What is our primary use case?
The major use case for us is that we are using it for endpoint protection only at the moment, specifically for the detection and prevention of particular items from users' machines.
What is most valuable?
We are not using advanced machine learning algorithms because it is already present in CrowdStrike Falcon Exposure Management itself, so there is no need for that.
Workflows in CrowdStrike Falcon Exposure Management help with automation, so you will get an email, you can send out a Teams message, or you can perform an automated action based on certain parameters you set, so it helps save time.
We have a severity category in which based on impact and criticality, we have critical, high, medium, and low options, so based on that, we can also take actions.
The dashboard is quite good.
What needs improvement?
In CrowdStrike Falcon Exposure Management, I am not entirely happy with the integrations, but to a certain point, it is good. When you are working with the APIs in order to pull some things, it is a bit difficult. Some do not give you the expected results and some are not supported, but an average percentage is actually supported, so it is fine at the moment.
The integrations part is concerning, and one thing I see for improvement is that there is no feature to uninstall the sensor from the GUI, which means from the console, and if a particular host is offline, we cannot reach it. The sensor would remain on that particular host and there is no way to remove it.
For how long have I used the solution?
I have been using this for around two to two and a half years.
What do I think about the stability of the solution?
For the moment, I have not observed stability issues, but there are some issues that are very rare and infrequent. You will get them once in a while, but no issues are encountered which are repetitively occurring. Everything is good so far with CrowdStrike Falcon Exposure Management. Occasionally, you will get some sensor corruptions, but that is it.
What do I think about the scalability of the solution?
The solution is easily scalable; you just have to purchase the extra amount of licenses you need.
How are customer service and support?
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
I have been working with SentinelOne, Defender, and other solutions, and I prefer CrowdStrike Falcon Exposure Management over everything. That is why I chose it.
I would also prefer CrowdStrike Falcon Exposure Management from a technical perspective because it has many more features and it is much more granular, and you can learn a lot from that.
How was the initial setup?
The installation is very easy as an initial install.
What about the implementation team?
I work with the product as a service provider, so it is a support service, and we have multiple clients. We provide the services, but the distribution is not done by us.
What's my experience with pricing, setup cost, and licensing?
I cannot reveal the prices, but I can tell you that it is a pricey solution compared to other XDRs.
What other advice do I have?
I work with Exposure Management and XDR, specifically CrowdStrike Falcon Exposure Management within the CrowdStrike Falcon suite, including CrowdStrike Falcon Sandbox and Falcon Complete MDR.
My clients mainly have it in a cloud model. I believe it is hosted in one of the cloud providers such as GCP, AWS, or Microsoft Azure, but I do not have specific information about that.
We purchase through distributors who provide certain licensing options.
I give CrowdStrike Falcon Exposure Management a rating of eight out of ten. I would also give Falcon Exposure Management around an eight as well.
My overall review rating for this product is eight.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other