No more typing reviews! Try our Samantha, our new voice AI agent.
Sachin Bode - PeerSpot reviewer
IT Manager at IFB Industries Ltd
Real User
Top 10
Jan 29, 2026
Managed detection has strengthened our defenses and has provided real-time threat visibility
Pros and Cons
  • "We have now selected CrowdStrike Falcon Complete MDR, which is a managed detection and response product that is completely managed by the Falcon US team, and everything is perfectly managed by them."
  • "Some processor utilization needs to be dropped because now Windows systems are consuming more CPU and RAM than earlier."

What is our primary use case?

We switched from Trend Micro products to CrowdStrike Falcon Complete MDR. Previously, our internal team was managing Trend Micro, but there were some gaps in managing it. We have now selected CrowdStrike Falcon Complete MDR, which is a managed detection and response product that is completely managed by the Falcon US team, and everything is perfectly managed by them.

What is most valuable?

We are using the threat intelligence feature. The US team showed us how to use it during a call. From the beginning, there were large volumes of detections we were getting, and we were able to look granularly at each system to see what vulnerabilities and threats we are receiving and what kind of IPs are hitting us. We were able to look precisely at each end user and started working on blocking and blacklisting threats. Now we are getting very rare notifications on these threats or any hits.

We are getting real-time response from CrowdStrike Falcon Complete MDR.

What needs improvement?

Sometimes we are facing performance issues with the end-user systems, and sometimes it is blocking a few of our applications, which we later resolve with the team. Recently, we were having our call center application running on the systems, which suddenly stopped working because CrowdStrike Falcon Complete MDR was not allowing it to run. After removing CrowdStrike Falcon Complete MDR, it started working, and then later we added the application URLs and the communication URLs to CrowdStrike Falcon Complete MDR allow list, so it started working.

Some processor utilization needs to be dropped because now Windows systems are consuming more CPU and RAM than earlier. Windows 10 was fine, but Windows 11 is consuming more CPU and RAM. If CrowdStrike Falcon Complete MDR is contributing to consuming the resources, then other applications are taking a lot of time to run. In Windows 11, we are facing this issue sometimes, and we need more powerful systems than earlier.

I would also appreciate improvements on the pricing side. Some of our locations where people are isolated, we are not buying CrowdStrike Falcon Complete MDR due to the pricing. If there is a nominal reduction in the price, then we will go for everyone in the organization.

For how long have I used the solution?

It is now three years since we started using CrowdStrike Falcon Complete MDR.

Buyer's Guide
CrowdStrike Falcon Complete MDR
September 2026
Learn what your peers think about CrowdStrike Falcon Complete MDR. Get advice and tips from experienced pros sharing their opinions. Updated: September 2026.
913,806 professionals have used our research since 2012.

How are customer service and support?

For technical support, I will give a perfect 10 out of 10.

Which solution did I use previously and why did I switch?

We switched from Trend Micro products.

What other advice do I have?

I am fully satisfied, and there are no complaints. My experience with CrowdStrike Falcon Complete MDR would be a nine out of ten. For the pricing of CrowdStrike Falcon Complete MDR, I suppose it is a little higher than other products. I give nine for the valuable insights gained from CrowdStrike Falcon Complete MDR reporting and analysis features. I give 10 out of 10 for the effectiveness of its automated threat responses in our security operations. My overall review rating for this product is 9 out of 10.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: Jan 29, 2026
Flag as inappropriate
PeerSpot user
Enrique Ulloa - PeerSpot reviewer
VP of IT at a construction company with 1-10 employees
Real User
Top 20
Sep 1, 2026
Managed detection has delivered strong ransomware protection and reduced security workload
Pros and Cons
  • "My additional thoughts about CrowdStrike Falcon Complete MDR are that it is the best in the market, and we are happy that we have that solution in our environment."

    What is our primary use case?

    My main use case for CrowdStrike Falcon Complete MDR is to help with ransomware and antivirus. A specific example of how I have used CrowdStrike Falcon Complete MDR to help with ransomware is when we got attacked, and CrowdStrike came in and helped us with putting MDR and Falcon Complete in our environment.

    What is most valuable?

    The best features CrowdStrike Falcon Complete MDR offers are visibility, point of attack, and results. When I mention visibility and point of attack, those features help me day-to-day by providing peace of mind.

    CrowdStrike Falcon Complete MDR has impacted my organization positively, as it has been able to make sure we have the proper protection in place and helped us with our cybersecurity posture. I have definitely seen fewer incidents and faster response times since using CrowdStrike Falcon Complete MDR.

    What needs improvement?

    CrowdStrike Falcon Complete MDR can be improved with better dashboards and better monthly reports. I would like to see better drill-down reports and better information for executive teams in the dashboards or reports.

    For how long have I used the solution?

    I have been using CrowdStrike Falcon Complete MDR for six years.

    What do I think about the stability of the solution?

    CrowdStrike Falcon Complete MDR is very stable.

    What do I think about the scalability of the solution?

    I believe CrowdStrike Falcon Complete MDR's scalability is great because it is on the endpoint and it sees a lot of things happening in our environment.

    How are customer service and support?

    Customer support for CrowdStrike Falcon Complete MDR is the best of the best.

    Which solution did I use previously and why did I switch?

    I previously used Bitdefender. We switched to CrowdStrike Falcon Complete MDR because we had a ransomware attack in our company.

    How was the initial setup?

    My experience with pricing, setup cost, and licensing is that pricing is on the high end, but it is worth it.

    What was our ROI?

    I have seen a return on investment because I do not need to have a cybersecurity person on-site and do not pay a cybersecurity person because I have Falcon Complete.

    Which other solutions did I evaluate?

    I did not evaluate other options before choosing CrowdStrike Falcon Complete MDR.

    What other advice do I have?

    My experience with CrowdStrike Falcon Complete MDR's capabilities for threat detection, investigation, and response has been good. When we got the cyber attack, I got the team to respond, and it was fairly easy to do, and it was calming when we had the cyber attack.

    My experience with CrowdStrike's 24/7 monitoring and response capabilities has been great, as it gives me peace of mind. I have high visibility into the investigations and actions performed by the Falcon Complete team.

    The combination of CrowdStrike technology and human security expertise in the MDR service is highly valuable. I met a couple of your people that helped us out, and it has been great. CrowdStrike Falcon Complete MDR works alongside my internal security team or existing SOC processes as it is embedded in our cybersecurity practice.

    CrowdStrike Falcon Complete MDR has changed the workload of my internal security team by allowing my team to be more free and to focus more specifically on different tasks.

    The security challenges that led my organization to choose CrowdStrike Falcon Complete MDR were due to a major cyber attack where we had ransomware.

    My advice to others looking into using CrowdStrike Falcon Complete MDR is to get it today and get it deployed right away.

    CrowdStrike Falcon Complete MDR's AI capabilities, governance and security are the best out there in the market. The governance piece is great, and I appreciate the way they do hierarchy and then let us know when there is a high event. It has around 95% to 98% accuracy, though there are always some false positives where we need to check with the end users to make sure the issue is correct.

    My additional thoughts about CrowdStrike Falcon Complete MDR are that it is the best in the market, and we are happy that we have that solution in our environment. I would rate this solution a 10 out of 10.

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    Last updated: Sep 1, 2026
    Flag as inappropriate
    PeerSpot user
    Buyer's Guide
    CrowdStrike Falcon Complete MDR
    September 2026
    Learn what your peers think about CrowdStrike Falcon Complete MDR. Get advice and tips from experienced pros sharing their opinions. Updated: September 2026.
    913,806 professionals have used our research since 2012.
    reviewer2894538 - PeerSpot reviewer
    System Administrator at a construction company with 501-1,000 employees
    Real User
    Top 20
    Sep 2, 2026
    Managed detection has reduced incident workload but now needs stronger focus on medium threats
    Pros and Cons
    • "CrowdStrike Falcon Complete MDR has transformed the workload of my internal security team because incidents are automatically resolved, so I do not have to worry about them."
    • "My experience with pricing, setup costs, and licensing has been challenging."

    What is our primary use case?

    I have been using CrowdStrike Falcon Complete MDR for two years. CrowdStrike Falcon Complete MDR was already in place when I joined my organization, which was the reason my organization chose this solution.

    What is most valuable?

    CrowdStrike Falcon Complete MDR has transformed the workload of my internal security team because incidents are automatically resolved, so I do not have to worry about them.

    Whenever I access the console, most of the information is already available, and any higher-priority tickets are automatically resolved by the time I review them.

    The 24/7 monitoring and response capabilities have been excellent so far. The most notable aspect is that by the time I examine the incidents that appear, they are already resolved for the most part.

    I have extensive visibility into the investigations and actions performed by CrowdStrike Falcon Complete MDR team. I receive considerable detail including the endpoint information, hostname, actions taken, file paths, different behavioral aspects, and how the attacks occurred.

    CrowdStrike Falcon Complete MDR has positively affected my organization's mean time to detect, investigate, and respond to threats. The service has been very effective, and I do not have to worry about threat response.

    What needs improvement?

    In some cases, the team only focuses on higher-level threats, and medium or lower threats do not receive the same attention, which requires me to invest additional effort into those cases.

    CrowdStrike Falcon Complete MDR could be improved by addressing medium-level threats more thoroughly. Since it is an MDR solution and an all-in-one offering, the overall workload management is excellent, but I would appreciate better metrics and responses to medium-level threats.

    Regarding additional features for future releases, the product is well-established and feature requests are not typically dictated by individual users. I do not have specific additional features to suggest at this time.

    Which solution did I use previously and why did I switch?

    Before adopting CrowdStrike Falcon Complete MDR, I worked at a previous organization that used SentinelOne. At that organization, we did not have MDR capabilities, so MDR was new for me in the past few years. It is very beneficial that I do not have to manually investigate and respond to most threats.

    What was our ROI?

    I have observed return on investment with CrowdStrike Falcon Complete MDR as I learned about the dashboards. However, I have not yet determined a way to monetize the benefits to demonstrate its value to the organization. I am still working on quantifying the financial impact.

    What's my experience with pricing, setup cost, and licensing?

    My experience with pricing, setup costs, and licensing has been challenging. The service can become expensive depending on which modules are needed. Sometimes there are too many modules available, making it difficult to determine which ones to purchase or which ones apply to our specific requirements. At times, features that sound valuable are only available as part of modules we do not currently have. When discussing these features, pricing considerations become complicated, which is the most challenging aspect of the purchasing process.

    Which other solutions did I evaluate?

    During my evaluation process, my organization examined a competitor solution for comparison. The feature sets were comparable between the two options, but the decision was primarily based on pricing considerations.

    What other advice do I have?

    I cannot describe a specific example where CrowdStrike Falcon Complete MDR identified or contained a threat that would have required significant effort from my team because I would need to review the console records. Most of the threats I recall involve PowerShell scripts, and typically the patterns I see are scripts and Python-based attacks.

    CrowdStrike Falcon Complete MDR has improved my confidence in my organization's ability to respond to security incidents. I am actively seeking more information to deepen my understanding of the product.

    CrowdStrike Falcon Complete MDR operates alongside my internal security team and existing SOC process as we are still developing our security operations. The combination of CrowdStrike technology and human security expertise in the MDR service has been valuable based on my experience so far. Although I have not yet handled any high escalations, the service appears to be effective.

    I am aware that CrowdStrike Falcon Complete MDR includes Charlotte AI capabilities. One of the recommendations was the ability to create custom Charlotte AI implementations, and I understand this feature is available, but I have not yet learned enough about it.

    On a scale from one to ten, I would rate CrowdStrike Falcon Complete MDR a seven overall. I rate it a seven because it performs its intended function effectively. I was also instructed to evaluate whether it is truly delivering as intended, which has been challenging to assess. I believe it is doing a great job so far, and that is why I rate it between a six or seven. Once I gain more knowledge about the product, this rating may change. I am currently a supporter of the solution.

    For other organizations considering CrowdStrike Falcon Complete MDR, I would offer both positive and negative observations. CrowdStrike is one of the leading solutions in the industry and appears to be maintaining its position. They are keeping up with emerging threats and staying ahead of threat actors, which is a significant positive factor. The negative aspects are that the console is difficult to use and there are too many modules, making it challenging to determine what to purchase. I hope that Charlotte AI will improve the overall user experience and platform usability. My overall rating for this product is seven out of ten.

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    Last updated: Sep 2, 2026
    Flag as inappropriate
    PeerSpot user
    Muhammad  Fahad - PeerSpot reviewer
    Assistant Director to ACIR at Board Of Revenue
    Real User
    Top 5
    Sep 4, 2025
    Enhanced security team efficiency and proactive threat management with room to improve alert management and cost-efficiency
    Pros and Cons
    • "The solution offers seamless SOC extension, zero-day protection, advanced threat intelligence, and rapid incident containment."
    • "There are several issues we are facing with CrowdStrike Falcon Complete MDR, including data overload, noise, and false positive alerts."

    What is our primary use case?

    There are several use cases for CrowdStrike Falcon Complete MDR. The main ones include 24/7 threat monitoring, business continuity assurance, and incident response and containment. The solution provides rapid isolation of endpoints and prevents lateral movement.

    What is most valuable?

    The solution offers seamless SOC extension, zero-day protection, advanced threat intelligence, and rapid incident containment. There are four main categories regarding the features: detection capabilities, response capabilities, operational value, and business value.

    The threat intelligence features provide numerous benefits, including a customizable dashboard, automated enrichment, and real-time threat feeds. The real-time threat feeds provide reduced alert fatigue and faster incident response capabilities.

    What needs improvement?

    There are several issues we are facing with CrowdStrike Falcon Complete MDR, including data overload, noise, and false positive alerts. We experience alert fatigue, contextual gaps, integration complexity, and timeliness of intelligence challenges in our environment.

    Areas that should be improved include noise reduction, prioritization, real-time delivery, and advanced threat coverage. The filtering algorithm should be improved to address these concerns.

    For how long have I used the solution?

    The customer has around two to three years of experience with this tool.

    What was my experience with deployment of the solution?

    The deployment was seamless. While there were some hurdles, we mitigated them accordingly. We received assistance from a consultant from the local vendor side.

    What do I think about the stability of the solution?

    The stability is approximately 80% satisfactory.

    What do I think about the scalability of the solution?

    There were several hurdles regarding scalability levels. We needed to implement policies and make various adjustments. After a certain period, we achieved our objectives accordingly. Once all objectives were met, the solution proved to be fully scalable.

    How are customer service and support?

    The L1 engineer should be more technical to improve the support.

    How would you rate customer service and support?

    Neutral

    Which solution did I use previously and why did I switch?

    We previously used the Kaspersky solution. After spending considerable time with Kaspersky and experiencing numerous issues and hurdles, we decided to switch to CrowdStrike.

    How was the initial setup?

    The initial setup provided smooth onboarding, rapid deployment, 24/7 expert monitoring, and faster detection and response capabilities.

    What about the implementation team?

    We received assistance from a consultant from the local vendor side.

    What was our ROI?

    We have a strategic plan and intend to work with the solution on a long-term basis.

    What's my experience with pricing, setup cost, and licensing?

    The cost is not reasonable and should be more cost-efficient. From an enterprise level perspective, it should be reduced by approximately 20 to 25%.

    Which other solutions did I evaluate?

    There were several hurdles regarding scalability levels. We needed to implement policies and make various adjustments. After a period of time, we achieved our objectives accordingly.

    What other advice do I have?

    My position is Assistant Director, and I can be reached at fahad.jamil@punjab-zami.gov.pk. I am available anytime, though scheduling an appointment in advance is preferred. After multiple attempts, we finally managed to connect, and it has been a great meeting with both you and the CrowdStrike team. The reviewer rated CrowdStrike Falcon Complete MDR a 7 out of 10.

    Which deployment model are you using for this solution?

    On-premises

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Other
    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    Renju  Varghese - PeerSpot reviewer
    General Manager at a computer software company with 10,001+ employees
    MSP
    Top 10
    Apr 29, 2025
    Automated response capabilities have been effective for threat management
    Pros and Cons
    • "I find CrowdStrike Falcon Complete MDR to be effective and stable, with minimal false positives."
    • "I have found customer support to be fairly good but it could be quicker."

    What is our primary use case?

    We use CrowdStrike Falcon Complete MDR as a Managed Detection and Response (MDR) solution. Our team monitors alerts, checks their validity with users, and takes necessary actions for remediation and addressing security aspects.

    What is most valuable?

    I find CrowdStrike Falcon Complete MDR to be effective and stable, with minimal false positives. It is a trusted platform, even after a larger CrowdStrike incident last year involving a blue screen of death. I find the automated response capabilities particularly helpful.

    What needs improvement?

    I am comfortable with the way it is working right now. From a pricing perspective, I am not really involved, so I do not know. For UI/UX, it is good, but I think they should keep up with the times. I do not have any particular issues.

    For how long have I used the solution?

    I have used the solution for about four or five years.

    What do I think about the stability of the solution?

    I find that it is very stable; however, there is always room for improvement. There is no near perfection, it can still be better.

    What do I think about the scalability of the solution?

    I believe that the solution has the capability to expand. I can deploy a number of clients without impact as long as there are a sufficient number of licenses.

    How are customer service and support?

    I have found customer support to be fairly good but it could be quicker.

    How would you rate customer service and support?

    Neutral

    Which solution did I use previously and why did I switch?

    Previously, I have experienced Symantec Endpoint Protection, but I do not think it's really comparable with how CrowdStrike is. The product sets are completely different.

    How was the initial setup?

    I found the initial setup to be fairly simple.

    What other advice do I have?

    I rate CrowdStrike Falcon Complete MDR an eight out of ten. I do not use AI technology with CrowdStrike.

    Which deployment model are you using for this solution?

    I am using a Hybrid Cloud deployment model.

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Other
    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    Rodrigo Censi - PeerSpot reviewer
    Technical Support Analyst at a computer software company with 51-200 employees
    Vendor
    Top 5
    Jan 12, 2025
    Firewall management and detection enhance performance with opportunities for AI integration
    Pros and Cons
    • "The features of Firewall Management control, combined with controls in NextGen, are the most useful for our clients."
    • "With the support of the CrowdStrike team, I rate them a ten out of ten."
    • "Patch management in vulnerabilities needs improvement."
    • "There is room for improvement in the AI of CrowdStrike, known as Charlotte AI, which my team does not currently use. Additionally, patch management in vulnerabilities needs improvement."

    What is our primary use case?

    I am an analyst in cybersecurity with a focus on detection and response. I entered this portal because I needed comprehensive, comparative bundles for endpoints. 

    My experience includes working with CrowdStrike, SentinelOne, Microsoft Defender, and Kaspersky using the licenses we have. I am an endpoint analyst in deployment services, and we practice reclamation. We use this in our clients, primarily for detection and response. The next-gen Censi works best with other clients, but detections perform best with our clients.

    What is most valuable?

    The features of Firewall Management control, combined with controls in NextGen, are the most useful for our clients. These features are crucial in detection. We have achieved 100% success in detection with our clients and have no need for reclamation. The documentation is well-prepared for deployment, and the support team responds quickly. Processing performance for detection and configuration is also beneficial.

    What needs improvement?

    There is room for improvement in the AI of CrowdStrike, known as Charlotte AI, which my team does not currently use. I have not had contact with it at this moment. 

    Additionally, patch management in vulnerabilities needs improvement.

    For how long have I used the solution?

    I have worked with CrowdStrike Falcon for two years, although I do not currently have a certificate. I am studying to obtain a Falcon certificate.

    What do I think about the stability of the solution?

    The solution is stable, like Falcon, and does not cause any problems for the agent to work with minimal memory. It does not have the right processes in workstations, which is different from other endpoints.

    What do I think about the scalability of the solution?

    Regarding the scalability of CrowdStrike, I don't have any problems. It is easy to scale with the support of CrowdStrike.

    How are customer service and support?

    With the support of the CrowdStrike team, I rate them a ten out of ten. I don't have any problems with support. Almost every time I send a message to support, the response is fast. The CrowdStrike team does not break the SLA time. We maintain separate communication within SLA time.

    How would you rate customer service and support?

    Positive

    Which solution did I use previously and why did I switch?

    I have experience with the product we've been working with, Kaspersky, Defender, and SentinelOne.

    How was the initial setup?

    The setup is easy. The documentation is well-prepared for deployment. Deploy is mostly migrated, making it easier to pass to the final client.

    What about the implementation team?

    My team is composed of five members who work in deploying clients. We include five cybersecurity analysts. My squad has both CrowdStrike and three people.

    What was our ROI?

    They expect a return of 30% to 40%.

    Which other solutions did I evaluate?

    I have experience with the product we've been working with, Kaspersky, Defender, and SentinelOne.

    What other advice do I have?

    I recommend this product as it is a very powerful endpoint. Compared to other endpoints, it is one of the best in detection and response. I rate it nine out of ten. The management with the console is easy, costs are low, and the detection response alerts are very fast. I mentioned AI and patch management in vulnerabilities earlier.

    Which deployment model are you using for this solution?

    On-premises
    Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
    PeerSpot user
    Otis Brinson - PeerSpot reviewer
    Principal at GoTo Foods
    Real User
    Sep 5, 2024
    Helps users keep track of everything from one place
    Pros and Cons
    • "The most valuable features of the solution stem from the fact that we can track all of it in one place across all those different locations."
    • "The tool's customer service team’s inability to respond to our company’s queries is an area where improvements are needed."

    What is our primary use case?

    I use the solution in my company on the endpoint, and then we're using it on our point of sales in all of our franchisees' locations, and then we have about seven brands. We are deploying a new point. We are using it as our main endpoint protection. We are trying to monitor all activities happening at our franchisees' locations proactively, allowing us to realize we have to be very proactive. Most of the time, our franchisees are not as proactive. The changes in PCI DSS 4.0 are forcing everyone to be a little bit more proactive, so we have to educate and be a little more involved to ensure we have solutions in place because we are the ones who select the point of sale system. We often tell the franchisee what point of sale to use in the back end, and because of that, they feel like that is our company's responsibility, but it is really a shared responsibility. Even though we make that selection and buy the tool, they also own the responsibility of making sure they protect the brand. We decided to take that out of their hands and decide their endpoint solution. We made it a part of the package, and it got deployed, but that allows us to be proactive in protecting our brands. If they do anything that actually puts our brands in jeopardy, we are able to proactively respond and stay on top of that to avoid breaches and things of that nature.

    What is most valuable?

    The most valuable features of the solution stem from the fact that we can track all of it in one place across all those different locations. Because it's cloud-based and reports up to the cloud, we also have access to the back end, and an incident response team monitors all incidents. We also have an escalation process in place. From my perspective, there are other pieces of CrowdStrike that the security architect team uses as well, but I don't get involved with those as much. I usually just wait for the end results or the notification if I need to get involved if there is an incident.

    What needs improvement?

    The tool's customer service team’s inability to respond to our company’s queries is an area where improvements are needed.

    For how long have I used the solution?

    I have been using CrowdStrike Falcon Complete MDR for a year.

    What do I think about the scalability of the solution?

    The number of endpoints we deal with is changing, but ultimately, there will probably be at least 12,000 endpoints. It is a two-year project, so we are only tagging it by the end of the year for our new point of sale. Currently, the endpoints are only on one point of sale we use. We have an initiative to push out our new point of sale, and the solution is included. As we standardize one point of sale, we will cover that piece of it, but again, it is probably going to be about 12,000 endpoints.

    How are customer service and support?

    I would say the tool's customer service has been able to respond and give us the answers that we needed. I rate the technical support an eight out of ten.

    How would you rate customer service and support?

    Positive

    Which solution did I use previously and why did I switch?

    Before CrowdStrike, we had Cylance.

    We switched from Cylance to CrowdStrike because, and I just want to make sure, it probably had more to do with the cloud side of things because we also use CrowdStrike for our cloud or AWS environment. We needed a platform that allowed us to unify the management piece of it, so we switched over to CrowdStrike, which manages the endpoint side. We also use that on our AWS business side to manage that whole infrastructure.

    How was the initial setup?

    The product's initial setup phase was very straightforward.

    I was involved in the setup phase with the original part when a testing piece happened at the store level. I was involved in making sure that the infrastructure could operate and function with that endpoint protection piece. The part that I was involved with came with a lot of requests for firewall changes.

    The implementation strategy was able to when a point of sale is being pushed or updated or upgraded to the franchisees, that it is part of a package or image, the agents were automatically installed. It rolled into the store deployment piece of it, and that was probably the biggest strategy, making sure that it was a part of the actual roll out for the point of sale system.

    The solution was deployed with an internal team of 15 people, counting the third-party support teams we outsource with, which provided the first-level support for the tool. Even after we deploy the tool, it is all about making sure those guys are able to respond and things of that nature. A lot of times, infrastructure had to be standardized, but along with that, standardization allowed us to be able to the point of sale, include the endpoint solution, and move forward.

    What was our ROI?

    Speaking about ROI, we have seen what a breach can cost us. With a couple of years behind us, we have seen where breaches cost us. Not having a solution that allows us to be proactive is one of the main reasons the solution is being deployed. We are seeing how to take more than 6,000 locations across the US and stay on top of incidents and security changes happening daily. We know that the return is huge just from being proactive. When there are incidents, the fact that we can control and manage it across all of our brands is probably one of the biggest wins for us because before, we had different points of sale, but not all of them had endpoint protection, so we were very vulnerable.

    Which other solutions did I evaluate?

    I know for a fact we evaluated other options. I have no clue about what they are or were because I wasn't one of the evaluators. Andy and Willy evaluated the different options, and they came back with CrowdStrike. We had started deploying CrowdStrike even before Andy joined the team, and he took it over with Willy and added more features to it.

    What other advice do I have?

    The good part about it for us is that one of the big questions is that I think CrowdStrike is definitely one of the leaders, and we love the product. One of our big challenges was trying to figure out the cost around it and how to take that cost and push it back to our franchisee. I think we are starting to figure that piece out. One of the good things about the CrowdStrike Falcon Complete MDR on the endpoints side of it is that we were looking for something that supported Windows, iOS, Android, and Linux. I think they check all the boxes. I think I'm finalizing what we will be able to do on the Android side of things and the iOS side of things. I think we are at a point where we're getting to a point with CrowdStrike where we know what the cost is, and we know that it's a viable solution. It is about getting the numbers together to see if it makes sense from a financial standpoint.

    I know that the team was working on getting better numbers, and they did. I think that allowed us to be able to move forward on working on the numbers to present to our executive team. I got to speak with them this morning, and I know that they got the numbers, so I think we have a good place, to be honest with you, as far as numbers now.

    The maintenance part is good. The main thing is that we are in the retail sector, and somebody at the end of the day on the retail side will manage things when a point of sale goes up or down, making sure that everything is in place. There is somebody on the security side who manages everything and has to address when an endpoint is being removed or is offline, so there are two people on it. There is also a 24-hour support team, whether that be our offshore team, which is mostly going to be an offshore team that will respond to issues. But again, you have a security team that is going to monitor the endpoints and know when they are offline, kick off tickets, and push to the support team to make them look into it. Somebody on the retail team should be able to tell us that a particular solution has been upgraded, so there is always a little checking and balancing when it comes to things on top of what is happening on the point-of-sale side of things on the payment side of things.

    The tool offered us the flexibility that we needed. The biggest thing is that it allows us to work because we are moving to a franchisee or hospitality solution or platform solution, especially for security-conscious people. In my industry, it has not always been as security-conscious. Security was only pulled on an as-needed basis. We are changing the atmosphere. We are changing that and being more proactive. That is why some of our processes take us a minute. We are not just in all locations, making things a little more challenging. You have to push and make sure the cost doesn't disrupt what a franchisee has going on. You have to look at it from a holistic standpoint. The solution has allowed us to do that and gradually push the security needs that we need to have in place.

    I rate the tool a nine out of ten.

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    Raj Choudahry - PeerSpot reviewer
    Chief Financial Officer at Nibbi Bros., Inc.
    Real User
    Mar 12, 2024
    Helps improve our security posture, frees up IT staff time, and is stable
    Pros and Cons
    • "The response service is the most valuable as it frees up our IT staff to focus on other tasks."
    • "Like any other solution, a lower price would make CrowdStrike Falcon Complete more appealing."

    What is our primary use case?

    We use CrowdStrike Falcon Complete as our MSSP.

    We previously relied on antivirus products like Sophos and Malwarebytes, which seemed to function adequately. However, Sophos lacked centralized management, requiring our IT team to manually review over a hundred security notifications daily. This became an unsustainable workload, prompting us to seek a solution that could automate the notification review process. That's when we began exploring different options.

    How has it helped my organization?

    CrowdStrike Falcon Complete has significantly bolstered our security posture. While the active monitoring itself is valuable, it was consuming resources from our IT team. Now, with CrowdStrike's Managed Detection and Response service, our IT team is freed up to focus on other critical tasks.

    What is most valuable?

    The response service is the most valuable as it frees up our IT staff to focus on other tasks.

    What needs improvement?

    Like any other solution, a lower price would make CrowdStrike Falcon Complete more appealing.

    For how long have I used the solution?

    I have been using CrowdStrike Falcon Complete for one month.

    What do I think about the stability of the solution?

    CrowdStrike is stable.

    What do I think about the scalability of the solution?

    CrowdStrike is scalable.

    How are customer service and support?

    CrowdStrike's service is excellent.

    How would you rate customer service and support?

    Positive

    Which solution did I use previously and why did I switch?

    We previously used Sophos in their cloud environment. While it performed adequately for its intended purpose, it lacked managed detection and response capabilities. This meant our IT team shouldered the burden of MDR, which is why we transitioned to CrowdStrike to offload that responsibility.

    How was the initial setup?

    The initial deployment was straightforward. Our strategies ensure comprehensive agent deployment across all machines in the organization. Therefore, we leverage deployment tools to efficiently distribute software throughout our network.

    One person from IT was required for the deployment.

    What about the implementation team?

    The implementation was completed in-house.

    What was our ROI?

    The return on investment comes from two key benefits: a more secure environment and the offloading of security log monitoring from our team to CrowdStrike's experts.

    What's my experience with pricing, setup cost, and licensing?

    We pay $50,000 for the 200 endpoints we have.

    Which other solutions did I evaluate?

    In our search for a managed security service provider, we shortlisted three vendors: SentinelOne, Carbon Black, and CrowdStrike. After consulting with some security specialists, we determined that CrowdStrike would be the best fit for our needs.

    What other advice do I have?

    I would rate CrowdStrike Falcon Complete eight out of ten.

    The costs met our expectations. After consulting with Hamilton, CDW, and an independent security consultant, CrowdStrike Falcon Complete emerged as the leading solution in the field. We therefore decided to implement it.

    The maintenance is completed by CrowdStrike.

    Which deployment model are you using for this solution?

    Private Cloud
    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    Darrin Barnes - PeerSpot reviewer
    Chief Information Officer at a tech services company with 1-10 employees
    Real User
    Feb 27, 2024
    Gives fast results, and makes life easy with proactive monitoring and remediation
    Pros and Cons
    • "I am not a CrowdStrike fanboy, but as an IT leader, they make my life easy. I like proactive monitoring and remediation, so I do not have to guess or run around. They are doing everything for me."
    • "The biggest thing is to scan into your Office 365 environment, not from a cloud access security broker standpoint, but from the Secure Access Security Edge standpoint in protecting the Copilot ecosystem. Copilot has become more widely popular than I could have imagined. You need to back up and protect your Office 365 tools anyway, and Copilot is just a high sense of awareness."

    What is our primary use case?

    We are using CrowdStrike Falcon Complete. We are using the managed service program, where they do proactive monitoring.

    My usage usually includes logging in and looking at the dashboard for any anomalies or anything I need to know and responding to any severity alerts in red, yellow, or green. 

    How has it helped my organization?

    They actively stopped someone scanning our network and found vulnerabilities that we did not know. They were put to the test quickly. Pretty much after we signed the contract, they were responding to something at 1:30 in the morning.

    It went live in Q4 when we acquired a hospital. I cannot even tell how many patches were down. CrowdStrike did a vulnerability scan, and as they were doing the scan, they caught a bad actor. We finalized everything at 5 PM, and at 1:30 in the morning, they caught someone.

    What is most valuable?

    I am not a CrowdStrike fanboy, but as an IT leader, they make my life easy. I like proactive monitoring and remediation, so I do not have to guess or run around. They are doing everything for me. Secondly, what sold the CEO on it was the insurance policy. After they do a clean slate, they are willing to issue an insurance policy for cybersecurity. They are doing something that nobody else does. Outside the technical piece, they are talking the talk and walking the walk of issuing your policy once they certify that you are fine. They issue a cybersecurity policy once they certify your environment has a clean bill of health and data protection.

    Their proactive monitoring has been the most effective in stopping cyber threats. There is only so much you can do when you are in the office. There are only so many tools that you can buy that can help you. You can say what you want, but all the tools for IT are more reactive. They are not proactive. Somebody has to be on the front line.

    I love their dashboards. It was more or less a paradigm shift in 2020, but now I am used to it. It was a paradigm shift because it went away from the norm.

    What needs improvement?

    The biggest thing is to scan into your Office 365 environment, not from a cloud access security broker standpoint, but from the Secure Access Security Edge standpoint in protecting the Copilot ecosystem. Copilot has become more widely popular than I could have imagined. You need to back up and protect your Office 365 tools anyway, and Copilot is just a high sense of awareness.

    For how long have I used the solution?

    We have been using CrowdStrike Falcon Complete since November 2021. 

    What do I think about the scalability of the solution?

    Over the last couple of years, I have seen how they have grown. I am happy with their evolution.

    How are customer service and support?

    I love the team. They have a fine balance of technical and service. It is a very good thing. I would rate them a nine out of ten because everybody has room to improve.

    How would you rate customer service and support?

    Positive

    Which solution did I use previously and why did I switch?

    The reason for going for CrowdStrike Falcon Complete was simple. A managed service provider was compromised. We were compromised because an attack came through our managed service provider, and the fine print of their contract said that they are not responsible for any threats that happen.

    How was the initial setup?

    It is a cloud solution. The endpoints are installed on each computer, but everything else is through CrowdStrike's Cloud Platform.

    The installation was a paradigm shift because we moved away from the endpoint protection piece, and we were open and saw how the world has evolved where we got to have different connectors. It was just a paradigm shift of how far we have come or how much we have to do to make sure we are secure.

    From start to finish, it took up to eight weeks because there were a couple of things that we missed or and they were looking for best practices. 

    What about the implementation team?

    We did not have the skill set to implement it on our own. We worked directly with CDW and CrowdStrike.

    Three other people and I were involved in its deployment, so we had four people. From CDW and CrowdStrike, that was a team. It was like the Justice League. There were 12 people.

    In terms of maintenance, you need to do what you are supposed to do. When you do not follow their playbook, you open yourself to problems. They tell you how to install and configure an endpoint. For the admin piece of it, there are reporting tools and proactive services, but you have to be open. If they are going to take the security piece off you, you have got to give them the keys to the car. You have to understand that if they are going to do this, you need to get out of the way and let them do what they do best.

    What's my experience with pricing, setup cost, and licensing?

    If you are looking from an IT standpoint, you get what you pay for. There is proactive monitoring in addition to the insurance policy. They do that better than others. Would you like it cheaper? Yes, but at what cost?

    Which other solutions did I evaluate?

    At that time, Palo Alto was not at their level. SentinelOne was always trying, but back then, the company that was backing SentinelOne was compromised itself. If you cannot protect yourself, why would I trust you to protect my environment?

    What other advice do I have?

    Open your mind. Understand that what you thought you knew may not be good enough. It is not a knock on you. You are now just getting professionals who do it better than what you possibly could do internally. Keep an open mind, but understand that they are the experts and industry leaders for reasons.

    What a lot of clients do not take advantage of is the monthly calls where you can see what is coming down the pipe or have the best practice of using the product, and then keep the staff up to speed. You can work with their client success manager to look at your particular setup and what you can do to finetune the product. You can work with them for any anomalies or something that does not make sense.

    Everybody has room to improve, but this one is different. I have to give it a ten out of ten.

    Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
    PeerSpot user
    Mohammad Yassien - PeerSpot reviewer
    Cloud Engineer at Al-Khaleej Training and Education
    Real User
    Mar 12, 2024
    Offers 24/7 monitoring, prevents threats from installing on our machines, and improves our response time
    Pros and Cons
    • "Two of the most valuable features of CrowdStrike Falcon Complete are the remote terminal and unlimited IoCs."
    • "CrowdStrike Falcon Complete does not include patch management functionality."

    What is our primary use case?

    We leverage CrowdStrike Falcon Complete, our EDR solution, alongside Microsoft Defender.

    We implemented CrowdStrike Falcon Complete to safeguard our end users from unwanted applications, as recommended. Its IoC technology prevents the installation of both vulnerable applications and adware.

    CrowdStrike Falcon Complete is deployed in the AWS, Azure, and GCP clouds.

    How has it helped my organization?

    CrowdStrike Falcon Complete made our incident response and remediation effort smoother.

    Deep analysis is a valuable tool because whenever an unauthorized process is executed, it provides us with a comprehensive understanding of how the attacker is behaving within our system.

    CrowdStrike Falcon Complete's 24/7 monitoring simplifies security management for our organization. We receive notifications through the message center regarding any detected incidents. Additionally, their cybersecurity engineers are available for consultation via phone call should any questions arise.

    Our organization has benefited significantly from CrowdStrike Falcon Complete. It allows us to easily add Indicators of Compromise and perform on-demand scans. When threats are detected during these scans, the files are automatically blocked, preventing them from executing on the machine. Additionally, the support team is responsive and helpful, offering assistance without requiring the creation of a ticket.

    Our overall security response time has improved by up to 80 percent.

    What is most valuable?

    Two of the most valuable features of CrowdStrike Falcon Complete are the remote terminal and unlimited IoCs. Most security solutions limit IoCs to around 20, but Falcon Complete allows us to upload as many as we need. Additionally, the centralized security management system is a great feature. It lets us run on-demand scans on our devices and view the results conveniently in the cloud.

    What needs improvement?

    CrowdStrike Falcon Complete does not include patch management functionality.

    For how long have I used the solution?

    I have been using CrowdStrike Falcon Complete for eight months.

    What do I think about the stability of the solution?

    I would rate the stability of CrowdStrike Falcon Complete nine out of ten.

    What do I think about the scalability of the solution?

    CrowdStrike Falcon Complete is scalable, but to expand its capabilities, you'll need to acquire additional licenses.

    The cloud-native architecture allows us to just focus on the work and not worry about the hardware.

    How are customer service and support?

    CrowdStrike Falcon Complete offers faster technical support compared to Microsoft, which often has long response times and redirects customers to partners.

    How would you rate customer service and support?

    Positive

    Which solution did I use previously and why did I switch?

    We switched from Sophos to CrowdStrike Falcon Complete for its broader capabilities.

    How was the initial setup?

    The deployment process, involving six people and supported by CrowdStrike, took eight months to complete. We uninstalled our existing applications from the machines and installed the token as part of the deployment. 

    What was our ROI?

    We have seen a medium to high return on investment.

    What's my experience with pricing, setup cost, and licensing?

    While CrowdStrike Falcon Complete is expensive, it offers great features and functionality.

    Which other solutions did I evaluate?

    We evaluated Kaspersky and Microsoft Defender.

    What other advice do I have?

    I would rate CrowdStrike Falcon Complete nine out of ten.

    CrowdStrike Falcon Complete is user-friendly and simple to set up, ensuring a smooth user experience without any added complexity. It automatically detects and blocks infected files or devices, protecting your end users.

    I recommend CrowdStrike Falcon Complete.

    Which deployment model are you using for this solution?

    Public Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Amazon Web Services (AWS)
    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    Buyer's Guide
    Download our free CrowdStrike Falcon Complete MDR Report and get advice and tips from experienced pros sharing their opinions.
    Updated: September 2026
    Buyer's Guide
    Download our free CrowdStrike Falcon Complete MDR Report and get advice and tips from experienced pros sharing their opinions.