TrustRadius: an HG Insights company

CrowdStrike Falcon Complete Next-Gen MDR

Score9.2 out of 10

12 Reviews and Ratings

What is CrowdStrike Falcon Complete Next-Gen MDR?

CrowdStrike Falcon® Complete Next-Gen MDR delivers 24/7 managed detection and response expertise, powered by the AI-native CrowdStrike Falcon® platform. Operating as an extension of customer teams, Falcon Complete Next-Gen MDR conducts advanced threat detection, investigation, and response around-the-clock and across all key attack surfaces including endpoint, cloud, identity, and critical third-party data. The service combines security expertise, threat hunting and security technology to accelerate mean-time-to-respond (MTTR), close the cybersecurity skills gap, and stop breaches.

Who Buys & Uses CrowdStrike Falcon Complete Next-Gen MDR

CrowdStrike Falcon Complete

Use Cases and Deployment Scope

Falcon complete provides 24/7 expert led detection and response on our endpoint and server estate. With this we have long-term search retention allowing us to keep endpoint and detection logs for months or years which allows for better incident forensics and compliance reporting. This allows our teams to focus more on the using the additional visibility within the CrowdStrike platform to increase and harden our overall security footprint as we consume more SaaS and AI toolsets.

Pros

  • Fast detection and containment, as well as immediate contact to our team
  • 24x7 monitoring and response
  • Use of AI to triage and carry out safe actions or hand to an Analyst for investigation
  • use of multiple data sources for investigation and triage, SIEM, Identity, endpoints, cloud workloads. Allowing analysts and staff to see the full pathway of an attack

Cons

  • Portal could be less cluttered and easy to navigate
  • Cost for the core product and additional modules is expensive
  • Direct access to analysts - sometimes difficult
  • Third Party integrations an example of this is Cisco Umbrella being available but Cisco Secure Access is not?

Return on Investment

  • We now have a Mature 24/7 SOC that cuts response time from hours/days to minutes. Reducing disruption to staff
  • Reduces the requirement for a large in house SOC team, it also has allowed us to retire overlapping tool sets
  • It is a premium service which comes at a cost so we need to consistently and continually demonstrate that it is reducing incidents, and easing staffing pressure and maintaining the security of the firm
  • It supports the main objectives of confidentiality, uptime and compliance this is through its ability to provide evidence of containment, and expert led investigations when something does happen

Usability

Alternatives Considered

ThreatSpike Labs

Other Software Used

Fortinet FortiGate, Cisco Secure Access, Imperva Web Application Firewall (WAF), Mimecast Email & Collaboration Threat Protection, NinjaOne

CrowdStrike Falcon Compete -- Everything you need for a SMB.

Use Cases and Deployment Scope

My organization used CrowdStrike Falcon Complete on all endpoints and servers in our environment. This allows our team, which does not have SOC and log monitoring expertise, to still ensure we have a secure network while monitoring and correlating potential incidents in a timely manner. The responsiveness of the support team has been great.

Pros

  • Quick Support Responsiveness.
  • Easy to follow attack paths.
  • Easy to follow incident correlation.

Cons

  • Understanding the SIEM integration and pulling appropriate logs.
  • How they handled the global outage a couple years ago.
  • iOS support.

Return on Investment

  • Helps with cyber insurance renewals.
  • Useful dashboards for executive leadership.
  • Negative: It comes at a premium price.

Usability

Other Software Used

CaseWare, Black Kite, Suralink

Hello CrowdStrike Falcon Complete Next-Gen MDR goodbye Cortex

Use Cases and Deployment Scope

Crowdstrike Falcon Complete Next-Gen MDR allows me to focus on daily IT business challenges while being less concerned about threats to my systems. I know the CrowdStrike Falcon Complete Next-Gen MDR team is monitoring my IT perimeters and end-points to l alert me of threats even before I am notified by my owns systems. Before CrowdStrike Falcon Complete Next-Gen MDR, I was getting alert fatigue from noise generated by Palo Alto's Cortex. We chose CrowdStrike Falcon Complete Next-Gen MDR to replace Cortex for endpoint malware management and I didn't need to retrain my team to use it.

Pros

  • Proactive and comprehensive threat monitoring, mitigation and alerting
  • 24/7 threat response and escalation
  • Full incident response and support from start to finish
  • Excellent documentation and auditing

Cons

  • There are some integration gaps with other tools. I wish it worked better with LevelBlue AlienVault
  • Playbooks can be less than intuitive
  • Difficult to communicate with support at times, offshore support has difficulties understanding the request.

Return on Investment

  • So much less risk of costly malware and breaches
  • No training requirements for IT staff to manage the product, white glove service
  • More team productivity, one less thing for my team to manage

Usability

Alternatives Considered

Palo Alto Networks Cortex XDR

Other Software Used

NinjaOne, LevelBlue USM Anywhere