AB

Ansh B.

Associate Security Engineer

Capital Markets

Mid-Market (51-1000 emp.)

6/16/2026

"Crowdstrike Falcon: Proactive Security, Steep Learning Curve"

5/5

What do you like best about CrowdStrike Falcon Endpoint Protection Platform?

What I like best about Crowdstrike Falcon is how Lightweight it feels compared to traditional antivirus solutions. A lot of endpoint protection tools tend to bog down your system with constant scans and updates, but Falcon runs quietly in the background without really affecting performance which honestly surprised me given how much it's doing under the hood.

The cloud-native architecture is another big plus, Since everything is managed through the cloud, there's no need to deal with on-prem servers or constant manual updates. New threat intellgence and detection capabilities just get pushed out automatically, so you're always working with the latest protections without lifting a finger.

I also really appreciate the visibility and detail it gives you when something does get flagged. Instead of just saying "this file is bad," It shows you the full attack chain what triggered it, what process did what, and how it all connects. That kind of context makes it so much easier to actually understand what happened and respond properly, instead of just reacting blindly.

And honestly, the speed of detection stands out too. Threats get flagged almost instantly, which gives a lot of peace of mind when you're responsilble for keeping syetem secure. Review collected by and hosted on G2.com.

What do you dislike about CrowdStrike Falcon Endpoint Protection Platform?

One thing that bugs me a bit about Falcon is the pricing. It's definately on the higher end compared to some other endpoint protection tools, and smaller teams or businesses, that cost can add up fast especially once you start adding on extra modules for things like identity protection or threat intelligence. It almost feels like the "full experience" is locked behind multiple add-ons rather than one straightforward package.

The console UI can also feel a bit overwhelming at first. There's just so much data, so many tabs, and so may ways to drill into things that it takes a while to actually get comfortable navigating it. For someone new to the platform, it's not the most intuitive experience right out of the gate.

Another thing alert fatigue is real. Beacuse it's so thorough, you sometimes get a lot of detections or alerts, and not all of them turn out to be critical. It takes some tuning and experience to fatigue out what actually needs immediate attention verus what's just noise. Without proper triage, it can feel like a lot ot keep up with.

Lastly, support response times can vary. Sometimes you get quick, helpful responses, but other times especially for more complex issues it can take longer than you'd expect, which is frustrating when you're dealing with a potential secuirty incident. Review collected by and hosted on G2.com.

What problems is CrowdStrike Falcon Endpoint Protection Platform solving and how is that benefiting you?

Falcon is solving the problem of not knowing what's happening on your endpoint until it's too late. Traditional antivirus tools mostly rely on signatures, so they're great at catching known threats but often miss new or more sophisticated attacks. Falcon takes a behaviour based approch instead looking at what processes are actually doing which means it can catch things that would otherwise slip through completely unnoticed.

For me, the biggest benefit has been around proactive threat detection. instead of finding out about a problem after the damage is done, Falcon flags suspicious behaviour early, which gives a real chance to investigate and contain something before it spreads. That shift from "reactive" to "proactive" security makes a huge difference in day-to-day peace of mind.

It's also helped a lot with visibility across endpoints. In environments where you've got a lot of devices spread out, it can be really hard to know what's going on everywhere at once. Falcon centralizes all of that into one piece, so you're not jumping between different tools or relying on guesswork to fatigue out what's normal vrus what's not.

And from an incident response perspective, the detail it provides really speeds things up When something does happen, having that full attack chain laid out means less time spent piecing together what occured and more time actually responding to it.

So overall, it solves the problem of blind spots and that translates into faster detection, faster response, and a lot less uncertainly when it comes to endpoint security. Review collected by and hosted on G2.com.

Show More

Current UserValidated ReviewerSource: Organic

See what 418 reviewers think of CrowdStrike Falcon Endpoint Protection Platform

4.6 out of 5 · Verified reviews from real users

[
Read all reviews
](https://www.g2.com/products/crowdstrike-falcon-endpoint-protection-platform/reviews)