External reviews
External reviews are not included in the AWS star rating for the product.
Fantastic product. A complete package for endpoint security
What do you like best about the product?
1.Threat detection is better than other AV/EDR products.
2. Provides option to integrate third party or Crowdstrike partner's products like Crowdstrike's spotlight itegration with automox to automate Vulnerability closer.
3. Provides better options when it comes to Incident response
2. Provides option to integrate third party or Crowdstrike partner's products like Crowdstrike's spotlight itegration with automox to automate Vulnerability closer.
3. Provides better options when it comes to Incident response
What do you dislike about the product?
found little unstable when it comes to device control.
What problems is the product solving and how is that benefiting you?
1.Console management is very easy to manage the policy .
2. User friendly UI
3. Lot of new features keep coming
4. quarterly roadmaps calls give idea about upcoming and new features
2. User friendly UI
3. Lot of new features keep coming
4. quarterly roadmaps calls give idea about upcoming and new features
- Leave a Comment |
- Mark review as helpful
Working as L2 analyst with 4 year of experience in security operations center
What do you like best about the product?
Process based detection
1.Real time Response
2.Threat hunting capabilities
1.Real time Response
2.Threat hunting capabilities
What do you dislike about the product?
Don't have Scanning capabilities for specific host.
What problems is the product solving and how is that benefiting you?
1.CS intel
2 detection capabilities in real time.
3.Real time Response
4.Hunting capabilities
2 detection capabilities in real time.
3.Real time Response
4.Hunting capabilities
Recommendations to others considering the product:
It's definitely one of the best EDR solutions available in market. 100% recommend
The Best is Yet to Come
What do you like best about the product?
Crowdstrike's Falcon does an excellent job in detecting malware and gives visibility into what the attack vector.
What do you dislike about the product?
Support for Mac's New OS, the new M1 chip and Linux support has been lacking.
What problems is the product solving and how is that benefiting you?
Complete security visibility into securing our endpoints and discovering if any of the endpoints have been compromised. Out of all our security tools Crowdstrike is usually the first to report about anomalous activity and in some cases has already prevented the attack.
My experience with CrowdStrike
What do you like best about the product?
What I like best about Crowdstrike is it's ease of use and level of detail. I can quickly see what tactics were used, where it was located, and what was blocked and running.
What do you dislike about the product?
What I dislike about CrowdStrike is that sometimes it does not clean up stale processes or prior process in the activity tree. I believe this was recently remediated with the new "remediation" option in the prevention policies.
What problems is the product solving and how is that benefiting you?
Defending against any and all forms of malware!
Eye catchy product with ease of managing the endpoint
What do you like best about the product?
Investigation is easy in Crowdstrike and it will give u each detail of endpoint so u will not be missing any of the threat.
What do you dislike about the product?
So far i haven't come across of anything.
What problems is the product solving and how is that benefiting you?
Using it for threat intelligence mainly.
Crowdstrike Analyst friendly tool
What do you like best about the product?
Interface is really great, GUI gives really great details about the event and have Ease of Use for non-security folks as well.
What do you dislike about the product?
Crowdstrike support of splunk for showing historical event.
What problems is the product solving and how is that benefiting you?
Transition from Signature based detection to behaviour based detection. Compare to other other EDR tools, detection was much better.
Recommendations to others considering the product:
Organizations who doesn't employ full time 24/7 security teams, crowdstrike really provides a very competitive solution. Easy to use and maintain.
Does the job, doesn't kill your endpoint.
What do you like best about the product?
Crowdstrike is lightweight in performance impact, but a heavyweight in protection. The amount of detail that it can pull off of the endpoint, determine actions that are being taken, and the ability to completely isolate the endpoint is unmatched. Once the product is installed, which is super easy, it auto-updates and becomes maintenance-free. On top of that, you can add functionality and not have to install another agent - local Firewall management, device lockdown, vulnerability detection\review (Spotlight). The icing on the cake is using the Falcon Complete service - they do all of the work for you.
What do you dislike about the product?
I wish the Mac features stayed up to date with the Windows and now LInux features. We have 20% of our end users with Macs. While the main Crowdstrike Falcon product works well, we do not get support for Firewall, Device Lockdown, or Spotlight.
What problems is the product solving and how is that benefiting you?
Previously, we had another endpoint protection tool. It did a great job, but working for an engineering company - almost all users would complain about the performance impact to their endpoint. Everyone knew it was there. During our POC testing, we pushed this out to several engineer endpoints and after a week they called to ask us when we were going to push it to them. They did not even notice that it was there and we were already throwing test files at it.
Recommendations to others considering the product:
The easiest answer is "test it". Work on a POC, get it running on a few devices and then throw test files at it. Compare it with your current or other contenders. Review what the user experience is, what the admin or operations team experience is. You will not be disappointed. Very simple to stand up a POC.
Great product, bad account rep!
What do you like best about the product?
CrowdStrike product is great. A lot of functionalities. CrowdStrike has the ability to tweak and personalize based on your environment. You need to find the balance between too many false positives vs. losing true detections.
What do you dislike about the product?
Bad experience with an Account rep. We wanted to add additional modules to the product, he was able to get a short 30 mins demo. When asked for another 30 mins schedule to understand it further, he denied it. Was supposed to have quarterly review sessions which stopped after 3 sessions.
What problems is the product solving and how is that benefiting you?
Endpoint Security, Device Control (Block USB), Firewall.
Next-gen Endpoint Protection
What do you like best about the product?
Supports Windows, Linux, Mac endpoints
Actively developed and maintained - constant updates are both pro and con
Gives great deal of intelligence about endpoint behavior
Actively developed and maintained - constant updates are both pro and con
Gives great deal of intelligence about endpoint behavior
What do you dislike about the product?
Large learning curve to leverage
Large time requirement to investigate potential compromises
Large time requirement to investigate potential compromises
What problems is the product solving and how is that benefiting you?
Combined with third party monitoring, it allows a very small team to provide low effort monitoring of our systems
Strong in the major areas, needs some work in the details.
What do you like best about the product?
The level of confidence we now have knowing that our systems are protected against a whole host malicious actions as well have actionable information at fingertips is incalculable. The new features that come out are thoughtful and useful that come out with the release schedule. The release schedule itself is not overly aggressive and so far is very stable. The intelligence module is also very helpful.
What do you dislike about the product?
The 'Spotlight" feature could use some work. Currently we are unable to search multiple hosts at once, and have not found a workaround for it yet. The Spotlight search will gather all of the host information, running process data, logons ect. The clues you would need to run an investigation are found here often. It is extremely time consuming to have to run the same search, one at a time for each host, then correlate that data for comparison. I am unfamiliar with the back end of Crowdstrike so programming the ability to input a comma delineated list to search could be very difficult. Having had some some development work as well as DBA experience, I can understand that it may not be as simple as it sounds.
What problems is the product solving and how is that benefiting you?
We replaced a few endpoint agents with Crowdstrike. Specifically we replaced Carbon Black Protect and MS SCEP. We moved from a traditional AV to an EDAR solution. An internal guideline for our organization is to reduce the number of endpoint agents deployed. The system overhead has been realized by removing the Protect application.
showing 201 - 210