Response (EDR)
  • Supported: Centralized Management
  • Supported: Infection Remediation
  • Supported: Vulnerability Management
  • Supported: Malware Detection

CrowdStrike Falcon Video

CEO George Kurtz discusses challenges organizations face using legacy cybersecurity solutions & how easy, fast & effective the CrowdStrike Falcon platform is by comparison.

CrowdStrike Falcon Integrations

CrowdStrike Falcon Technical Details

Deployment TypesOn-premise, Software as a Service (SaaS), Cloud, or Web-Based
Operating SystemsWindows, Linux, Mac
Mobile ApplicationApple iOS, Android
Supported LanguagesEnglish, Japanese

Frequently Asked Questions

CrowdStrike offers the Falcon Endpoint Protection suite, an antivirus and endpoint protection system emphasizing threat detection, machine learning malware detection, and signature free updating. Additionally the available Falcon Spotlight module delivers vulnerability assessment with no performance impact, no additional agents, hardware, scheduled scans, firewall exceptions or admin credentials.

Reviewers rate Endpoint Detection and Response (EDR) highest, with a score of 9.3.

The most common users of CrowdStrike Falcon are from Enterprises (1,001+ employees).
Return to navigation

Comparisons

View all alternatives
Return to navigation

Reviews and Ratings

(240)

Attribute Ratings

Reviews

(1-25 of 61)
Companies can't remove reviews or game the system. Here's why
May 30, 2024

Best EDR Tool

Score 10 out of 10
Vetted Review
Verified User
Incentivized
CrowdStrike Falcon is the best in class product with the ease of use and implementation. CrowdStrike Falcon sensors are installed in all our computers, servers. Easy to use and well optimized. It automatically detects any threats or files when any external source is connected, or any unknown file is downloaded from the web to keep secure the computer.It help to assure the right protection against hacker attacks and generally malicious activity which other tools wont detect like - Lateral movement, Kerberoasting, AD recon attacks etc.
The solution is almost transparent for the users and the machines but the effectiveness against the malicious activities is on the highest levels, the false positives are also very low in according the total number of blocks against bad links, bad services and bad files.
  • Infection remediation
  • Sandboxing feature
  • Broadview on detection
  • Single agent and console
  • Network Containment
  • Interactive Sandbox
  • Threat hunting
CrowdStrike Falcon was able identify activity for kerberoasting which is critical as most of tools are not able to identify.Also its capability to DLL sideloading/hijacking is commendable.Interactive sandbox has helped a lot for getting to see how malware works. Great real-time visibility and reaction to all the endpoints.Offers a lightweight agent.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
CrowdStrike Falcon is the Extended Detection and Response (XDR) solution we use to secure our corporate assets and production servers. It single-handedly gives us the necessary protection and visibility into all our assets. I am security engineer and I use CrowdStrike Falcon everyday. My scope is to use it to investigate abnormalities in our assets and alerts it generates. The alerts comes with a great amount of details which is mostly helpful. Furthermore, it helps us keep an eye on unwanted applications installed by users and help get rid of it.
  • The detection is CrowdStrike Falcon is quite accurate. Based on how we configured we do get false positives but as per my experience it barely missed anything that is confirmed malicious. The way it understands the context of an artifact and classifies it being benign or malicious is brilliant.
  • CrowdStrike Falcon Real-Time-Response console is very powerful and usable too. It doesn't feel much different whether the endpoint that is being remote-accessed is using Mac, Linux, or Windows. It is quite resilient to spotty connections too.
  • The agents installed on the machines are quite silent and can be set to unobtrusive both in terms of computation and notifications to user.
  • The interoperability with other AVs or EDRs is amazing too. I have seen many instances where it worked together so well without contradicting that it was hard to remember the existence of the second EDR. It only fired up when the second EDR tried to access some sensitive locations.
  • The UI although a little complicated got many things right. It handles large amount of asset information quite comfortably. Doesn't lag or freeze the browser for a regular computer too.
  • CrowdStrike Falcon keeps on changing the UI of the Falcon Management Console quite frequently. It is very hard to create instructional documents as they get deprecated that fast.
  • They lack some basic AV features like running an On-Demand Scan for anything other than some Windows versions.
  • The alerts especially the Machine Learning ones sometime give too much information to investigate and doesn't point out what in particular is suspicious. It causes us to waste time looking up hundreds of DNS, IP, etc to find the culprit
  • They don't have a manual way of quarantining a file which is again basic.
  • The behavior-based rule creation got a sharp learning curve as it is based on Logscale/Humio query language. Need a good query builder.
CrowdStrike Falcon is good for a mid-large size industry where there are many engineers and analysts are working. It got many modules and a lot of data to analyze and correlate with other tools. Also, the price vs features get justified for a mid-large company. The system is also designed for users with high technical skill level as it has a steep curve. Due to its not so good ML based detection engine it is also suitable for environment with not many lab/developer activity going on as it creates a lot of noise. The policy granularity isn't as detailed as in some other competitors like Cortex XDR.
It is not so well suited for small companies with small security team as it got too many features to manage and mostly an overkill as it will only operate on a small asset-set. Plus it is not cheap. It is also not suited for companies that does large scale development and testing involving network access or File manipulation in their environment simply because the policy options aren't much granular to tune accordingly. Cortex is definitely better in that aspect.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
The Falcon agent is installed in all our computers, servers, tablet and mobile phones. It help to assure the right protection against hacker attacks and generally malicious activity, we also adopted the identity protection module to complete the user protection. The solution is almost transparent for the users and the machines but the effectiveness against the malicious activities is on the highest levels, the false positives are also very low in according the total number of blocks against bad links, bad services and bad files
  • Centralized efficient management
  • Infection remediation
  • Malware detection
  • Cloud native architecture
  • Limited coverage to endpoints
  • Legacy os support is very limited
  • Linux machines support is limited
In a scenario with endpoints located worldwide, it can assure to all, the same necessary security level in real time and the highest efficiency for servers and computers. If there are too many legacy operating systems linked to industrial machines it has weakness that need to be covered with different solutions or architectures.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
CrowdStrike Falcon provides end-user security, as well as data security, and sandboxing further allowing security researchers and analysts to dig into the malware some. It is an over security solution, or stack, that allows companies to use one platform rather than multiple. What I like most though is the compliance assessment. CrowdStrike Falcon recently added HIPAA to the list of compliance frameworks that it will test your environment against so that you can see how your companies security compares to different compliance standards. For example, I need to be hipaa compliant, so I can see how my company‘s security compares to hipaa compliance requirement and if it is not hipaa compliant, it will show me what to fix and how to fix it.
  • Compliance Audit
  • End user security
  • Data protection
  • The user interface can be challenging to navigate from time to time until you get the hang of it.
CrowdStrike Falcon is a robust security suite that would do well with any company, but it is geared more towards enterprises.
Score 7 out of 10
Vetted Review
Verified User
Incentivized
CrowdStrike is used for endpoint detection and response capability as part of our standard operating system. This ensures that anomalous activity on end user compute devices is detected and arrested before it can propogate and impact the network. Further, it allows for investigtion and response by providing a detailed map of activity to isolate, understand and identify affected systems.
  • Detecting suspect activity at the endpoint
  • Stopping potentially damaging network activity by isolating an endpoint
  • Tracing activity throughout the network to assist with investigation and remediation
  • Limitations in ability to make detailed rulesets to address edge cases
  • False positives continue to be an issue
  • Can be noisy leading to alert fatigue
The solution is relatively good as a set and forget, particularly if being operated by a small team. Similarly, the system will allow for a level of active monitoring and integrating into MSSP services; however there is a point at which the level of sophistication drops off, especially when heading down a path of automated response, etc.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
needed a new EDR as the current on was best at the time and there are way better for the same or better price point. Since our contract was up and the features that was present in the current EDR was outdated and not the best out there. We took a step back and had a look at what was on the market and came down to CrowdStrike as a short list candidate
  • better intrusion detection of external devices
  • better dash board
  • provides suggested best practices for people to follow
  • the granularity of role permissions
not the cheapest solution but the cost saving for that extra bit of knowhow that fills the gap between our old EDR and CrowdStrike is well worth the money. we modern protection is the current cost of doing business and will hopefully pay off in the extra layer of protection.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We used CrowdStrike Falcon as our main XDR platform within our organisation.
We can investigate/remediate and run scripts when we suspect any anomalies on the network. Using event search we are able to analyse events and devices on the network. We have an easy way of finding EOL devices through the asset dashboard. I can analyse user accounts and ensure that there are no strange accounts with passwords over the set period.
  • Event Search
  • Searching for unmanaged assets
  • Tagging for easier searching
  • Providing details on devices such as recently connected users and previously connected networks.
  • UI is cumbersome at times
  • Dashboard occasionally takes a while to load
  • Support is somewhat delayed
I believe CrowdStrike Falcon is great for teams who have a small security team with no 24x7 coverage. Using their Complete add-in you are covered by the 24 hours a day 7 days a week 365 days a year. This is all with a 4 minute window to remediate issues should one occur.
Humayoon Khan | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Incentivized
I use CrowdStrike Falcon as the main source of monitoring threats originating from operating systems used by our servers, workstations, staff laptops and guest users machines.
Our organization being a university where thousands of students and hundreds of staff turn up daily, puts our critical assets at risk of being compromised by an insider. CrowdStrike Falcon helps us identify the source of a threat accurately, blocks the triggering file or script before it can cause damage. The AI / ML based detections are very helpful because they catch threats that other vendors may fail at. The scope of our use case is endpoint monitoring and threat management.









  • AI / ML based malicious activity detections
  • Detection information presented clearly and concisely on dashboard
  • Easy filtering of detections on hostname, detection name, severity, date, time, hash, technique etc
  • traces full process chain instead of just showing the source file or script which really helps in tracing the main security concern of machine
  • If some malicious app uses microsoft's signed binary like onedrive, cmd, wscript CrowdStrike would tag the microsoft binary as malicious and fails to provide the actual file that tried to execute these.
  • For example if a
  • malware.exe tries to run this command
  • cmd /c bitsadmin
  • CrowdStrike would tag cmd or bitsadmin as malicious and does not mention malware.exe at all sometimes
  • There are two different dashboards (updated and deprecated) which causes confusion among my team, all must be on same page and use single dashboard.
  • Support is very slow in responding to problems and depend on automated bots which really frustrates when a major issue arises.
It is best suited for organizations that have lot of machines and users, since CrowdStrike agent-based deployment is easy to manage and maintain.
CrowdStrike Falcon may be less appropriate for smaller organizations due to its cost, also a technical support team is required to install / remove agents from machines and monitor the dashboard for detections daily.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
It's been used as ERD solution. Great ability to achieve network segmentation via the host firewall. We also used the IdP module and Horizon for cloud security. Data protection is a product we're still testing but looking promising. The visibility and telemetric getting from each sensor is great and the CrowdStrike Falcon complete visibility is pretty reliable.
  • Network segmentation for host and servers using the firewall.
  • USB block by the sensor.
  • IDP alerts from our domain and different identities
  • Support response.
  • Sensor stability, sometimes the sensor fails on computers
  • Improve menus
Incident response containment works really well, we have contained a couple of machines during incidents and it works pretty well. Also telemetry from different devices is useful. Identity protection alerting also works very well for us, we get tickets and calls from CrowdStrike Falcon when users connects from suspicious countries.
Score 10 out of 10
Vetted Review
Verified User
Our EDR and its operations utilize CrowdStrike Falcon as the cornerstone of security. Currently, people are concerned about the protection of IDs.
  • Prompt response
  • Reliable follow up
  • High detection ability
  • Enhancement of Japanese language
  • Screen configuration that requires no screen transitions as much as possible
CrowdStrike Falcon can be operated with a low operational load, and we believe it can be used by various organizations. I think there are not many organizations for which he is not suitable. Instead, I think it depends on whether or not you can trust and implement this highly complete service.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
CrowdStrike is the corporate protection against known (and unknown) malware and bad people.
We were using other solution and we were forced to change it really quick.
The process has been really simple, and for the moment we are really happy with how it works and how it performs.
It can be used both on computers and servers, and it supports quite good both Windows & Linux
  • Protection against all kind of malware
  • Performance
  • Real Time Response
  • Custom IOC Management
  • Notifications to end users
  • Tray Icon
It can be used in combination with your current AV solution or even as an standalone product.
It seems to work pretty well and protects you from almost everything tested.
Maybe RFM can be improved, specially with patch Tuesdays, but nothing to worry too much about.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
  • Default endpoint protection tool on all servers and laptops.Laptops
  • local firewall, and device lockdown (USB drives blocked)
  • Spotlight
  • vulnerabilities
  • Identity Protection - lateral movement, service account protection, insider threat
  • Threat Intel / Sandbox
  • EDR
  • Threat Intel
  • USB blocking
  • Complete team - triage and escalation
  • Better reporting
CrowdStrike Falcon is an all in one solution - One agent, low impact
James Dilley | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We deployed CrowdStrike Falcon across our organization to strengthen our cyber defenses. The use cases ranged from endpoint protection to threat intelligence, covering a broad spectrum of security needs. The deployment was organization-wide, safeguarding endpoints and critical systems against evolving cyber threats. The reduction in manual tasks and real-time updates contribute to time savings for our security team.
  • CrowdStrike Falcon's next-gen endpoint protection consistently outperforms traditional solutions.
  • The cloud-native architecture ensures seamless scalability and real-time updates, eliminating the need for manual interventions.
  • CrowdStrike Falcon's threat intelligence and hunting capabilities are unparalleled.
  • The advanced features may pose a learning curve for users unfamiliar with modern cybersecurity tools.
  • A more transparent pricing model could assist in budget planning.
  • Expanding compatibility with a broader range of security solutions would be advantageous.
I would highly recommend CrowdStrike Falcon to any organization serious about bolstering its cybersecurity defenses. The platform's effectiveness in threat detection, proactive mitigation, and scalability make it a valuable asset in today's ever-evolving threat landscape. Despite some learning curves and integration challenges, the return on investment and the overall security enhancement justify its strong recommendation.
Score 8 out of 10
Vetted Review
ResellerIncentivized
We use Crowdstrike to protect the company's servers and keep them safe from as many threats as possible.
  • Known malware detection.
  • Software detection with malicious behavior.
  • Identification of processes with anomalous behavior.
  • User management in cases where the service is provided as an MSP.
  • Clarity in console menus.
  • Integration with third-party EPP.
It is suitable for large companies with complex organizational structures that are managed by the company's own staff or by Crowdstrike. It is less suitable for small companies due to its high initial costs, especially if it is offered as a service from an MSP, since the management of MSP users is complicated and, in some cases, it cannot even be a real vision of the users that can manage each company.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
CrowdStrike Falcon is used as an EDR agent and we also leverage Falcon Complete services for additional security operations assistance. Additionally, EDR logs are combined with SIEM logs to gather better insights about a security event which may or may not qualify for additional deep dive research. CrowdStrike Falcon is customizable and has a robust threat intelligence inbuilt.
  • Endpoint Detection and Response
  • Great communication to the security operations teams for triaging a security event
  • Customizable policies which can be globally applied
  • Ease of integration with SIEM
  • Ability to query endpoint logs within the Falcon portal itself
  • Sandbox can get better in my opinion.
  • Detection of source of infection in case of lateral movements recommended
  • Browser based logs/ DNS queries for getting to the root of the issue
CrowdStrike Falcon can be treated as a single source for endpoint protection. With additional features, CrowdStrike Falcon has a strong use case for preventing malware infection in the infrastructure security ecosystem. CrowdStrike Falcon's complete helps get the MSSP capabilities for SOC detection and incident response from a league of experts.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We use endpoint protection, MFA anywhere and identity management to protect our organization. Falcon complete oversees all of the system to make sure we are protected at all times. We feel confident in the protection the platform provides and have nothing negative to say about the product. We have had great success.
  • MFA Everywhere to protect our systems from remote login connections.
  • Realtime endpoint protection that is updated regularly without intervention from our system administration team.
  • 24 x 7 x 365 monitoring of the system to provide protection at all times.
  • Walkthroughs of new features when added to the console.
  • Better instructions on how and where to add or change policies for various tools.
I have been in the industry for close to thirty years and this has been one of the best endpoint protection programs I have ever used. We feel confident as an organization that we are protected on the endpoints at all times. The Falcon Complete team is great for providing assistance whenever we need it.
November 01, 2023

CrowdStrike real review.

Score 10 out of 10
Vetted Review
Verified User
Incentivized
We use it to protect all of our computers and servers.
  • Malware detection.
  • Bad behaviour detection.
  • Support on old Operatives Systems.
Protecting Windows, Linux, and MAC Operative Systems from all kinds of threats. Not only alerting but also preventing, using behavior detection and file analysis.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
Fully Managed Security Service that investigates detections and either escalates or deals with them directly for us.
  • MDR
  • Vulnerability assessment.
  • Identity Protection.
  • Easier to use interface.
  • Log management.
  • Investigations
It is suited to small teams who require additional backup and assistance within the security area.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
We use CrowdStrike as an end-point protection application. We also use CrowdStrike's Identity Threat Protection module, which allows us to gain greater insight into and secure our end user by tying into our IAM solution. This helps us achieve our new cybersecurity goals of providing a primary focus on protecting user's identities and not putting the main focus on protecting endpoints. By implementing CrowdStrike Falcon Complete, we are able to monitor security for our endpoints and our user identities 24/7. This is a big plus for us as we are not staffed 24/7 and can rely on a reputable SOC from CrowdStrike to oversee and monitor security for all of our endpoints and our identities.
  • Protection of end points.
  • Protection of user identities.
  • Providing quick response to any identified security issues.
  • CrowdStrike can be on the more expensive side of end point and identity management, but it's worth it.
I feel CrowdStrike Falcon is well suited for anybody who takes securing their systems and employees safe. They have a $1 million breach policy, which helps give peace of mind that they stand behind their product and really believe in it. This was the big determining factor for us. Not because we needed the $1 million policy but because it shows how much they are willing to invest in their products as the best on the market.
Score 9 out of 10
Vetted Review
ResellerIncentivized
CrowdStrike Falcon is installed on all endpoints and Server VMs at our end.It helps us to stop security breaches as well as prevent all types of attacks (including malwares, ransomwares and many other such attacks)
  • It helps us to stop security breaches as well as prevent all types of attacks (including malwares, ransomwares and many other such attacks)
  • It helps in Adversary Emulation Exercise
  • it helps in Red Team / Blue Team Exercise
  • should improve threat visibility
  • its overall TCO should be reduced
  • seamless integration with solutions like SIEM
It helps in Adversary Emulation Exercise.
It helps in Red Team / Blue Team Exercise.

Threat visibility is something where it is less appropriate.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We use Crowdstrike Falcon for the below points
1. To prevent Ransomware
2. Device Control
3. Protection of Workstations and servers
4. Advanced protection for Zeroday
4. To find malicious activities on systems
  • Overwatch feature is amazing
  • Accuracy to identify True Positive
  • Powerful AL based detection method
  • RFM issue
  • Certificate Pinning, older sensor versions stops communicating
  • Sensor Duplication
Unmatched AI capability to find security threats & seamless Customer Support
Score 9 out of 10
Vetted Review
Verified User
CrowdStrike Falcon Endpoint Protection is a complete cloud-native security framework to protect endpoints and cloud workloads. Falcon stops breaches and improves performance with the power of the cloud, artificial intelligence (AI), and an intelligent, lightweight single agent. The Falcon Platform is flexible and extensible. Best suitable for Hi-tech companies, Non air-gapped organizations andThin SecOps teams
  • Threat Inteligance
  • Low CPU and RAM usage
  • Malware mitigation
  • Vulnerability managment
  • Hunting
  • Ease of use
  • Identity protection
  • Air-Gapped networks
  • Mobile protection
Since it is easy to deploy and use, it can be deployed and protect small and large companies immediately. best suitable for Hi-tech companies and Thin SecOps teams Falcon X threat intelligence and Threat Graph cloud-based data analytics provide the ability to detect advanced threats and analyze user and device data to spot anomalous activity.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We use it for endpoint protection from malware and viruses on all PC's and laptops within the organization for both on premises and work from home users. The product is small footprint on the clients and is not noticed by the end users. It looks for not only known malware but also for patterns/IOCs that may indicate a zero day attack.
  • Runs on clients without causing application issues
  • matches files patterns/behaviors to look for unknown attacks
  • contains potentially infected hosts
  • The user interface is terrible
  • permit users to see licensed products in the console
  • less false positives. files such as Malwarebytes scanning modules should be known as safe
  • make it easier to create scanning exclusions that actually work
I believe CrowdStrike could be a successful implementation in any organization, however, for any company that wants someone be on top of detections, exclusions, actions, etc. they would need a full time employee to manage the product. The price point is in line with other products and has integrations with more 3rd party SIEM, scanning and network monitoring solutions than any other vendor.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
We use Falcon to ensure we protect all our endpoint devices across the whole globally distributed organisation. We aim to utilise Falcon capabilities to prevent malware being distributed and exploited on all endpoint devices. Falcon Spotlight assists with getting visibility of the number of vulnerabilities we have on our endpoints to address by ensuring robust patch management capabilities.
  • Efficiently picking up and preventing malware threats on endpoints
  • Prompt notification capabilities on any issues
  • Ability to "set and forget" with minimal maintenance required
  • Falcon Spotlight integrations with automatic patching solution would be a good feature
  • LogScale with SIEM functionalities would be an added feature
  • Simplified one dashboard with all high-level information
Great product for endpoint detection and response for any sized organisations. Simple configuration and installation ensures its well suited for small and medium sized organisations.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
Deployed CS Falcon in a higher education research environment. We needed to leverage a tool that can build a models and be on the advancement of technology due to the nature of higher education and BYOD. We installed the CS Falcon on all machines and worked with the CS team to build a Gov Cloud for research equipment that required a different set of cloud protocols.
  • Monitoring
  • Notification
  • Device Management
  • Have an executive dashboard
  • better reporting cadence
  • ability to tag devices with end user names
CS Falcon is suited for nearly all scenarios and deployment. The only challenge would be if devices contain protected data the need for the Gov Cloud installation would be necessary. This can split up your installation base but isn't anything that is very difficult to manage.
Return to navigation