Overview

Product video
Organizations today face a serious challenge: managing numerous security vendors and tools while confronting an ever-evolving threat landscape. Sophisticated adversaries are becoming smarter, faster, and more evasive, launching complex attacks that can strike in minutes or even seconds. Traditional security approaches struggle to keep pace, leaving businesses vulnerable.
The CrowdStrike Falcon Platform addresses this by offering a unified, cloud-native solution. It consolidates previously siloed security solutions and incorporates third-party data into a single platform with one efficient and resource-conscious agent, leveraging advanced AI and real-time threat intelligence. This approach simplifies security operations, speeds analyst decision making, and enhances protection to stop the breach, allowing organizations to reduce risk with less complexity and lower costs.
- Cloud Security - Stop breaches from code to cloud
Secure everything in the cloud - from applications and data to AI models. Falcon Cloud Security provides unified agent and agentless platform for complete code to cloud protection. https://www.crowdstrike.com/en-us/platform/cloud-security/
- Endpoint Security - Secure the endpoint, stop the breach
Stop breaches with AI-powered protection, detection, and response backed by world-class adversary intelligence. CrowdStrike Endpoint Security delivers AI-powered protection to automatically detect, investigate, and respond to threats in real-time. https://www.crowdstrike.com/en-us/platform/endpoint-security/
- Identify Protection - Identity is the front line, defend it
Protect hybrid identities with AI that adapts, defends, and outsmarts attacks in real time. Secure the full identity attack lifecycle across hybrid environments. https://www.crowdstrike.com/en-us/platform/identity-protection/
- Next-Gen SIEM - The future of SIEM, today
To defeat threats, you must transform the SOC. Harness the power of AI, automation, and blazing-fast search to outpace adversaries. https://www.crowdstrike.com/en-us/platform/next-gen-siem/
- Data Protection - Real-time data protection from endpoint to cloud
Stop unauthorized data movement and secure sensitive data across endpoints and cloud environments. Complete, real-time data protection without complexity. https://www.crowdstrike.com/en-us/platform/data-protection/
- Exposure Management - Understand risk to stop breaches
Don't just react. Take control with proactive security. Gain full attack surface visibility, assess risk exposure, prioritize threats, and automate responses to outpace adversaries. https://www.crowdstrike.com/en-us/platform/exposure-management/
- Charlotte AI - Powering the next evolution of the SOC
Unite intelligent automation with human cyber expertise to accelerate detection, investigation and response. https://www.crowdstrike.com/en-us/platform/charlotte-ai/
- AI Detection and Response - Secure AI where AI happens
Prevent data leaks, secure AI agents, apps, models, and infrastructure, and block adversarial threats - all from a single platform. https://www.crowdstrike.com/en-us/solutions/secure-your-ai/
Highlights
- Unmatched visibility and protection: CrowdStrike Falcon provides a comprehensive, modern defense across the entire enterprise environment, across endpoint, identity, cloud, data, and more, through a single platform. Unlike legacy solutions, Falcon's cloud-native architecture enables real-time threat detection and response, keeping organizations one step ahead of adversaries.
- Simplified security operations: The Falcon platform consolidates previously siloed security tools into a single, easy-to-use console, and acts as the central hub by integrating with existing tools. This streamlined approach reduces complexity, improves efficiency, and lowers overall security costs.
- AI & threat intel-driven security: Powered by real-time threat intelligence from millions of endpoints worldwide, Falcon continuously evolves to counter the latest threats. This global perspective, combined with insights from world-class threat hunters and industry-leading AI, ensures that organizations are protected against the most sophisticated attacks.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Trust Center
Buyer guide

Financing for AWS Marketplace purchases
Pricing
Custom pricing options
How can we make this page better?
Legal
Content disclaimer
Delivery details
Software as a Service (SaaS)
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Support
Vendor support
You can log a support ticket for any issues directly from the Falcon Portal or by emailing the support team at awsmp@crowdstrike.com .
Basic support services such as email communications to the CrowdStrike Support team, access to the support portal and basic troubleshooting and technical assistance.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Similar products
Customer reviews
Falcon Endpoint Protection
Comprehensive Protection, Easy Management
Helpful Policy Creation and Asset Monitoring
Strong USB Protection, Effortless Setup
Platform has unified threat visibility and delivers lightweight protection for every endpoint
What is our primary use case?
CrowdStrike Falcon is primarily used because we are a system integrator that sells a solution to our customers, so most of it is endpoint security.
We are not the one operating CrowdStrike Falcon, but when we do an implementation, once we install the agent and complete the implementation, we see what it has detected from day one of the implementation until the turnover to the operations team. The Falcon Complete dashboard is intuitive, especially OverWatch, which highlights every risk that we need to manage, and also the detection field and incident field where we can see the entire timeline and all the things that happened. There is also a network map where you can see, for example, if there is one detection on a workstation, which other users or other devices it communicated with.
We are primarily utilizing Charlotte AI within CrowdStrike Falcon platform. We use it extensively on CrowdStrike Falcon EDR, plus also NG-SIEM, because with Charlotte, it can help us create queries without doing it manually.
What is most valuable?
One of the key advantages of CrowdStrike Falcon is its lightweight sensor, so it is easy to deploy compared to other security solutions.
CrowdStrike Falcon provides results because, until now, no customer of ours has gotten ransomware or been infected.
The most common solutions that I compare CrowdStrike Falcon to in my country are Trend Micro, Sophos, and Palo Alto and SentinelOne. The really key advantage of CrowdStrike Falcon is its lightweight sensor. Some of the companies that I mentioned earlier had a hard time deploying because they have 400 to 500 MB of sensor, which if you deploy it on 3,000 or 4,000 endpoints, it will really slow down their network. Unlike with CrowdStrike Falcon, we can deploy, for example, 2,000 endpoints a day.
There is no impact on endpoint performance. On some of the other products that I compared CrowdStrike Falcon with, some of them cause high utilization. We have not experienced that with CrowdStrike Falcon.
For me as the one who implements CrowdStrike Falcon, it has a real impact because it is easy to deploy. Even though the customer does not have software deployment tools, you can deploy CrowdStrike Falcon by having a simple GPO, a Group Policy Object, load it there, and then you can install it easily.
For endpoint performance, it is great because it is very lightweight. It is not the traditional antivirus from before where when you do a scan and install it, the CPU and memory will spike up and the user cannot do anything about it. CrowdStrike Falcon is very lightweight. With that, users do not need to balance between usability and security because with CrowdStrike Falcon, you can have both.
What needs improvement?
CrowdStrike Falcon can improve their supportability of legacy devices. This is where CrowdStrike Falcon has been edged out by other cybersecurity vendors because some of them support legacy operating systems, unlike CrowdStrike Falcon that primarily uses one level higher of operating system than others.
For how long have I used the solution?
In the cybersecurity field, I have been working for more than ten years. We have been working with CrowdStrike Falcon since 2022 to now.
What do I think about the stability of the solution?
In terms of reliability, ever since I used CrowdStrike Falcon platform, I think it is still okay because the GUI, the dashboard, and the console are easy to use because all of their solutions are in one platform, so you will not get lost. They have OverWatch and a detection incident where all the detection is already consolidated there. Once you click it, you are going to see all the details.
What do I think about the scalability of the solution?
The most common solutions that I compare CrowdStrike Falcon to in my country are Trend Micro, Sophos, and Palo Alto and SentinelOne. The really key advantage of CrowdStrike Falcon is its lightweight sensor. Some of those companies that I mentioned had a hard time deploying because they have 400 to 500 MB of sensor, which if you deploy it on 3,000 or 4,000 endpoints, it will really slow down their network. Unlike with CrowdStrike Falcon, we can deploy, for example, 2,000 endpoints a day.
How are customer service and support?
When we had an issue, for example, on an agent installation because of one legacy device or when we were installing it with another endpoint application, we had CrowdStrike Falcon support come in with us. They are very helpful because they were able to resolve our issue.
Which solution did I use previously and why did I switch?
We had one experience with one of our customers where at first, they were not a CrowdStrike Falcon user. They had a ransomware with a different solution, not CrowdStrike Falcon. After that, we asked them to try CrowdStrike Falcon and install it, then we could see other detections that their previous vendor or solution did not see. After we were able to help them clean their environment, they transitioned to CrowdStrike Falcon with Falcon Complete, with the managed detection and response of CrowdStrike Falcon.
The most common solution right now in my country is NG-SIEM. Before, they used a different SIEM, like Splunk, Rapid7, Exabeam, or QRadar, but now that they see the value of CrowdStrike Falcon XDR and they want it to work together, most of them are trying to move to NG-SIEM so that you can have your XDR and your SIEM in one platform, plus the telemetry that CrowdStrike Falcon endpoint provides. This will really help them secure their environment.
What other advice do I have?
I think it is very great that we have a solution as CrowdStrike Falcon which has many different security functionalities because threats are evolving. As the defender, we need to evolve as well. We are fortunate to have CrowdStrike Falcon that is continuing to evolve, even now in the AI era because threats are more complex than before. Before you just needed to worry about the zero-day and the signature. Now it is different with AI. We are fortunate we have CrowdStrike Falcon with us.
I am confident that CrowdStrike Falcon is up to par to protect you and your customers from AI threats.
Most of our customers in my country use CrowdStrike Falcon, and ever since then, they do not have serious incidents, such as a ransomware that has taken effect on all their critical infrastructures, including servers.
One value or benefit that customers can have from CrowdStrike Falcon is not having their solutions in silos. If it works in silos, it is going to be hard to keep track of threats, especially now that AI is moving at AI speed. If we are working in silos or have different solutions, it is going to be hard to catch up. Did they get anything on the identity solution? Did they get anything on the cloud solution? With CrowdStrike Falcon, it is all in a single sensor and a single platform. Customers are going to have a single pane of glass that they can look at.
The impact of AI features such as Charlotte AI on our security operations makes our lives easier, not only for us but also for our customers. Before, when they were going to do a query, they needed to drill down multiple times before they got to the one event that they wanted to see. Now, if you ask Charlotte, it is one click of a button and enter, and Charlotte will give you everything. It is much faster than drilling down to all the events and all the reports.
Customers usually get Falcon EDR first, Falcon Pro. After that, they expand to Falcon Complete, meaning adding the MDR services, and now they are trying to go to NG-SIEM plus the identity. Now that they have heard about Falcon Guardian, they might look into that as well.
If I were to give advice for someone who is evaluating or considering CrowdStrike Falcon platform, I think they need to try it so they can feel the experience and the protection and the security that CrowdStrike Falcon provides. I rate this solution a ten out of ten.