The additional quota was a factor that led us to consider a change; we went from five detonations per day to 250 per month. Multi-platform analysis in CrowdStrike Falcon Sandbox has helped identify threats. The effectiveness of CrowdStrike Falcon Sandbox has been roughly 90 to 100 percent for our operations. Custom indicators of compromise in CrowdStrike Falcon Sandbox add to our cybersecurity strategy; it is a small part of the strategy, but it plays a significant part in keeping all of the tenants that we have onboarded up to date on relevant files that we are seeing in our environment. That memory forensic capability in CrowdStrike Falcon Sandbox is not something we utilize significantly, but we know of its importance. We utilize memory forensics sometimes in CrowdStrike Falcon Sandbox to review the entropy snapshot; if we see a high level of entropy in the Sandbox report, that could lead to a decision that the file is most likely suspicious, but we use that as an additional item to review. Regarding how features of CrowdStrike Falcon Sandbox have benefited my organization, there is a real-time feature in CrowdStrike Falcon Sandbox, so we can deploy the operating system of choice; we can also analyze archived files, and those features have been helpful as we can interact with the file in certain ways and get additional interaction metrics. I rate CrowdStrike Falcon Sandbox overall as a solution at a nine out of ten. A higher interaction time with the file would give CrowdStrike Falcon Sandbox a ten out of ten for us. If you utilize Falcon Endpoint Protection, I would highly recommend CrowdStrike Falcon Sandbox because the telemetry goes hand-in-hand with that other product.
Presales Consultant at Cyber Knight Technologies FZ LLC
Reseller
Top 10
Dec 29, 2025
Regarding the price, if I am purchasing a single module from CrowdStrike Falcon Sandbox, maybe it's not the best option pricewise. However, if I am acquiring multiple solutions or multiple modules from CrowdStrike Falcon Sandbox, for sure CrowdStrike Falcon Sandbox will provide the best option, the best price. My clients usually have the solution on cloud. They utilize both private and public cloud. The cloud services are natively CrowdStrike Falcon Sandbox cloud, as they use AWS. Purchasing the product from AWS Marketplace can be done. However, for CrowdStrike Falcon Sandbox specifically, I purchase this product directly from the vendor, not through AWS. I would give this product an overall rating of 9 out of 10.
The impact of CrowdStrike Falcon Sandbox on automated features is maintained by the partner. Customizable reports partly help me with my team's investigations. We are not using any other security tools; we are only using the Falcon. In my organization, approximately 50 users are using CrowdStrike Falcon Sandbox. There is nothing that requires maintenance; the partner handles it. I rate CrowdStrike Falcon Sandbox eight out of ten.
I am currently working as an IT manager. We are a value partner and reseller for CrowdStrike, McAfee, Trellix, and Trend Micro.We are not using CrowdStrike Falcon Sandbox for Log Management ( /categories/log-management ) or Falcon LogScale ( /products/falcon-logscale-reviews ). We can elaborate on the AI solution in the Trend Micro Vision One console; we can create a playbook from the AI, which is achievable through the Vision One console.On a scale of 1-10, I rate CrowdStrike Falcon Sandbox a 10 out of 10.
I would definitely recommend this product. The reasons for this recommendation include the scalability it offers, how user-friendly it is, and how easy it is to customize it according to an organization's needs. I think those aspects are the most important. The overall product rating is nine out of ten.
Mahmoud recommends CrowdStrike Sandbox as it is one of the best products on the market. However, additional modules are required for effective integration and usage. I'd rate the solution eight out of ten.
It's not about adding devices but using the service to identify risks. We've integrated it with our SIEM without problems. I rate the overall solution an eight out of ten.
Anti-Malware Tools offer robust protection against malicious software, safeguarding systems from threats such as viruses, ransomware, and spyware. These solutions are essential for maintaining the integrity and security of IT environments within organizations.Anti-Malware Tools provide comprehensive security by utilizing advanced scanning techniques and real-time threat detection. They ensure minimal disruption by identifying and neutralizing malware before it infects the system. The...
The additional quota was a factor that led us to consider a change; we went from five detonations per day to 250 per month. Multi-platform analysis in CrowdStrike Falcon Sandbox has helped identify threats. The effectiveness of CrowdStrike Falcon Sandbox has been roughly 90 to 100 percent for our operations. Custom indicators of compromise in CrowdStrike Falcon Sandbox add to our cybersecurity strategy; it is a small part of the strategy, but it plays a significant part in keeping all of the tenants that we have onboarded up to date on relevant files that we are seeing in our environment. That memory forensic capability in CrowdStrike Falcon Sandbox is not something we utilize significantly, but we know of its importance. We utilize memory forensics sometimes in CrowdStrike Falcon Sandbox to review the entropy snapshot; if we see a high level of entropy in the Sandbox report, that could lead to a decision that the file is most likely suspicious, but we use that as an additional item to review. Regarding how features of CrowdStrike Falcon Sandbox have benefited my organization, there is a real-time feature in CrowdStrike Falcon Sandbox, so we can deploy the operating system of choice; we can also analyze archived files, and those features have been helpful as we can interact with the file in certain ways and get additional interaction metrics. I rate CrowdStrike Falcon Sandbox overall as a solution at a nine out of ten. A higher interaction time with the file would give CrowdStrike Falcon Sandbox a ten out of ten for us. If you utilize Falcon Endpoint Protection, I would highly recommend CrowdStrike Falcon Sandbox because the telemetry goes hand-in-hand with that other product.
Regarding the price, if I am purchasing a single module from CrowdStrike Falcon Sandbox, maybe it's not the best option pricewise. However, if I am acquiring multiple solutions or multiple modules from CrowdStrike Falcon Sandbox, for sure CrowdStrike Falcon Sandbox will provide the best option, the best price. My clients usually have the solution on cloud. They utilize both private and public cloud. The cloud services are natively CrowdStrike Falcon Sandbox cloud, as they use AWS. Purchasing the product from AWS Marketplace can be done. However, for CrowdStrike Falcon Sandbox specifically, I purchase this product directly from the vendor, not through AWS. I would give this product an overall rating of 9 out of 10.
The impact of CrowdStrike Falcon Sandbox on automated features is maintained by the partner. Customizable reports partly help me with my team's investigations. We are not using any other security tools; we are only using the Falcon. In my organization, approximately 50 users are using CrowdStrike Falcon Sandbox. There is nothing that requires maintenance; the partner handles it. I rate CrowdStrike Falcon Sandbox eight out of ten.
I am currently working as an IT manager. We are a value partner and reseller for CrowdStrike, McAfee, Trellix, and Trend Micro.We are not using CrowdStrike Falcon Sandbox for Log Management ( /categories/log-management ) or Falcon LogScale ( /products/falcon-logscale-reviews ). We can elaborate on the AI solution in the Trend Micro Vision One console; we can create a playbook from the AI, which is achievable through the Vision One console.On a scale of 1-10, I rate CrowdStrike Falcon Sandbox a 10 out of 10.
I would definitely recommend this product. The reasons for this recommendation include the scalability it offers, how user-friendly it is, and how easy it is to customize it according to an organization's needs. I think those aspects are the most important. The overall product rating is nine out of ten.
Mahmoud recommends CrowdStrike Sandbox as it is one of the best products on the market. However, additional modules are required for effective integration and usage. I'd rate the solution eight out of ten.
It's not about adding devices but using the service to identify risks. We've integrated it with our SIEM without problems. I rate the overall solution an eight out of ten.
I would rate it 8 out of 10.