We performed a comparison between CrowdStrike Falcon and Kaspersky Endpoint Detection and Response Optimum based on real PeerSpot user reviews.
Find out in this report how the two Endpoint Protection Platform (EPP) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."The most valuable feature is the analysis, because of the beta structure."
"he solution is an anti-malware product that integrates well with other vendor products such as firewalls, SIEM, etc. It captures threat intelligence and gives you better visibility. The product also has sandboxing features."
"The product detects and blocks threats and is more proactive than firewalls."
"We have FortiEDR installed on all our systems. This protects them from any threats."
"Fortinet has helped free up around 20 percent of our staff's time to help us out."
"The main thing is that I feel safe. Because the processes that have been used to get a handle on the attackers are much better than other competitors"
"Ability to get forensics details and also memory exfiltration."
"It is stable and scalable."
"The most valuable feature of CrowdStrike Falcon is its accuracy. That's very important for me. False-positive are very bad for everyone. As we are a financial institution, it's even worse. I like Falcon because it's very accurate."
"The EDR is amazing and ease of integration with Splunk is a big plus. Integration with BigQuery is also a plus for me and workflow creation is easy. Overall, CrowdStrike Falcon is a great product."
"The initial setup is very simple."
"As an EDR tool, we can integrate log management and event management. The solution deals with threats automatically, that's the advantage."
"From what we have seen, it is very scalable. We have recently acquired a company where someone had a ransomware attack when we joined networks. Within the course of just a few days, we were able to easily get CrowdStrike rolled out to about 300 machines. That also included the removal of that company's legacy anti-malware tool."
"It helps us to identify the threats according to the behavior of any process that is running on any particular system. It helps immensely to identify any malicious behavior on any endpoints."
"I like the detection rates of mobile threats."
"Enables us to understand what processes are running on the system, what registry keys have been enabled."
"The solution is very user friendly, which we appreciate."
"Support has been helpful."
"The initial setup was easy."
"I mostly like how they capture particular files and submit them to other files, and they have the solution console. And for example, we are using the one in for an application, like, on the RansomFree, if there are any vulnerabilities in patches coming, in the future, they fix these."
"The solution is easy to use."
"One of the most valuable features of Kaspersky Endpoint Detection and Response Optimum is its cloud console allows users to remotely isolate a single computer from a network in the event of an attack, enabling them to perform root cause analysis without disrupting the entire network. This is particularly useful for organizations that may not have expert resources for endpoint detection and response."
"The most beneficial aspect of Kaspersky Endpoint Detection and Response Optimum is its protection capabilities, followed by its device management capabilities. The ability to remotely install software is highly advantageous, making it a convenient and helpful feature."
"The performance is good."
More Kaspersky Endpoint Detection and Response Optimum Pros →
"The SIEM could be improved."
"We've had a lot of false positives; things incorrectly flagged that require manual configuration to allow. Even worse, after we allow a legitimate program, it sometimes gets flagged again after an update. This has caused a lot of extra work for my team."
"To improve Fortinet, we need to see more features and technology areas at the endpoint level introduced."
"The solution should address emerging threats like SQL injection."
"The solution's installation from a central installation server could be improved because the engineers had a little bit of trouble getting it installed from a central location."
"The dashboard isn't easy to access and manage."
"Cannot be used on mobile devices with a secure connection."
"Once, we had an event that was locked and blocked, but information about it came to us two or three days later."
"The detection time has room for improvement."
"Tighter integration around XDR could be included."
"Technical support could be better than what is currently offered."
"I have worked with their technical support on several problems that were never fully resolved."
"We can do a threat analysis of any machine at any time, but that threat analysis is very limited."
"Whenever there is a feature release (upgrade) where we push to all the endpoints, it causes something to be blocked without us knowing."
"I would like to see a little bit more in the offline scanning ability. This just comes from my background in what I have done in other positions. They only scan on demand, so I always have this fear that we sometimes maybe email out a dormant virus and can be held liable for that. That is something where I would like to see a little bit more robustness to the tool."
"It would be nice if they did have some sort of Active Directory tie-in, whether that be Azure or on-prem. Sometimes, it is difficult for us to determine if we are missing any endpoints or servers in CrowdStrike. We honestly don't have a great inventory, but it would be nice if CrowdStrike had a way to say this is everything in your environment, Active Directory-wise, and this is what doesn't have sensors. They try to do that now with a function that they have built-in, but I have been unsuccessful in having it help us identify what needs a sensor. So, better visibility of what doesn't have a sensor in our environment would be helpful."
"The solution needs to give more control to users on firewalls."
"For improvement, they should make the scanning process faster. The scanning and updating take more time."
"Scalability depends on various factors."
"The technology grows day by day, so we need to check for updates and do the updates daily. Kaspersky Endpoint Detection and Response Optimum is still improving over time and quality-wise, there are still things that need to be changed in the product, so that's why I rated it nine out of ten. Compatibility could also be improved in the product."
"I want the tool’s pricing to improve."
"EDR Optimum's scalability could be improved."
"An area for improvement in Kaspersky Endpoint Detection and Response Optimum would be to provide the cloud console platform to all users, regardless of the number of licenses a company has purchased. For example, a company with 50 employees should have access to the cloud console platform even if they have only purchased a certain number of licenses for the solution."
"I want Kaspersky to extend its products to internet protection. For example, I would like them to develop a firewall integrated with EDR."
More Kaspersky Endpoint Detection and Response Optimum Cons →
More Kaspersky Endpoint Detection and Response Optimum Pricing and Cost Advice →
CrowdStrike Falcon is ranked 3rd in Endpoint Protection Platform (EPP) with 107 reviews while Kaspersky Endpoint Detection and Response Optimum is ranked 21st in Endpoint Protection Platform (EPP) with 17 reviews. CrowdStrike Falcon is rated 8.8, while Kaspersky Endpoint Detection and Response Optimum is rated 8.2. The top reviewer of CrowdStrike Falcon writes "Easy to set up with good behavior-based analysis but needs a single-click recovery option". On the other hand, the top reviewer of Kaspersky Endpoint Detection and Response Optimum writes "Great threat response, provides for proactivity, and has automated threat identification". CrowdStrike Falcon is most compared with Microsoft Defender XDR, Darktrace, Microsoft Defender for Endpoint, Trend Micro Deep Security and VMware Carbon Black Endpoint, whereas Kaspersky Endpoint Detection and Response Optimum is most compared with SentinelOne Singularity Complete, Cortex XDR by Palo Alto Networks, ESET Endpoint Protection Platform, Trend Micro ServerProtect and Trellix Endpoint Security. See our CrowdStrike Falcon vs. Kaspersky Endpoint Detection and Response Optimum report.
See our list of best Endpoint Protection Platform (EPP) vendors.
We monitor all Endpoint Protection Platform (EPP) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.