Try our new research platform with insights from 80,000+ expert users
CrowdStrike Falcon Sandbox Logo

CrowdStrike Falcon Sandbox pros and cons

Vendor: CrowdStrike
4.1 out of 5

Pros & Cons summary

Buyer's Guide

Get pricing advice, tips, use cases and valuable features from real users of this product.
Get the category report

Prominent pros & cons

PROS

CrowdStrike Falcon Sandbox allows for safe analysis of sensitive documents without public uploads and simplifies spinning up VMs.
It effectively aids in identifying potential breaches with powerful malware analysis through various file sources like emails and USBs.
The platform is valued for features such as malware detection, threat ratings, metadata study, and providing threat intelligence feeds.
Notifications and alerts from CrowdStrike are regarded as invaluable for maintaining security-awareness.
CrowdStrike Falcon Sandbox is recognized for significantly enhancing a company's threat intelligence and is accessible anytime via its cloud deployment.

CONS

Detailed reports are valuable but not always accurate.
Technical support is medium, with communication sometimes slow or late.
There are missing detections that other tools catch.
Improvement is needed in viewing full incident information and data presentation.
Integration with SOAR products is needed to add more integration points.
 

CrowdStrike Falcon Sandbox Pros review quotes

DZ
Owner at Ekforce LLC
Jan 4, 2024
I don't have any suggestions, because the solution is company-maintained and I believe the company is adopting every feature based on their needs and requirements.
Valarie - PeerSpot reviewer
SOC Technical Lead at a educational organization with 1,001-5,000 employees
Jun 24, 2024
It provides a safe way to analyze and review documents that may have sensitive information without uploading them to a public platform. Additionally, provides an easy way to spin up a VM without requiring additional resources and patching of personal or team-managed virtualization.
Zuhair Hasan - PeerSpot reviewer
Manager, Information Technology Security at Nesma
Aug 13, 2024
The tool helps to obtain information about potential company breaches. The malware analysis capability is very effective. We check files from various sources, such as emails, USBs, and cloud drives.
Find out what your peers are saying about CrowdStrike, ANY.RUN, VMRay and others in Anti-Malware Tools. Updated: January 2026.
881,082 professionals have used our research since 2012.
Mahmoud_Yassin - PeerSpot reviewer
CTSO at Cyb3r
Sep 12, 2024
The most valuable features include malware detection, threat rating related to files, studying the metadata of the files, and providing threat feeds to the endpoint.
Abhimanyu Raj - PeerSpot reviewer
Senior Consultant at Ernst & Young
Jan 29, 2025
I find the notifications and alerts received from CrowdStrike server to be invaluable.
reviewer2649111 - PeerSpot reviewer
Security Senior Engineer at a consultancy with 51-200 employees
Feb 13, 2025
CrowdStrike is an excellent tool for managing all endpoint-related security tasks.
PK
IT Manager at Gigabit Technologies Pvt Ltd
May 13, 2025
On a scale of 1-10, I rate CrowdStrike Falcon Sandbox a 10 out of 10.
ZakariaFawzy - PeerSpot reviewer
Presales Consultant at Cyber Knight Technologies FZ LLC
Dec 29, 2025
Since I'm working with CrowdStrike Falcon Sandbox, I would say that the solution enhances a company's threat intelligence, as it's a very powerful solution.
 

CrowdStrike Falcon Sandbox Cons review quotes

DZ
Owner at Ekforce LLC
Jan 4, 2024
One of the valuable features of the solution is to impressively detect threats without any impact on the end point performance. The solution ensures that the end users have a seamless experience.
Valarie - PeerSpot reviewer
SOC Technical Lead at a educational organization with 1,001-5,000 employees
Jun 24, 2024
The detailed report is very valuable, but not always accurate. This is a great resource to share amongst team members and stakeholders after analysis.
Zuhair Hasan - PeerSpot reviewer
Manager, Information Technology Security at Nesma
Aug 13, 2024
The technical support is medium - they could improve, as communication is sometimes slow or late. There are missing detections that other tools catch. For improvements, we need easier ways to view full incident information and better presentation of data. Adding risk indicators for incidents would help decide on immediate actions. The platform should provide more information about incident risks to help less knowledgeable staff make decisions.
Find out what your peers are saying about CrowdStrike, ANY.RUN, VMRay and others in Anti-Malware Tools. Updated: January 2026.
881,082 professionals have used our research since 2012.
Mahmoud_Yassin - PeerSpot reviewer
CTSO at Cyb3r
Sep 12, 2024
The product needs integration with SOAR products to add more integration points, which is important for various clients.
Abhimanyu Raj - PeerSpot reviewer
Senior Consultant at Ernst & Young
Jan 29, 2025
As of now, there is nothing specific in need of improvement.
reviewer2649111 - PeerSpot reviewer
Security Senior Engineer at a consultancy with 51-200 employees
Feb 13, 2025
While CrowdStrike is a powerful tool, the user interface is cluttered with many features, making it challenging to navigate.
PK
IT Manager at Gigabit Technologies Pvt Ltd
May 13, 2025
The CrowdStrike support is not good; the support team does not come remotely, and we repeatedly ask them to collect logs and analyze them before providing a solution via email.
ZakariaFawzy - PeerSpot reviewer
Presales Consultant at Cyber Knight Technologies FZ LLC
Dec 29, 2025
As for room for improvement, we can mention that maybe some additional integrations will be beneficial to cover the whole use cases.