Listing Thumbnail

    CrowdStrike Falcon Platform

     Info
    Sold by: CrowdStrike 
    Deployed on AWS
    The AI-native CrowdStrike Falcon Platform provides comprehensive protection across all areas of enterprise risk - devices, identities, data, endpoints and cloud. Powered by a single agent, crowdsourced data, expert threat intelligence, and advanced AI, the Falcon Platform simplifies security operations and stops breaches.
    4.6

    Overview

    Play video

    Organizations today face a serious challenge: managing numerous security vendors and tools while confronting an ever-evolving threat landscape. Sophisticated adversaries are becoming smarter, faster, and more evasive, launching complex attacks that can strike in minutes or even seconds. Traditional security approaches struggle to keep pace, leaving businesses vulnerable.

    The CrowdStrike Falcon Platform addresses this by offering a unified, cloud-native solution. It consolidates previously siloed security solutions and incorporates third-party data into a single platform with one efficient and resource-conscious agent, leveraging advanced AI and real-time threat intelligence. This approach simplifies security operations, speeds analyst decision making, and enhances protection to stop the breach, allowing organizations to reduce risk with less complexity and lower costs.

    • Cloud Security - Stop breaches from code to cloud

    Secure everything in the cloud - from applications and data to AI models. Falcon Cloud Security provides unified agent and agentless platform for complete code to cloud protection. https://www.crowdstrike.com/en-us/platform/cloud-security/ 

    • Endpoint Security - Secure the endpoint, stop the breach

    Stop breaches with AI-powered protection, detection, and response backed by world-class adversary intelligence. CrowdStrike Endpoint Security delivers AI-powered protection to automatically detect, investigate, and respond to threats in real-time. https://www.crowdstrike.com/en-us/platform/endpoint-security/ 

    • Identify Protection - Identity is the front line, defend it

    Protect hybrid identities with AI that adapts, defends, and outsmarts attacks in real time. Secure the full identity attack lifecycle across hybrid environments. https://www.crowdstrike.com/en-us/platform/identity-protection/ 

    • Next-Gen SIEM - The future of SIEM, today

    To defeat threats, you must transform the SOC. Harness the power of AI, automation, and blazing-fast search to outpace adversaries. https://www.crowdstrike.com/en-us/platform/next-gen-siem/ 

    • Data Protection - Real-time data protection from endpoint to cloud

    Stop unauthorized data movement and secure sensitive data across endpoints and cloud environments. Complete, real-time data protection without complexity. https://www.crowdstrike.com/en-us/platform/data-protection/ 

    • Exposure Management - Understand risk to stop breaches

    Don't just react. Take control with proactive security. Gain full attack surface visibility, assess risk exposure, prioritize threats, and automate responses to outpace adversaries. https://www.crowdstrike.com/en-us/platform/exposure-management/ 

    • Charlotte AI - Powering the next evolution of the SOC

    Unite intelligent automation with human cyber expertise to accelerate detection, investigation and response. https://www.crowdstrike.com/en-us/platform/charlotte-ai/ 

    • AI Detection and Response - Secure AI where AI happens

    Prevent data leaks, secure AI agents, apps, models, and infrastructure, and block adversarial threats - all from a single platform. https://www.crowdstrike.com/en-us/solutions/secure-your-ai/ 

    Highlights

    • Unmatched visibility and protection: CrowdStrike Falcon provides a comprehensive, modern defense across the entire enterprise environment, across endpoint, identity, cloud, data, and more, through a single platform. Unlike legacy solutions, Falcon's cloud-native architecture enables real-time threat detection and response, keeping organizations one step ahead of adversaries.
    • Simplified security operations: The Falcon platform consolidates previously siloed security tools into a single, easy-to-use console, and acts as the central hub by integrating with existing tools. This streamlined approach reduces complexity, improves efficiency, and lowers overall security costs.
    • AI & threat intel-driven security: Powered by real-time threat intelligence from millions of endpoints worldwide, Falcon continuously evolves to counter the latest threats. This global perspective, combined with insights from world-class threat hunters and industry-leading AI, ensures that organizations are protected against the most sophisticated attacks.

    Details

    Categories

    Delivery method

    Deployed on AWS
    New

    Introducing multi-product solutions

    You can now purchase comprehensive solutions tailored to use cases and industries.

    Multi-product solutions

    Features and programs

    Trust Center

    Trust Center
    Access real-time vendor security and compliance information through their Trust Center powered by Drata or Vanta. Review certifications and security standards before purchase.

    Buyer guide

    Gain valuable insights from real users who purchased this product, powered by PeerSpot.
    Buyer guide

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    Custom pricing options

    Pricing is based on your specific requirements and eligibility. Request a private offer to receive a custom quote. Sign in to view any offers that have been extended to you.

    How can we make this page better?

    Tell us how we can improve this page, or report an issue with this product.
    Tell us how we can improve this page, or report an issue with this product.

    Legal

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Support

    Vendor support

    You can log a support ticket for any issues directly from the Falcon Portal or by emailing the support team at awsmp@crowdstrike.com .

    Basic support services such as email communications to the CrowdStrike Support team, access to the support portal and basic troubleshooting and technical assistance.

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Similar products

    Customer reviews

    Ratings and reviews

     Info
    4.6
    496 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    82%
    16%
    1%
    1%
    0%
    10 AWS reviews
    |
    486 external reviews
    External reviews are from G2  and PeerSpot .
    John Sahin

    Advanced detection has protected hospital endpoints and supports rapid investigation of threats

    Reviewed on Sep 02, 2026
    Review from a verified AWS customer

    What is our primary use case?

    My main use case for CrowdStrike Falcon is mostly endpoint detection, scanning the endpoints to protect our endpoints in our hospital environment against any malicious files, downloads, and executions. A specific example of how I have used CrowdStrike Falcon for endpoint detection is when it catches a suspicious PowerShell execution from a suspicious file and a suspicious exe exemption. I investigate those events accordingly. CrowdStrike usually stops that execution, but there is some possibility that it may not block those executions. I investigate those incidents using CrowdStrike along with other tools, not only CrowdStrike.

    What is most valuable?

    In my opinion, the best features CrowdStrike Falcon offers are definitely the MDR solution, which is the best in the field. I also appreciate its next-gen SIEM solutions, and I am interested in CrowdStrike's DLP solutions as well. There is also an OverWatch MSSP feature, but I don't use it in my environment yet.

    Out of those features I mentioned, I rely on the MDR solution the most day-to-day. I definitely use MDR, which is what I pay for the most. I use next-gen SIEM, but I use Splunk as a SIEM solution, so in CrowdStrike's next-gen SIEM, I use it only for the CrowdStrike events. I don't ingest data from other tools to CrowdStrike's next-gen SIEM. The EDR solution is my favorite one.

    CrowdStrike Falcon has positively impacted my organization day-to-day when it catches any suspicious activities or any malicious files in my environment. That definitely impacts my organization positively.

    What needs improvement?

    There are definitely a couple of things CrowdStrike Falcon should improve, but I don't have all of them in my mind at this moment. I would need to check my notes to provide you with a comprehensive list.

    For how long have I used the solution?

    I have been working in my current field for two years.

    What do I think about the stability of the solution?

    CrowdStrike Falcon has no issues and is stable.

    What do I think about the scalability of the solution?

    CrowdStrike Falcon handles growth well, and its scalability is good.

    How are customer service and support?

    Customer support is great. I am happy with my representative.

    Which solution did I use previously and why did I switch?

    I previously used Dell EDR.

    What other advice do I have?

    Regarding CrowdStrike Falcon's AI capabilities, I don't work in the governance department, and my organization doesn't 100% implement the AI features in my environment. I know CrowdStrike is using AI to triage the events, so the events are 99% triaged before coming to me. I don't have a better answer for this question.

    Regarding the accuracy and reliability of CrowdStrike Falcon's AI output, I am not able to answer that question as I have no information about it.

    CrowdStrike Falcon has not allowed me to consolidate or replace other security tools.

    Having multiple security capabilities on a single platform like CrowdStrike Falcon definitely has advantages but also disadvantages. I don't want to put all the eggs in one basket, so I appreciate CrowdStrike and use some of its capabilities, but I don't want to put all my security investments in CrowdStrike. I prefer to use other tools as well.

    CrowdStrike Falcon's sensor has not had any issues on endpoint performance, and my ability to deploy security at scale has not been negatively impacted.

    CrowdStrike Falcon has made things easier regarding the workload and productivity of my security team.

    What differentiates CrowdStrike Falcon from other cybersecurity platforms I have used or evaluated is definitely its innovation, common usage, and ease of use. I would rate my overall experience with this product a nine out of ten.

    Charles Martin

    Unified security platform has improved threat detection and streamlined investigations

    Reviewed on Sep 01, 2026
    Review provided by PeerSpot

    What is our primary use case?

    For my main use cases with CrowdStrike Falcon, we tested vulnerability assessment and we also tested threats, AI intrusion threats, and vulnerability detection.

    What is most valuable?

    Using CrowdStrike Falcon has changed the way my security team detects, investigates, and responds to threats. Although we are too new to really change behavior, it has identified some behaviors that we need to correct.

    For example, it has identified threats and user behavior, including user risk behavior.

    So far, the benefits I have seen from having multiple security capabilities on a single platform have been limited, but based on the testing, we see that it is identifying threats and it has shown us proactive capabilities to shut down the threats.

    I recognize that having endpoint identity, cloud, and other security telemetry in the same CrowdStrike Falcon platform is going to make it very efficient for our team because previously, we had to search and diagnose threats from multiple locations and multiple issues from different locations.

    I estimate that we will have time saved, and I think it will be hours where we would go in and track who the offending email was and where it came from. Having one platform for each incident will probably save us twenty minutes to a half hour per incident.

    The impact that CrowdStrike Falcon sensor has had on endpoint performance and my ability to deploy security at scale is too new to assess.

    So far, CrowdStrike Falcon has allowed me to replace Trend Micro right away with it.

    What needs improvement?

    CrowdStrike Falcon platform is too new to suggest ways it could be better or additional features that should be included in the next release.

    For how long have I used the solution?

    I have been using CrowdStrike Falcon for less than one week.

    What do I think about the stability of the solution?

    So far, I would assess the stability and reliability of CrowdStrike Falcon as too new to provide a comprehensive evaluation.

    How are customer service and support?

    I would evaluate CrowdStrike's customer and technical support as excellent in getting us where we are in the testing phase and closing sales.

    The reason for my rating is the willingness to answer questions, the willingness to demonstrate, and the willingness to call up third-party references.

    Which solution did I use previously and why did I switch?

    The factors that impacted that change were that we did the testing and found out that it was not adequate to handle all the vulnerabilities that we had, and through testing, it identified more. We knew that this product would replace and extend our capabilities, so as opposed to keeping what we had and adding three other products, we wanted to consolidate everything in one platform.

    What differentiates CrowdStrike Falcon from other security platforms I have used or evaluated is that it is much more comprehensive and it is a single platform for multiple vulnerabilities.

    How was the initial setup?

    So far, it has not had any impact on my security operations because we signed the contract Wednesday with a test deployment, and now we will get the official deployment when we return. Part of us testing and coming to CrowdStrike was part of the experimental process of getting it deployed and finding out what other people are using it for.

    I have not deployed CrowdStrike Falcon into my production environment, but we have tested it.

    What about the implementation team?

    During my test, the experience with deploying CrowdStrike Falcon was very easy with the assistance of professional services or the implementation team, so we are ready. Their assistance has us ready to turn it on and to start right away. There is not a startup process; based on the testing, we are ready now to deploy.

    What's my experience with pricing, setup cost, and licensing?

    My experience with pricing, setup costs, and licensing was a traditional business venture where you go back and forth and ask for what you want. The only surprising piece for me was that there is a third-party vendor who we purchased from. I thought we would be dealing directly with CrowdStrike, and we were dealing with a third party that offered financing and handled all the contracts, and that is who we paid. I was prepared to write a check to CrowdStrike and it is not that way. That was the surprising piece. I will not say it is negative or positive, but that was the surprising piece. I thought it would all be consolidated.

    What other advice do I have?

    If I would rate CrowdStrike Falcon on a scale of one to ten, I would give it a ten.

    What would make it a ten for me is if everything was consolidated in one, where I did not have to deal with a third party and a go-between.

    My advice to other companies considering CrowdStrike Falcon is to make sure you get references and make sure that you adequately do the vetting and testing.

    I would rate this review overall as a nine out of ten.

    reviewer2894994

    Advanced endpoint insights have improved license usage tracking and strengthened security response

    Reviewed on Sep 01, 2026
    Review provided by PeerSpot

    What is our primary use case?

    My main use case for CrowdStrike Falcon is to deploy it to our endpoints, set update policies, and sometimes use the advanced search to search up specific events.

    I also used it in the past to query app usage, and the sensor collects DNS request logs that I use to determine whether or not people are actively using the licenses that we give them, such as Cloud licensing, ChatGPT, Figma, and others.

    My usage of CrowdStrike Falcon is limited to the advanced search feature. I am not a security engineer, and I use it to help fill in the gaps for my job function.

    Since we don't have much of a security team, we let CrowdStrike Falcon operate independently. My use of CrowdStrike Falcon has not expanded since my initial deployment. I use my limited time to look at things when necessary, and my usage has been limited to what I have already described.

    What is most valuable?

    I believe the advanced search is one of the best features CrowdStrike Falcon offers.

    What stands out to me about the advanced search in CrowdStrike Falcon is that it gives me a lot of insight into what my endpoints are doing, which is helpful as a sysadmin.

    CrowdStrike Falcon has positively impacted my organization by being a lightweight sensor. In the past, we dealt with issues where users complained that our deployed endpoint detection and remediation tool was using too much bandwidth on a computer or CPU usage. However, I found no complaints with CrowdStrike Falcon, which is beneficial.

    Regarding how the lightweight sensor of CrowdStrike Falcon affected my team's productivity, there are fewer complaints about slowdowns from my end users and less time spent in a console trying to figure out why slowdowns are occurring, which definitely frees up time.

    What needs improvement?

    CrowdStrike Falcon can be improved by adding some sort of data-at-rest insights into what is on these PCs. I know there are other tools that CrowdStrike offers that do this, but I have not had any experience with them.

    For how long have I used the solution?

    I have been using CrowdStrike Falcon for about three years.

    What do I think about the stability of the solution?

    CrowdStrike Falcon is stable.

    What do I think about the scalability of the solution?

    CrowdStrike Falcon's scalability is good.

    How are customer service and support?

    I have limited contact with customer support for CrowdStrike Falcon, but the group that helped onboard us was great.

    I can rate the customer support based on my limited experience. The onboarding team deserved a ten.

    Which solution did I use previously and why did I switch?

    I started directly with CrowdStrike Falcon and did not previously use a different solution.

    I have used CrowdStrike Falcon to replace Sophos, which was the tool that users were complaining was causing slowdowns.

    How was the initial setup?

    The setup process is very easy.

    What was our ROI?

    I have not seen a return on investment from CrowdStrike Falcon. It provided me a little more insight into what is going on in my environment, but it is difficult to quantify into a dollar amount.

    What's my experience with pricing, setup cost, and licensing?

    My experience with pricing, setup cost, and licensing for CrowdStrike Falcon was that pricing was very expensive, so much so that we could not justify onboarding it at first. However, after some back and forth with CrowdStrike representatives and getting quotes from other providers, CrowdStrike was willing to work with us to adjust some items included in the subscription contract and provided us a price that we could justify to our finance team.

    Which other solutions did I evaluate?

    Before choosing CrowdStrike Falcon, I evaluated other options such as Sophos, Microsoft Defender, and Carbon Black.

    What other advice do I have?

    I have no experience with CrowdStrike Falcon's AI capabilities.

    I have no experience with the accuracy and reliability of output from CrowdStrike Falcon's AI capabilities.

    I cannot comment on whether CrowdStrike Falcon is deployed in my organization on public cloud, private cloud, hybrid cloud, or on-premises, as I have no experience with how it is deployed.

    The benefits of having multiple security capabilities on a single platform like CrowdStrike Falcon include ease of access, as I don't need to jump between tools, and compatibility, as things just work.

    I can describe a security incident where CrowdStrike Falcon helped my team detect a threat. We needed to determine whether the Axios attack was going to impact us and whether any sensitive proprietary code may have been stolen. With CrowdStrike Falcon's advanced search, I was able to determine that we were not affected and that we had nothing to worry about.

    CrowdStrike Falcon has affected the workload of my IT team by making us seem more competent in the security aspect of things. I was able to quickly provide an update to my CTO on whether this was going to impact us, and that is a significant achievement for me.

    My advice to others looking into using CrowdStrike Falcon is that it is a very powerful tool that provides a lot of insights. I have trusted it for three years and believe you could as well. I would rate this product a perfect ten.

    Kirk Kanter

    Automated endpoint protection has saved my team time and simplifies threat remediation

    Reviewed on Sep 01, 2026
    Review provided by PeerSpot

    What is our primary use case?

    My main use case for CrowdStrike Falcon is endpoint protection. I use CrowdStrike Falcon for general endpoint remediation if users happen to click on malicious content.

    What is most valuable?

    The automated task set is excellent. The best features CrowdStrike Falcon offers include automated tasks that remove the need for me to go in and manually remediate threats.

    CrowdStrike Falcon has positively impacted my organization by removing task work that the tech would normally have to complete by using the automation processes. It has definitely saved time for my team's workload.

    Using CrowdStrike Falcon has changed the way my security team detects, investigates, and responds to threats as it usually detects threats and remediates them before we even have to take any action, definitely saving us a lot of time.

    The benefits from having multiple security capabilities on a single platform include that it is easier to manage from a single pane of glass. CrowdStrike Falcon has allowed us to look into consolidating or replacing other security tools, and we are actually looking into that currently.

    In a recent security incident, we noticed a few times where CrowdStrike Falcon stopped potential malware from running and removed it before it could establish a foothold. CrowdStrike Falcon sensor has positively impacted endpoint performance by keeping the systems clean and running optimal, aiding our ability to deploy security at scale.

    What needs improvement?

    We heard that the newest features coming soon are a major improvement that we would definitely be interested in. We have seen the announcement for the Red Team, Blue Team features, and they sound excellent. We are planning to use AI within CrowdStrike Falcon in the future.

    For how long have I used the solution?

    I have been using CrowdStrike Falcon for about six years.

    What do I think about the stability of the solution?

    CrowdStrike Falcon is stable.

    What do I think about the scalability of the solution?

    So far, there have been no issues with CrowdStrike Falcon's scalability.

    How are customer service and support?

    The customer support for CrowdStrike Falcon has been excellent. I would rate the customer support a 10 on a scale of 1 to 10.

    Which solution did I use previously and why did I switch?

    We did not previously use a different solution.

    What's my experience with pricing, setup cost, and licensing?

    My experience with pricing, setup cost, and licensing has been that so far, it is very easy to work with licensing and setup.

    Which other solutions did I evaluate?

    Before choosing CrowdStrike Falcon, we evaluated other options and currently overlap with Darktrace, but Darktrace's cost is making us look elsewhere.

    What other advice do I have?

    CrowdStrike Falcon is deployed in my organization using a hybrid cloud setup. What differentiates CrowdStrike Falcon from other cybersecurity platforms I have used or evaluated is that so far, it is a well-recognized name with good performance and a good overall reputation. I love it. My advice to others looking into using CrowdStrike Falcon is to not look at anything else and to use it instead. It works and it works great. I would rate this product a 10 out of 10.

    reviewer2894505

    Always-on threat hunting has transformed how my team detects and responds to critical attacks

    Reviewed on Sep 01, 2026
    Review provided by PeerSpot

    What is our primary use case?

    My main use case for CrowdStrike Falcon is to remediate any time someone downloads something malicious. I tend to remediate it and check in on the users to make sure there are no false positives. If it is something malicious, then I have to triage it.

    A specific example of when I used CrowdStrike Falcon was when someone had downloaded something that they were not supposed to download. I looked at the hash value, saw that it was malicious, reached out to the user, warned them to exercise caution, and from there, they removed it and our IT team scanned their device.

    What is most valuable?

    The best features CrowdStrike Falcon offers include their 24/7 team that is always watching us and their next-generation team that is always actively threat hunting.

    What I appreciate about the 24/7 team and the next-generation team specifically is that during the time I am not working and on the weekends when I am not working, the people are able to watch over my company and my users and help me so I do not have to worry.

    CrowdStrike Falcon has positively impacted my organization by helping stop many breaches, and they are very good at alerting and following and escalating during critical alerts.

    A specific outcome that shows Falcon's positive impact is that they have called me around midnight several times when I would not often be working, but it was a critical alert, and they have saved the day due to escalating their policy.

    What needs improvement?

    To improve CrowdStrike Falcon, I suggest continuing what you are doing, continuing with customer support and checking quarterly schedules, and everything will be good.

    For how long have I used the solution?

    I have been working in my current field for about two and a half years.

    What do I think about the stability of the solution?

    CrowdStrike Falcon is stable.

    What do I think about the scalability of the solution?

    CrowdStrike Falcon's scalability is very good and very reliable.

    How are customer service and support?

    The customer support from CrowdStrike Falcon is very good and very trustworthy.

    What other advice do I have?

    I would rate CrowdStrike Falcon a 10 out of 10.

    I give CrowdStrike Falcon a 10 because they do what needs to be done and they do what we ordered it to do.

    Regarding CrowdStrike Falcon's AI capabilities, I think it has been doing well. I think everything with AI could always improve, but its capabilities right now have been good and sufficient.

    I think CrowdStrike Falcon's AI capabilities in terms of accuracy and reliability of its output are quite impressive, as Charlotte has been very descriptive any time an alert occurs, and the AI is doing very well at breaking down what needs to be done, including next steps and what happened in the alert.

    Using Falcon platform has changed the way my security team detects, investigates, and responds to threats by escalating detections and responding on our end because CrowdStrike already gives us the breakdown of what has happened.

    The benefits I have seen from having multiple security capabilities on a single platform include saving time and preventing us from constantly going to different multiple platforms, as we could just all look at one platform.

    A security incident where Falcon helped my team detect or stop a threat was during the time of the DPRK, North Korean attack, and they helped stop and prevent that.

    The impact that the Falcon sensor has had on endpoint performance and my ability to deploy security at scale is that the endpoint Falcon sensor has helped keep visibility into any and all devices that we have.

    I am using AI within Falcon platform to monitor which users use AIs and to make sure they are only using permitted AI, not every AI out there.

    What differentiates Falcon from other cybersecurity platforms I have used or evaluated is that they are constantly doing well and they have never let us down.

    The advice I would give to others looking into using CrowdStrike Falcon is to please hurry this process up, but trust Falcon, use the demo and attend their events, and you will appreciate the product.

    I am giving this review an overall rating of 10.

    View all reviews