We changed our name from IT Central Station: Here's why

CrowdStrike Falcon vs Trend Micro Apex One comparison

Cancel
You must select at least 2 products to compare!
Featured Review
Find out what your peers are saying about CrowdStrike Falcon vs. Trend Micro Apex One and other solutions. Updated: January 2022.
563,208 professionals have used our research since 2012.
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"Another of my favorite features is called the Device Trajectory, where it shows everything that's going on, on a computer. It shows the point in time when a virus is downloaded, so you can see if the user was surfing the internet or had a program open. It shows every running process and file access on the computer and saves it like a snapshot when it detects something malicious. It also has a File Trajectory, so you can even see if that file has been found on any of your other computers that have AMP.""Any alert that we get is an actionable alert. Immediately, there is information that we can just click through, see the point in time, what happened, what caused it, and what automatic actions were taken. We can then choose to take any manual actions, if we want, or start our investigation. We're no longer looking at digging into information or wading through hundreds of incidents. There's a list which says where the status is assigned, e.g., under investigation or investigation finished. That is all in the console. It has taken away a lot of the administration, which we would normally be doing, and integrated it into the console for us.""The ability to detonate a particular problem in a sandbox environment and understand what the effects are, is helpful. We're trying, for example, to determine, when people send information in, if an attachment is legitimate or not. You just have to open it. If you can do that in a secure sandbox environment, that's an invaluable feature. What you would do otherwise would be very risky and tedious.""The solution's integration capabilities are excellent. It's one of the best features.""The solution makes it possible to see a threat once and block it everywhere across all endpoints and the entire security platform. It has the ability to block right down to the file and application level across all devices based on policies, such as, blacklisting and whitelisting of software and applications. This is good. Its strength is the ability to identify threats very quickly, then lock them and the network down and block the threats across the organization and all devices, which is what you want. You don't want to be spending time working out how to block something. You want to block something very quickly, letting that flow through to all the devices and avoiding the same scenario on different operating systems.""One of the best features of AMP is its cloud feature. It doesn't matter where the device is in regards to whether it's inside or outside of your network environment, especially right now when everybody's remote and taken their laptops home. You don't have to be VPNed into the environment for AMP to work. AMP will work anywhere in the world, as long as it has an Internet connection. You get protection and reporting with it. No matter where the device is, AMP has still got coverage on it and is protecting it. You still have the ability to manage and remediate things. The cloud feature is the magic bullet. This is what makes the solution a valuable tool as far as I'm concerned.""The entirety of our network infrastructure is Cisco and the most valuable feature is the integration.""Among the most valuable features are the exclusions. And on the scalability side, we can integrate well with the SIEM orchestration engine and a number of applications that are proprietary or open source."

More Cisco Secure Endpoint Pros →

"As long as the machine is connected to the Internet, and CrowdStrike is running, then it will be on and we will have visibility; no VPNing in or making some type of network connection. CrowdStrike always there and running in the background; for us, that is big. We wanted something that could give us data as long as the machines connected to the Internet and be almost invisible to the employees.""There's almost no maintenance required. It's very low if there's any at all.""The solution can scale easily.""The most valuable feature is that we don't need to re-image machines as much as we had to.""The detection is very reliable. Also, OverWatch is a great feature.""The most valuable feature is the indicator of compromise, which show you what file was either quarantined or removed.""The feature that I find to be the most valuable, is being able to look at the system analysis and being able to baseline what is installed on the system.""It has definitely minimized resources. When everything was on-prem, there was a lot more work maintaining it. One of the big value tickets: I don't have lists of hundreds of exceptions for certain applications that I have to maintain, add, delete, and move. The very nature of the product has lessened my workload considerably."

More CrowdStrike Falcon Pros →

"I have opened three tickets with the technical support and they were responsive and asked me to send them my logs.""The initial setup was very straightforward.""Along with the anti-malware, it has a built-in device control and DLP.""The general anti-virus on offer is the solution's most valuable aspect.""The main benefit is the threat intelligence network of Trend Micro.""The initial setup is pretty straightforward.""The most valuable feature is the antivirus.""No down time in terms of the backend having to be updated because it's on cloud."

More Trend Micro Apex One Pros →

Cons
"In Orbital, there are tons of prebuilt queries, but there is not a lot of information in lay terms. There isn't enough information to help us with what we're looking for and why we are looking for it with this query. There are probably a dozen queries in there that really focus on what I need to focus on, but they are not always easy to find the first time through.""...the greatest value of all, would be to make the security into a single pane of glass. Whilst these products are largely integrated from a Talos perspective, they're not integrated from a portal perspective. For example, we have to look at an Umbrella portal and a separate AMP portal. We also have to look at a separate portal for the firewalls. If I could wave a magic wand and have one thing, I would put all the Cisco products into one, simple management portal.""The one challenge that I see is the use of multiple endpoint protection platforms. For instance, we have AMP, but we also have Microsoft Windows Defender, System Center Endpoint Protection, and Microsoft Malware Protection Engine deployed. So, we have a bunch of different things that do the same thing. What winds up happening is, e.g., if I get an alert for a potential incident or malware and want to pull the file, I'll go to fetch the file to analyze it. But, one of these other programs has already gotten it, so the file has already been quarantined by another endpoint protection system. AMP doesn't realize that and the file fetch fails, then you're left wondering what's going on.""We have had some problems with updates not playing nice with our environment. This is important, because if there is a new version, we need to test it thoroughly before it goes into production. We cannot just say, "There's a new version. It's not going to give us any problems." With the complexity of the solution using multiple engines for multiple tasks, it can sometimes cause performance issues on our endpoints. Therefore, we need to test it before we deploy. That takes one to three days before we can be certain that the new version plays nice with our environment.""The connector updates are very easily done now, and that's improving. Previously, the connector had an issue, where almost every time it needed to be updated, it required a machine reboot. This was always a bit of an inconvenience and a bug. Because with a lot of software now, you don't need to do that and shouldn't need to be rebooting all the time.""The room for improvement would be on event notifications. I have mine tuned fairly well. I do feel that if you subscribe to all the event notification types out-of-the-box, or don't really go through and take the time to filter out events, the notifications can become overwhelming with information. Sometimes, when you're overwhelmed with information, you just say, "I'm not going to look at anything because I'm receiving so much." I recommend the vendor come up with a white paper on the best practices for event notifications.""We don't have issues. We think that Cisco covers all of the security aspects on the market. They continue to innovate in the right way.""I would like to see integration with Cisco Analytics."

More Cisco Secure Endpoint Cons →

"In the future release of CrowdStrike Falcon, they should add a sandbox feature.""Basically, they don't cover legacy OS or applications. That's the only issue we're concerned about""They don't really have anything when it comes to scanning attachments.""Too many false positives.""I would like them to improve the correlation of data in the search algorithms. When we run an investigation, malware, phishing, etc., I want to look at multiple endpoints at once to correlate that data to see the likenesses, e.g., how are they not alike or what systems and processes are running across those systems? I don't want to have to run the same search in their Spotlight module five, 10, 15, or 100 times to get 100 different results, copy that data out, and then correlate it on my own. In a very simple way, I want to be able to load up a comma-delimited list giving me the spotlight data on these X amount of hosts, letting me search for it quickly. We have had to go back to CrowdStrike, and say, "Our search are taking far too long for even one host." They did bump up the cores and that did improve performance, but it is still kind of slow to get that Spotlight data. That is probably our biggest pain point. I think that needs some help. I understand this kind of information access is probably not the easiest thing to do. It is probably a big ask depending on how their back-end is setup.""CrowdStrike Falcon could improve if it became an XDR. When we look only to an end-point, we lost the context of the environment. I know it's another line of design of the product. However, if CrowdStrike becomes an XDR, it could be very good.""The price is too high.""I would love to see more investment in Insight because CrowdStrike have an opportunity to potentially displace some of the vulnerability management vendors with the visibility they can see over time. I want to see them continue to evolve, e.g., what other things can they disrupt which are operational things we have to continue to do as an organization."

More CrowdStrike Falcon Cons →

"The solution could use extra dashboards and offer more analytics.""Apex One has some room for improvement on the agent side. I want to get more from the logs and those kinds of things. I want to see whether the agent has the proper updates or any issues with the machine itself.""I would like to see behavior analysis capabilities included.""Could channel video more efficiently.""Some of the updates still require a complete reboot of the system.""It would be great it can support endpoint encryption.""The portal is a little bit slow in loading. The cloud portal or management control should be a little faster. There seems to be a lot of load on their servers over there. Maybe they are using one server for multiple customers. It would be great if they can increase server performance in the cloud. Its technical support and reporting can be improved. There is no proper reporting, and there is no PDF or things like that. They should include detailed reporting. An attack happened at a client's site, but we couldn't get the report on the same day. We were unable to provide a detailed report to our client. We approached the technical support, and even they didn't give proper answers. They need to improve the reporting capabilities, or the technical team should support us in providing these reports. They should include reporting in the solution. They should also insert sandbox analysis in Apex One.""We are completely satisfied with the functionality of the product, but the reporting should be more granular."

More Trend Micro Apex One Cons →

Pricing and Cost Advice
  • "The visibility that we have into the endpoint and the forensics that we're able to collect give us value for the price. This is not an overly expensive solution, considering all the things that are provided. You get great performance and value for the cost."
  • "Whenever you are doing the licensing process, I would highly advise to look at what other Cisco solutions you have in your organization, then evaluate if an Enterprise Agreement is the best way to go. In our case, it was the best way to go. Since we had so many other Cisco products, we were able to tie those in. We were actually able to get several Cisco security solutions for less than if we had bought three or four Cisco security solutions independently or ad hoc."
  • "In our case, it is a straightforward annual payment through our Enterprise Agreement."
  • "Our company was very happy with the price of Cisco AMP. It was about a third of what we were paying for System Center Endpoint Protection."
  • "There are a couple of different consumption models: Pay up front, or if you have an enterprise agreement, you can do a monthly thing. Check your licensing possibilities and see what's best for your organization."
  • "The Enterprise Agreement is like an all-you-can-eat buffet of Cisco products. In that vein, it was very affordable."
  • "We can know if something bad is potentially happening instantaneously and prevent it from happening. We can go to a device and isolate it before it infects other devices. In our environment, that's millions of dollars saved in a matter of seconds."
  • "The pricing and licensing are reasonable. The cost of AMP for Endpoints is inline with all the other software that has a monthly endpoint cost. It might be a little bit higher than other antivirus type products, but we're only talking about a dollar a month per user. I don't see that cost as being an issue if it's going to give us the confidence and security that we're looking for. We have had a lot of success and happiness with what we're using, so there's no point in changing."
  • More Cisco Secure Endpoint Pricing and Cost Advice →

  • "Our company pays approximately US$ 65,000 annually for 900 machines."
  • "The pricing on CrowdStrike is per license. It was about $42 per seat yearly."
  • "The pricing could be reduced. If it was more reasonable that would be great."
  • "Our licensing fees were between $50,000 and $60,000 per year, which was pretty expensive for a small business."
  • "When comparing to Microsoft, CrowdStrike Falcon is more expensive."
  • "All I can say about the licensing cost is that it's negotiable."
  • "The price is too high."
  • "The pricing is good and there are no costs in addition to the standard licensing fees."
  • More CrowdStrike Falcon Pricing and Cost Advice →

  • "Licensing costs depend completely on the number of users or licenses. They have a specific pricing structure. For example, if you are looking for 100 users to be on the product, in the Indian market (we're based in India), the cost is nearly $2,500 to $3,000 maximum for one three-year license."
  • "The price is reasonable."
  • "Its pricing was good. It is very competitive with all the other vendors."
  • "Compared to other products on the market, I think that the pricing is reasonable."
  • "The price is very good compared to other products."
  • "We have a yearly subscription. Our subscription includes all solutions of Apex One, such as endpoint protection, DLP, and ransomware protection. We are paying around $30 for each."
  • "Licensing fees are paid on a yearly basis."
  • "The cost of this solution is mid-level; not cheap nor expensive."
  • More Trend Micro Apex One Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Endpoint Protection for Business (EPP) solutions are best for your needs.
    563,208 professionals have used our research since 2012.
    Questions from the Community
    Top Answer: 
    The most valuable feature is signature-based malware detection.
    Top Answer: 
    Licensing fees are on a yearly basis and I am happy with the pricing.
    Top Answer: 
    The GUI needs improvement, it's not good. There are false positives in emails. At times, the emails are blocked and… more »
    Top Answer: 
    Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions… more »
    Top Answer: 
    Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing… more »
    Top Answer: 
    The CrowdStrike solution delivers a lot of information about incidents. It has a very light sensor that will never push… more »
    Top Answer: 
    Trend Micro Deep Security offers a lot of features. It guarantees security for your data center, cloud, and containers -… more »
    Top Answer: 
    Trend Micro Apex One most valuable features are centralized management, ease of use, and help user management… more »
    Top Answer: 
    If I compare Trend Micro Apex One with other solutions there are a few challenges for customers who have do not need… more »
    Comparisons
    Also Known As
    Cisco AMP for Endpoints
    CrowdStrike
    OfficeScan, Trend Micro OfficeScan
    Learn More
    Overview

    Advanced Malware Protection (AMP) is subscription-based, managed through a web-based management console, and deployed on a variety of platforms that protects endpoints, network, email and web Traffic. AMP key features include the following: Global threat intelligence to proactively defend against known and emerging threats, Advanced sandboxing that performs automated static and dynamic analysis of files against more than 700 behavioral indicators, Point-in-time malware detection and blocking in real time and Continuous analysis and retrospective security regardless of the file's disposition and Continuous analysis and retrospective security.

    CrowdStrike is the leader in cloud-delivered next-generation endpoint protection. CrowdStrike has revolutionized endpoint protection by being the first and only company to unify next-generation antivirus (AV), endpoint detection and response (EDR), and a 24/7 managed hunting service — all delivered via a single lightweight agent. 

    Many of the world’s largest organizations already put their trust in CrowdStrike, including three of the 10 largest global companies by revenue, five of the 10 largest financial institutions, three of the top 10 health care providers, and three of the top 10 energy companies.

    Request a free trial here: https://go.crowdstrike.com/try-falcon-prevent

    Trend Micro Apex One™ protection offers advanced automated threat detection and response against an ever-growing variety of threats, including fileless and ransomware. Our cross-generational blend of modern techniques provides highly tuned endpoint protection that maximizes performance and effectiveness.

    Offer
    Learn more about Cisco Secure Endpoint
    Get Fast and Easy Protection Against All Threats

    Protect your organization from all threats - not just malware - even when computers and servers aren’t connected to the internet. Start your free trial and deploy CrowdStrike Falcon within minutes to start receiving full threat protection.

    Learn more about Trend Micro Apex One
    Sample Customers
    Heritage Bank, Mobile County Schools, NHL University, Thunder Bay Regional, Yokogawa Electric, Sam Houston State University, First Financial Bank
    Information Not Available
    Atma Jaya Catholic University of Indonesia, A&W Food Services of Canada, Babou, Beth Israel Deaconess Care Organization (BO), DCI Donor Services, Evalueserve, Gulftainer, Hiroshima Prefectural Government, MEDHOST
    Top Industries
    REVIEWERS
    Government13%
    Healthcare Company13%
    Manufacturing Company13%
    Financial Services Firm7%
    VISITORS READING REVIEWS
    Comms Service Provider24%
    Computer Software Company23%
    Government7%
    Financial Services Firm5%
    REVIEWERS
    Financial Services Firm17%
    Hospitality Company9%
    Insurance Company9%
    Energy/Utilities Company9%
    VISITORS READING REVIEWS
    Computer Software Company25%
    Comms Service Provider19%
    Government6%
    Financial Services Firm5%
    REVIEWERS
    Financial Services Firm22%
    Manufacturing Company11%
    Computer Software Company11%
    Construction Company7%
    VISITORS READING REVIEWS
    Comms Service Provider28%
    Computer Software Company24%
    Government8%
    Manufacturing Company5%
    Company Size
    REVIEWERS
    Small Business39%
    Midsize Enterprise18%
    Large Enterprise43%
    VISITORS READING REVIEWS
    Small Business28%
    Midsize Enterprise21%
    Large Enterprise50%
    REVIEWERS
    Small Business27%
    Midsize Enterprise23%
    Large Enterprise50%
    VISITORS READING REVIEWS
    Small Business23%
    Midsize Enterprise30%
    Large Enterprise47%
    REVIEWERS
    Small Business37%
    Midsize Enterprise28%
    Large Enterprise35%
    VISITORS READING REVIEWS
    Small Business45%
    Midsize Enterprise24%
    Large Enterprise30%
    Find out what your peers are saying about CrowdStrike Falcon vs. Trend Micro Apex One and other solutions. Updated: January 2022.
    563,208 professionals have used our research since 2012.

    CrowdStrike Falcon is ranked 1st in Endpoint Protection for Business (EPP) with 33 reviews while Trend Micro Apex One is ranked 12th in Endpoint Protection for Business (EPP) with 50 reviews. CrowdStrike Falcon is rated 8.8, while Trend Micro Apex One is rated 8.2. The top reviewer of CrowdStrike Falcon writes "Speeds up the data collection for our phishing playbooks dramatically". On the other hand, the top reviewer of Trend Micro Apex One writes "Antivirus and Malware scanning with reporting that allows you to report back with information". CrowdStrike Falcon is most compared with Microsoft Defender for Endpoint, SentinelOne, Cortex XDR by Palo Alto Networks, Darktrace and Fortinet FortiEDR, whereas Trend Micro Apex One is most compared with Trend Micro Deep Security, Microsoft Defender for Endpoint, Cortex XDR by Palo Alto Networks, Sophos Intercept X and Seqrite Endpoint Security. See our CrowdStrike Falcon vs. Trend Micro Apex One report.

    See our list of best Endpoint Protection for Business (EPP) vendors.

    We monitor all Endpoint Protection for Business (EPP) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.