Compare CrowdStrike Falcon vs. Microsoft Defender for Endpoint

Cancel
You must select at least 2 products to compare!
Most Helpful Review
Anonymous User
Find out what your peers are saying about CrowdStrike Falcon vs. Microsoft Defender for Endpoint and other solutions. Updated: November 2020.
448,542 professionals have used our research since 2012.
Quotes From Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:

Pros
"Its most valuable features are its scalability and advanced threat protection for customers.""I am told that we get over 100 million emails a month. This filters them down and allows only somewhere about three million emails, which is a great help.""For the initial first level of support, we provide it from our side. If there's escalation required, we use Cisco tech for the AMP. And again, they are perfect. I mean, one of the best, compared to any other vendors.""The most valuable features of this solution are the IPS and the integration with ISE.""The simplicity of use is its most valuable feature. You can very clearly see things.""The stability of the solution is perfect. I believe it's the most stable solution on the market right now.""I am really satisfied with the technical support.""It is a very stable program."

More Cisco AMP for Endpoints Pros »

"I like the overall reports of this solution. They are crisp, and to the point.""It has an extremely low footprint, so it has got minimum impact on the user end points in terms of CPU and memory usage.""The most valuable feature is its threat analysis.""Scalability is good. We have had no issues with it.""The automatic alert feature is the most important feature of the solution.""Because it is security product and acts like an AIML smart product, not merely based on daily/weekly updates and signatures.""We have seen a reduction to the performance hit to our operating systems.""We are happy with CloudStrike's ease of use and touch notification."

More CrowdStrike Falcon Pros »

"The patch management is very easy, as it can be done automatically or added to a schedule.""Provides good vulnerability assessment.""It shows us the risky sign-ins, and if a user's password has been compromised.""What I like most is the protection against phishing emails and anti-spam."

More Microsoft Defender for Endpoint Pros »

Cons
"We would like to have an API integration with a SIEM solution, because as far as I know, it currently hasn't yet been released.""I would like them to add whatever makes filtering more advanced in scanning and blocking for malware in emails.""The solution needs more in-depth analytics.""In the next version of this solution, I would like to see the addition of local authentication.""The initial setup is a bit complex because you need to execute existing antiviruses or security software that you have on your device.""In the next release, I would for it to have back up abilities. I would like the ability to go back to a point in time to when my PC was uninfected and to the moment of when the infection happened.""The reporting and analytics areas of the solution need to be improved.""I would like more seamless integration."

More Cisco AMP for Endpoints Cons »

"It is cloud-based, and this does make some weary of the data being held on the cloud. Privacy requirements must be taken into account.""The dashboard does not have the facility to export the reports in a PDF format, which I can quickly share with internal stakeholders.""I would like CrowdStrike to provide some correlation in the threat analysis, so we can visualize things better.""Whenever there is a feature release (upgrade) where we push to all the endpoints, it causes something to be blocked without us knowing.""The management of log aggregation is in need of improvement.""Unfortunately, native applications are not supported.""We have had to open a case with the technical support to get some issues and bugs resolved.""The GUI can use improvement, it's cloud-based so sometimes the interface can be a bit slow. The interface could use a little bit more speed."

More CrowdStrike Falcon Cons »

"I would like to see better integration with their other security products to give better visibility from a higher level.""The GUI is very complex and could be more user friendly.""I am not sure if I will be using this product in the future because of the price.""If they integrate with the EDR then it will benefit this solution.""The scanning is slow when it is working with incoming emails."

More Microsoft Defender for Endpoint Cons »

Pricing and Cost Advice
"The costs of 50 licenses of AMP for three years is around $9,360.""The price is very good.""The visibility that we have into the endpoint and the forensics that we're able to collect give us value for the price. This is not an overly expensive solution, considering all the things that are provided. You get great performance and value for the cost.""Whenever you are doing the licensing process, I would highly advise to look at what other Cisco solutions you have in your organization, then evaluate if an Enterprise Agreement is the best way to go. In our case, it was the best way to go. Since we had so many other Cisco products, we were able to tie those in. We were actually able to get several Cisco security solutions for less than if we had bought three or four Cisco security solutions independently or ad hoc.""In our case, it is a straightforward annual payment through our Enterprise Agreement.""Our company was very happy with the price of Cisco AMP. It was about a third of what we were paying for System Center Endpoint Protection.""There are a couple of different consumption models: Pay up front, or if you have an enterprise agreement, you can do a monthly thing. Check your licensing possibilities and see what's best for your organization.""The Enterprise Agreement is like an all-you-can-eat buffet of Cisco products. In that vein, it was very affordable."

More Cisco AMP for Endpoints Pricing and Cost Advice »

"The pricing will depend upon your volume of usage.""I would like them to further reduce the price, because it is quite pricey at the moment.""Purchasing the product through the AWS Marketplace is just a click away. Since we were using the on-premise version of the product, we continued on the cloud by purchasing it through the AWS Marketplace.""I do not have experience with the cost or licensing of the product.""The other administrator and I can log in to check the exact details of what happened, what was running, and what caused the detection. We know exactly what was happening on the end users PC and we can tell if it's something that we actually need or something that's malicious.""We are at about $60,000 per year.""This solution has a very competitive price.""Our company pays approximately US$ 65,000 annually for 900 machines."

More CrowdStrike Falcon Pricing and Cost Advice »

"If you don't purchase the advanced threat protection then there is no additional charge.""Microsoft Defender ATP is expensive.""When compared with other vendors, the pricing is very high.""We sell this product as part of Office 365 and it is not expensive."

More Microsoft Defender for Endpoint Pricing and Cost Advice »

report
Use our free recommendation engine to learn which Endpoint Protection (EPP) for Business solutions are best for your needs.
448,542 professionals have used our research since 2012.
Answers from the Community
Rony_Sklar
author avatarR.G.
User

In a nutshell, Microsoft as most of its products tend to be behind the leaders and ATP is no exception, we used both and stayed with Falcon. With ATP you think you are protected until you deploy Falcon, or any other NGAV, and realize you were blind. We also used Cylance and still better than MS ATP.A few reasons why Falcon: Time response, real AI engine no signatures, support, easy to manage, one of the most well-organized vendors we've worked with, one of my favorites: if you don't have the --expertise-- and human power in-house they offer a fully managed insured ($1M) solution that monitors all the way to remediation 24x7 in less than 30min and without user intervention or interruption. Last, network containment at the click of a button in real-time with the ability to still remediate remotely

author avatarRony_Sklar
Community Manager

@R.G. ​Thanks for your input! How long have you been using Falcon?

author avatarSteve Pender
Reseller

SentinelOne is my recommended solution.


The SentinelOne Endpoint Protection Platform (EPP) unifies prevention, detection, and response in a single purpose-built agent, powered by machine learning and automation. It is not reliant on hash signatures or an internet connection. SentinelOne provides prevention and detection of attacks across all major vectors and rapid elimination of threats with a fully automated real-time response without human intervention.


SentinelOne has not been breached and offers upto $1,000,000 warranty if it cannot roll back a ransomware attack.


Please contact me at CyberSec@global.co.za for more information, a demonstration, or a quote.


Your reputation and your company's cyber security is in your hands - make an informed decision.

author avatarRony_Sklar
Community Manager

@Steve Pender ​Thank for your input. Have you worked with CrowdStrike Falcon or Microsoft Defender ATP? 

author avatarR.G.
User

1 year.

Questions from the Community
Top Answer: The solution's integration capabilities are excellent. It's one of the best features.
Top Answer: Nice to have URL management, password protection of the app, more details of the machine & user running the app.
Top Answer: The primary use case is for endpoint protection. For the larger deployments, we use it for our policy enforcement as… more »
Top Answer: CrowdStrike provides both a streaming and query REST API for accessing many of the features available through the Falcon… more »
Top Answer: SentinelOne is hands down my recommended solution. SentinelOne has not been breached and offers upto $1,000,000… more »
Ask a question

Earn 20 points

Popular Comparisons
Also Known As
CrowdStrike Microsoft Defender ATP, Microsoft Defender Advanced Threat Protection
Learn
Cisco
CrowdStrike
Microsoft
Overview

Advanced Malware Protection (AMP) is subscription-based, managed through a web-based management console, and deployed on a variety of platforms that protects endpoints, network, email and web Traffic. AMP key features include the following: Global threat intelligence to proactively defend against known and emerging threats, Advanced sandboxing that performs automated static and dynamic analysis of files against more than 700 behavioral indicators, Point-in-time malware detection and blocking in real time and Continuous analysis and retrospective security regardless of the file's disposition and Continuous analysis and retrospective security.

CrowdStrike is the leader in cloud-delivered next-generation endpoint protection. CrowdStrike has revolutionized endpoint protection by being the first and only company to unify next-generation antivirus (AV), endpoint detection and response (EDR), and a 24/7 managed hunting service — all delivered via a single lightweight agent. 

Many of the world’s largest organizations already put their trust in CrowdStrike, including three of the 10 largest global companies by revenue, five of the 10 largest financial institutions, three of the top 10 health care providers, and three of the top 10 energy companies.

Request a free trial here: https://go.crowdstrike.com/try-falcon-prevent

Microsoft Defender ATP includes a configuration score to help you dynamically assess the security state of your enterprise network, identify unprotected systems, and take recommended actions to improve the overall security of your organization.

Offer
Learn more about Cisco AMP for Endpoints
Get Fast and Easy Protection Against All Threats

Protect your organization from all threats - not just malware - even when computers and servers aren’t connected to the internet. Start your free trial and deploy CrowdStrike Falcon within minutes to start receiving full threat protection.

Learn more about Microsoft Defender for Endpoint
Sample Customers
Heritage Bank, Mobile County Schools, NHL University, Thunder Bay Regional, Yokogawa Electric, Sam Houston State University, First Financial Bank
Information Not Available
Petrofrac, Metro CSG, Christus Health
Top Industries
REVIEWERS
Healthcare Company20%
Government13%
University7%
Comms Service Provider7%
VISITORS READING REVIEWS
Comms Service Provider30%
Computer Software Company23%
Government5%
Manufacturing Company3%
REVIEWERS
Hospitality Company17%
Financial Services Firm17%
Insurance Company11%
Energy/Utilities Company11%
VISITORS READING REVIEWS
Computer Software Company30%
Comms Service Provider16%
Government5%
Manufacturing Company5%
VISITORS READING REVIEWS
Comms Service Provider28%
Computer Software Company20%
Government7%
Financial Services Firm5%
Company Size
REVIEWERS
Small Business36%
Midsize Enterprise16%
Large Enterprise48%
VISITORS READING REVIEWS
Small Business21%
Midsize Enterprise22%
Large Enterprise57%
REVIEWERS
Small Business29%
Midsize Enterprise21%
Large Enterprise50%
VISITORS READING REVIEWS
Small Business16%
Midsize Enterprise37%
Large Enterprise47%
No Data Available
Find out what your peers are saying about CrowdStrike Falcon vs. Microsoft Defender for Endpoint and other solutions. Updated: November 2020.
448,542 professionals have used our research since 2012.

CrowdStrike Falcon is ranked 1st in Endpoint Protection (EPP) for Business with 24 reviews while Microsoft Defender for Endpoint is ranked 30th in Endpoint Protection (EPP) for Business with 5 reviews. CrowdStrike Falcon is rated 8.4, while Microsoft Defender for Endpoint is rated 7.2. The top reviewer of CrowdStrike Falcon writes "Great protection, excellent customer service, and an easy to understand UI". On the other hand, the top reviewer of Microsoft Defender for Endpoint writes "Good with vulnerability assessment and integrates well with Office 365 and Azure". CrowdStrike Falcon is most compared with Microsoft Defender Antivirus, Cortex XDR by Palo Alto Networks, CylancePROTECT, Carbon Black CB Defense and McAfee Endpoint Security, whereas Microsoft Defender for Endpoint is most compared with Cortex XDR by Palo Alto Networks, Tanium, FireEye Endpoint Security, SentinelOne and Symantec Endpoint Detection and Response. See our CrowdStrike Falcon vs. Microsoft Defender for Endpoint report.

See our list of best Endpoint Protection (EPP) for Business vendors.

We monitor all Endpoint Protection (EPP) for Business reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.