Product Avatar Image

CrowdStrike

Show rating breakdown
742 reviews
  • 14 profiles
  • 40 categories
Average star rating
4.6
#1 in 14 categories
Grid® leader
Serving customers since
2011

CrowdStrike Solutions

Discover ready-made solutions that bring related products, reviews, and resources together in one place.

Featured Products

Profile Filters

All Products & Services

Product Avatar Image
CrowdStrike Falcon Intelligence Recon

3 reviews

The world’s leading AI-native platform for unified digital risk management. Prevent dark web threats that could compromise identities, steal sensitive data, and destroy your organization’s brand.

Product Avatar Image
Falcon Threat intelligence

3 reviews

CrowdStrike Falcon® Threat Intelligence is a comprehensive solution designed to empower organizations with real-time insights into cyber adversaries, enabling proactive defense strategies. By integrating automated analysis with expert human intelligence, Falcon Threat Intelligence delivers actionable information on adversary tactics, techniques, and procedures (TTPs, allowing security teams to anticipate and mitigate threats effectively. Key Features and Functionality: - Automated Threat Analysis: Performs in-depth investigations of malicious activities, reducing the time and expertise required for manual incident analysis. - Adversary Profiling: Provides detailed profiles of over 255 adversaries, including nation-states, eCrime groups, and hacktivists, outlining their motives, methods, and commonly exploited vulnerabilities. - Real-Time Threat Intelligence: Delivers up-to-date information on emerging threats, enabling organizations to stay ahead of evolving cyber risks. - Digital Risk Protection: Monitors the dark web and other external sources to identify potential threats targeting the organization, such as domain impersonations and data leaks. - Seamless Integration: Integrates with existing security infrastructure, enhancing overall security posture without disrupting current operations. Primary Value and Problem Solved: Falcon Threat Intelligence addresses the critical need for organizations to transition from reactive to proactive cybersecurity postures. By providing comprehensive, real-time insights into adversary behaviors and potential threats, it enables security teams to anticipate attacks, strengthen defenses, and respond swiftly to incidents. This proactive approach significantly reduces the risk of breaches, minimizes potential damage, and ensures business continuity in the face of an ever-evolving threat landscape.

Product Avatar Image
CrowdStrike Charlotte AI

2 reviews

A generative, agentic AI assistant built into the CrowdStrike Falcon® platform that enables SOC analysts to use plain-language queries to surface hidden threats, triage detections, automate workflows, and generate investigative insights. Features include Charlotte AI Detection Triage (automatically assesses endpoint detections with >98 % accuracy, saving ~40+ hours/week) and newer modules like Agentic Response and Agentic Workflows, which autonomously reason and act under expert-defined guardrails across security operations

Product Avatar Image
Sentian Solutions

0 reviews

The Sentian Management Software is a practice management software designed for solo attorneys.

Product Avatar Image
Falcon Onum

0 reviews

Falcon Onum is a real-time, security-native data pipeline and telemetry control platform that ingests, filters, enriches, and routes data in motion before it reaches SIEMs, data lakes, analytics platforms, and AI systems. Built for modern IT, SecOps, and SecDataOps teams, Onum enables organizations to reduce noise, control ingestion costs, accelerate migrations, and deliver high-fidelity, context-rich telemetry across heterogeneous environments. Unlike generic observability pipelines, Falcon Onum is purpose-built for security and IT use cases, with in-pipeline transformation, enrichment, masking, aggregation, and policy-based routing that ensures downstream systems receive the right data in the right format at the right time. Organizations use Onum to modernize legacy SIEM architectures, eliminate brittle point-to-point integrations, optimize storage spend, and create an AI-ready data foundation that improves detection accuracy and investigative speed. Designed for scale, flexibility, and ecosystem openness, Falcon Onum empowers enterprises to shape once and deliver anywhere — while maintaining full control over their security telemetry lifecycle.

Profile Name

Star Rating

597
133
10
2
0

CrowdStrike Reviews

Review Filters
Profile Name
Star Rating
597
133
10
2
0
Aswindev P.
AP
Aswindev P.
Cloud Security Consultant at KPMG India
07/28/2026
Validated Reviewer
Verified Current User
Review source: G2 invite
Incentivized Review

Real-Time Cloud Protection with eBPF and Unified Telemetry

If you ask me to strip away the marketing fluff and look purely at the architectural reality, the absolute biggest upside of CrowdStrike Falcon Cloud Security is its hybrid convergence of agentless visibility and real-time runtime enforcement. ​For the last few years, the industry was obsessed with pure "agentless" tools. But when you are engineering complex, multi-cloud architectures across AWS, Azure, and GCP, relying purely on API snapshots is a massive blind spot. An API scan running every 15 minutes will tell you that an S3 bucket is exposed, but it will absolutely miss a threat actor dropping a fileless malware payload into the memory of a running EC2 instance. ​Here is what is actually helpful about CrowdStrike's approach in the trenches: ​1. Real-Time Kill Capabilities via eBPF ​This is the platform's architectural crown jewel. Instead of relying on clunky legacy kernel modules that crash production servers, CrowdStrike utilizes an eBPF (Extended Berkeley Packet Filter) sensor for its Cloud Workload Protection (CWPP). eBPF sits safely within the Linux kernel, acting as an ultra-lightweight observer. If an attacker exploits a vulnerability in a containerized web app and attempts to spawn a malicious reverse shell, pure agentless tools will just log it after the fact. CrowdStrike's eBPF sensor intercepts the system call and strictly kills the process in milliseconds, all without disrupting the underlying host. It provides the surgical precision required to stop an active breach without bringing down production infrastructure. ​2. Frictionless Integration with Infrastructure as Code (IaC) ​Security tools that require manual deployment are dead on arrival in modern cloud environments. The Falcon sensor is designed to be completely invisible to developers. It deploys natively via DaemonSets in Kubernetes clusters or bakes seamlessly into Terraform and Ansible provisioning workflows. Because it doesn't conflict with custom Python, Bash, or PowerShell automation scripts running on the host, infrastructure engineering teams can build secure-by-default cloud environments without security becoming a deployment bottleneck. ​3. Identity and Entitlement Mapping (CIEM) ​In the cloud, identity is the new network perimeter. The most common way cloud environments get breached isn't through zero-day exploits; it is through over-provisioned IAM roles. CrowdStrike excels at Cloud Infrastructure Entitlement Management (CIEM). It constantly graphs out exactly which machine identities, service accounts, and human users have access to which cloud resources. If an EC2 instance in AWS has an attached IAM role that secretly allows it to dump an entire DynamoDB database, the platform flags that toxic combination before an attacker can leverage it for lateral movement. ​4. Consolidated Telemetry (The Single Agent Advantage) ​If an enterprise is already running CrowdStrike Falcon on its corporate laptops, extending that exact same telemetry engine into the cloud control plane is a massive operational win. Instead of forcing a SOC analyst to pivot between a cloud posture tool, a container vulnerability scanner, and an endpoint EDR console, it all feeds into a single unified threat graph. You can trace an attack path from a compromised developer laptop straight through to a misconfigured Azure Kubernetes Service (AKS) cluster in one seamless workflow. ​Ultimately, the best thing about Falcon Cloud Security is that it doesn't just hand you a massive Excel spreadsheet of cloud misconfigurations; it actually possesses the execution power to stop the resulting attacks in real-time.
Aditya J.
AJ
Aditya J.
|| GATE 2018 Qualified || Security Delivery Analyst - Identity and Access Management | Ex-Wipro | Cyber Security - IAM | SSO | MFA | PING |
07/27/2026
Validated Reviewer
Review source: Organic

Comprehensive Visibility and Risk Management for Modern Cloud Environments

What I like best about CrowdStrike Falcon Cloud Security is its ability to provide a single, unified view across multiple cloud environments while continuously monitoring for misconfigurations, vulnerabilities, and compliance risks. The platform makes it easy to identify high-priority issues through risk-based prioritization, which helps security teams focus on the threats that matter most. I also appreciate the intuitive dashboard, real-time visibility, and seamless integration with other security and monitoring tools. Overall, it simplifies cloud security operations and improves our ability to detect and respond to risks faster without adding significant administrative overhead.
Pradipta Kumar P.
PP
Pradipta Kumar P.
Consultant at Deloitte (USI) | AWS Certified Practitioner | Salesforce Test Engineer | Automation Testing | From Bhubaneswar, Based in Kolkata, India
07/26/2026
Validated Reviewer
Review source: G2 invite
Incentivized Review

Unified CSPM + CWPP Platform with AI-Powered Attack Path Analysis

It offers a unified agentless and agent-based architecture, driven by AI-powered attack path analysis and a single lightweight sensor. It combines posture management (CSPM) and runtime defense (CWPP) in one platform. Falcon Cloud Security is built as a consolidated CNAPP spanning AWS, Azure, GCP, Kubernetes, and Docker, combining runtime protection, CSPM, and CWP into one platform.Performance is one of the most-praised aspects across reviews. The agent is lightweight — around 25MB, runs in kernel mode, and doesn't rely on constant signature updates — so endpoints don't slow down.ROI matters most you, the calculus shifts by use case: a pure Microsoft 365 shop with Windows-only endpoints will likely find Defender cheaper and sufficient, and an SMB under 100 seats may get better value from Bitdefender or SentinelOne Singularity Core.It also connects into CrowdStrike's broader ecosystem (Next-Gen SIEM/LogScale, third-party IOC feeds, federated search across external data stores), so if you're already in the Falcon platform, cloud security slots in rather than becoming a bolt-on tool

About

Contact

HQ Location:
Sunnyvale, CA

Social

@CrowdStrike

What is CrowdStrike?

CrowdStrike, a global cybersecurity leader, has redefined modern security with one of the world’s most advanced cloud-native platforms for protecting critical areas of enterprise risk – endpoints and cloud workloads, identity and data. Powered by the CrowdStrike Security Cloud, the CrowdStrike Falcon® platform leverages real-time indicators of attack, threat intelligence, evolving adversary tradecraft and enriched telemetry from across the enterprise to deliver hyper-accurate detections, automated protection and remediation, elite threat hunting and prioritized observability of vulnerabilities. Purpose-built in the cloud with a single lightweight-agent architecture, the Falcon platform enables customers to benefit from rapid and scalable deployment, superior protection and performance, reduced complexity and immediate time-to-value. CrowdStrike: We stop breaches. Learn more: https://www.crowdstrike.com/ Start a free trial today: https://www.crowdstrike.com/free-trial-guide/

Details

Year Founded
2011
Ownership
NASDAQ: CRWD