What users are saying about
18 Ratings
28 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener noreferrer'>trScore algorithm: Learn more.</a>
Score 8.8 out of 100
18 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener noreferrer'>trScore algorithm: Learn more.</a>
Score 7.9 out of 100

Likelihood to Recommend

CrowdStrike Falcon

There aren't many scenarios where I wouldn't recommend CrowdStrike. You'll have the ability to create protection policies for different parts of your environment so that sensitive machines have as much protection as possible, and low-risk machines aren't overly locked down. The only reason I can't see someone choosing CrowdStrike is over a matter of budget. It's not the most expensive, nor is it the cheapest.
Randy Munroe | TrustRadius Reviewer

Darktrace

Darktrace would be well suited to any environment really; the only constraint would be the budget. The cost scales on the number of devices to be monitored by the product, so it can be quite expensive in larger environments. Any company that would benefit from having 24/7 monitoring of their network would find that this product would suit that need perfectly. It can also create a number of reports, which is useful if you have any requirement to present periodic figures and statistics for your network. There are also additional features available and in development such as Antigena, which can be configured to allow potential threats to be automatically mitigated; it can block connections to a certain address, using certain ports, or it can enforce "normal behaviour" where it will only allow a machine to communicate in a way that Darktrace has observed before and considers normal. This has huge benefits particularly for 24/7 organisations where you don't have the ability to have someone monitoring the network personally at all times, as it could stop a malware outbreak in its tracks.
Anonymous | TrustRadius Reviewer

Feature Rating Comparison

Endpoint Security

CrowdStrike Falcon
8.8
Darktrace
Anti-Exploit Technology
CrowdStrike Falcon
9.0
Darktrace
Endpoint Detection and Response (EDR)
CrowdStrike Falcon
9.2
Darktrace
Centralized Management
CrowdStrike Falcon
8.8
Darktrace
Hybrid Deployment Support
CrowdStrike Falcon
7.7
Darktrace
Infection Remediation
CrowdStrike Falcon
9.0
Darktrace
Vulnerability Management
CrowdStrike Falcon
8.2
Darktrace
Malware Detection
CrowdStrike Falcon
9.6
Darktrace

Pros

CrowdStrike Falcon

  • Detects and automatically blocks dangerous behavior on endpoints that could be indicative of malicious activity, like executing programs from the deleted items folder, executing a SSH command in silent mode from different places in the OS, etc.
  • Monitors endpoints continuously for known malware, evaluates dangerous behaviors and blocks execution based on risk tolerance settings, uses AI to draw correlations on multiple attack vectors, and has a human malware hunting element to detect known or newly detected attack vectors.
  • Is easy to deploy across a large organization and manage centrally by as few as 1 person part time.
  • This was the fastest and easiest implementation of an enterprise grade security system I have ever done. I pushed software to the endpoints on a Friday afternoon, and was complete by Noon on Monday, as each workstation came online, the installer completed, and we were protected.
Mark Sauer | TrustRadius Reviewer

Darktrace

  • It did an ok job of analyzing and collecting data. It used a span (mirrored) port and then using its own algorithm developed flow records.
  • It did an ok job of segmenting traffic into networks - not always correctly, but ok.
  • It tried to identify devices by type - once again, it did ok, but not that great.
Matthew Frederickson | TrustRadius Reviewer

Cons

CrowdStrike Falcon

  • Falcon isn't continuously scanning the machine, if something is downloaded and viewed as safe it won't be re-checked later.
  • More dashboards and information on vulnerabilities on the machines would be helpful.
  • More reports that could be given to executives would also be beneficial. There are some now, but the options are rather limited.
Anonymous | TrustRadius Reviewer

Darktrace

  • False positives. Darktrace uses "AI" to create its alerts for "unusual" or "malicious" activity. It is very common to see an alert for completely benign and normal device behavior - PC tries to print for the first time in a while, for example.
  • Antigena actions. To some extent, this is a continuation of the previous point. Darktrace can break the network connectivity of the suspected device automatically. The excessive number of false positives makes administrators reluctant to use this feature, though. Also, the default Antigena actions are not relevant to real-world problems as I saw them in my experience with Darktrace.
Anonymous | TrustRadius Reviewer

Support Rating

CrowdStrike Falcon

CrowdStrike Falcon 8.5
Based on 12 answers
  • Ease of implementation.
  • Overall protection capabilities.
  • Real-time system inventory function.
  • Insight and intelligence of not only the threat, but the potential of the threat.
  • Support staff of their managed service is excellent.
Anonymous | TrustRadius Reviewer

Darktrace

Darktrace 9.5
Based on 2 answers
Any time I have had any issue with Darktrace, I've been able to contact an engineer through their support desk, and I have always had a very speedy response. Even when the issue has been caused by something outside of the Darktrace devices, they have still been very keen to try to help and identify what the problem was. The customer portal also has a large number of videos and guides that you can use to educate yourself on the product
Anonymous | TrustRadius Reviewer

Alternatives Considered

CrowdStrike Falcon

Business requirements, mainly. The most important/useful items we appreciate is ease of use and customer service and this product exceeds expectations in that regard. Other offers cover legacy systems and remain with that solution. However, the granularity that you can introduce to an environment is outstanding, all that without losing the simplicity of use.
Samuel Hadid | TrustRadius Reviewer

Darktrace

We have not evaluated others as they seem to be in their own class.
Anonymous | TrustRadius Reviewer

Return on Investment

CrowdStrike Falcon

  • A significant increase in responsiveness to data security incidents.
  • The frequency and extent of data security issues have been drastically reduced.
Anonymous | TrustRadius Reviewer

Darktrace

  • We had an ROI just during the POC. DarkTrace helped us identify a ransomware attack and we stopped it before it happened.
  • The weekly reports more than pay for itself within the first few months.
  • The powerful search capability helps us solve problems where other solutions fall short.
Anonymous | TrustRadius Reviewer

Pricing Details

CrowdStrike Falcon

General

Free Trial
Yes
Free/Freemium Version
Premium Consulting/Integration Services
Yes
Entry-level set up fee?
No

Darktrace

General

Free Trial
Free/Freemium Version
Premium Consulting/Integration Services
Entry-level set up fee?
No

Rating Summary

Likelihood to Recommend

CrowdStrike Falcon
8.9
Darktrace
8.4

Support Rating

CrowdStrike Falcon
8.5
Darktrace
9.5

Add comparison