CrowdStrike Falcon and Trellix Endpoint Detection and Response (EDR) compete in the EDR sector. CrowdStrike Falcon seems to have the upper hand due to its ease of deployment and customer service.
Features: CrowdStrike Falcon offers comprehensive threat detection, real-time response capabilities, and integration with various security tools. Trellix EDR features advanced analytics, extensive malware libraries, and automated response features. Users prefer Trellix for its robustness in handling complex threats.
Room for Improvement: CrowdStrike Falcon needs enhanced reporting capabilities, better scalability options, and more intuitive user interfaces. Trellix EDR requires a streamlined setup process, improved intuitive management tools, and enhanced customer support.
Ease of Deployment and Customer Service: CrowdStrike Falcon is noted for its straightforward deployment process and responsive customer service. Trellix EDR offers powerful tools but has a complex deployment process and users feel its customer support can be improved.
Pricing and ROI: CrowdStrike Falcon offers a clear pricing structure with a strong ROI, appreciated for its overall value and cost-effectiveness. Trellix EDR, although more expensive, provides substantial ROI due to its advanced features. Users are generally more satisfied with CrowdStrike’s pricing but acknowledge Trellix’s powerful features justify the higher cost for many.
CrowdStrike Falcon saves time and offers good value for money, especially for enterprise companies, because it can stop breaches.
It's very easy to deploy without many IT admins, saving time.
On a scale of one to ten, I would rate the technical support as a 10 because they resolve many issues for us.
The CrowdStrike team is very efficient; I would rate them ten out of ten.
They could improve by initiating calls for high-priority cases instead of just opening tickets.
I have contracted support and also have an operating control so I can get various types of support.
It has adequate coverage and is easy to deploy.
In terms of scalability, I find CrowdStrike to be stable, and I have not encountered any limitations with it.
There's no scalability limitation from CrowdStrike itself, as it just requires agent deployment.
I have never seen instability in the CrowdStrike tool.
We are following N-1 versions across our environment, which is stable.
The biggest issue occurred when every computer worldwide experienced a blue screen.
Simplifying the querying process, such as using double quote queries or directly obtaining logs based on IP addresses or usernames, would be beneficial.
Another concern is CrowdStrike's GUI. It changes annually, making it hard to work and find options.
Threat prevention should be their first priority.
I am seeing, for workflows, some sort of ethical hacking to test our environment.
It is expensive compared to SentinelOne, but as the market leader, it is worth it.
The licensing cost and setup costs are affordable.
The solution is a bit expensive.
I can investigate by accessing the customer's host based on the RTR environment and utilize host search to know details for the past seven days, including logins, processes, file installations, malicious processes, and network connections.
The real-time analytics aspect of CrowdStrike performs well because we get all logs in real-time, with no delay, allowing us to take action immediately.
Being an EDR solution, it helps us identify attacks in real-time.
I have spent efforts on training our managers and others - what can software do if the knowledge base is low?
Product | Market Share (%) |
---|---|
CrowdStrike Falcon | 10.3% |
Trellix Endpoint Detection and Response (EDR) | 1.2% |
Other | 88.5% |
Company Size | Count |
---|---|
Small Business | 46 |
Midsize Enterprise | 34 |
Large Enterprise | 61 |
Company Size | Count |
---|---|
Small Business | 11 |
Midsize Enterprise | 3 |
Large Enterprise | 9 |
CrowdStrike Falcon offers comprehensive endpoint protection with real-time threat detection, AI-driven capabilities, and seamless integration with other platforms. Its cloud-native design provides robust security across diverse environments, making it a reliable choice for modern cybersecurity needs.
CrowdStrike Falcon is heralded for features like robust endpoint visibility, threat detection, and AI-driven capabilities. Users value its efficient real-time monitoring, which maintains low impact on performance while offering seamless integration with platforms. The lightweight design, coupled with comprehensive dashboards and automated threat responses, enhances security operations while reducing resource strain. CrowdStrike's cloud-native architecture ensures flexible, always-on protection, making it adaptable to a wide range of environments. However, improvements can be made in log management, compatibility with diverse operating systems, and integration with third-party technologies. Users also seek more robust reporting features, fewer false positives, and better support for legacy systems. Enhanced policy application, AI capabilities, and extended on-demand scanning are desired, while pricing and technical support responsiveness are concerns.
What are CrowdStrike Falcon's key features?CrowdStrike Falcon is implemented widely in industries relying on robust endpoint protection for monitoring, securing endpoints, forensic analysis, and malware detection. Its cloud-based AI capabilities ensure comprehensive security across devices, making it a preferred choice for networks, servers, and workstations globally. The efficient management of security threats and compliance with regulations is achieved with minimal resource consumption.
Reduce the time to detect and respond to threats. Trellix EDR helps security analysts quickly prioritize threats and minimize potential disruption.
Guided investigation automatically asks and answers questions while gathering, summarizing, and visualizing evidence from multiple sources—reducing the need for more SOC resources.
Cloud-based deployment and analytics enables your skilled security analysts to focus on strategic defense, instead of tool maintenance. Benefit from implementing the right solution for you.
We monitor all Endpoint Detection and Response (EDR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.