CrowdStrike Falcon Identity Protection Logo
CrowdStrike Falcon Identity Protection Logo
Crowdstrike

CrowdStrike Falcon Identity Protection

Composite Score
6.8 /10
CX Score
6.7 /10
Category
CrowdStrike Falcon Identity Protection
6.8 /10

What is CrowdStrike Falcon Identity Protection?

Falcon Identity Protection unifies endpoint and identity security with a single agent and console for immediate time-to-value. Extend your protection further and close the skills gap with industry-leading 24/7 MDR services when you need it.

Company Details


Need Assistance?

We're here to help you with understanding our reports and the data inside to help you make decisions.

Get Assistance

CrowdStrike Falcon Identity Protection Ratings

Real user data aggregated to summarize the product performance and customer experience.

Product scores listed below represent current data. This may be different from data contained in reports and awards, which express data as of their publication date.

83 Likeliness to Recommend

89 Plan to Renew

75 Satisfaction of Cost Relative to Value


{y}
{name}

Emotional Footprint Overview

Product scores listed below represent current data. This may be different from data contained in reports and awards, which express data as of their publication date.

+69 Net Emotional Footprint

The emotional sentiment held by end users of the software based on their experience with the vendor. Responses are captured on an eight-point scale.

How much do users love CrowdStrike Falcon Identity Protection?

0% Negative
11% Neutral
89% Positive

Pros

  • Enables Productivity
  • Efficient Service
  • Inspires Innovation
  • Includes Product Enhancements

Cons

  • Slower Product Innovation
  • Less Caring
  • Less Friendly Negotiation

Feature Ratings

Average 78

Time to value

89

Discover Human Identities

86

Discover Federated Identities

83

Suspicious activity

81

Authentication support

81

TTP detection

78

Policy Creation and Right Sizing

78

Discover Machine Identities

78

Forensics

78

ZSP support

75

Refactoring

75

Vendor Capability Ratings

Average 75

Business Value Created

83

Ease of Customization

81

Vendor Support

78

Availability and Quality of Training

75

Ease of Data Integration

75

Usability and Intuitiveness

75

Breadth of Features

75

Ease of Implementation

72

Ease of IT Administration

72

Product Strategy and Rate of Improvement

72

Quality of Features

69

CrowdStrike Falcon Identity Protection Reviews

Lorena L.

  • Role: Industry Specific Role
  • Industry: Manufacturing
  • Involvement: IT Development, Integration, and Administration
Validated Review
Verified Reviewer

Submitted Apr 2025

Worked great until...

Likeliness to Recommend

7 /10

What differentiates CrowdStrike Falcon Identity Protection from other similar products?

What I like about crowdstrike is its interface. It is very user friendly and make sit easy to monitor for threats. The threat reports are concise and help identify the nature of the attacks. It also integrates well with our cloud-native applications.

What is your favorite aspect of this product?

Favorite aspect is the real time monitoring of threats. Requires little training to be able to be used at full capacity.

What do you dislike most about this product?

The cost is a little high as compared to other platforms, such as Heimdal. Also, would be nice to have a sensor repair tool to triage and repair unhealthy sensors.

What recommendations would you give to someone considering this product?

If cost is not an issue, then it is a good platform. However, we might be moving towards Heimdal in the future. Customer service is a little lacking as well.

Pros

  • Helps Innovate
  • Performance Enhancing
  • Enables Productivity
  • Unique Features

Cons

  • Slower Product Innovation
  • Less Reliable
  • Less Effective Service

Oluwatobiloba O.

  • Role: Information Technology
  • Industry: Technology
  • Involvement: IT Leader or Manager
Validated Review
Verified Reviewer

Submitted May 2025

Best Way to Secure Your Identity

Likeliness to Recommend

9 /10

What differentiates CrowdStrike Falcon Identity Protection from other similar products?

first time of usage, cant really say

What is your favorite aspect of this product?

every part i guess

What do you dislike most about this product?

nothing really

What recommendations would you give to someone considering this product?

You really wanna protect your identity, go ahead

Pros

  • Helps Innovate
  • Trustworthy
  • Efficient Service
  • Inspires Innovation

Ben-Eze C.

  • Role: Information Technology
  • Industry: Technology
  • Involvement: End User of Application
Validated Review
Verified Reviewer

Submitted May 2025

CrowdStrike F.I.P: The Game Changer

Likeliness to Recommend

9 /10

What differentiates CrowdStrike Falcon Identity Protection from other similar products?

CrowdStrike Falcon Identity Protection stands out by integrating endpoint and identity telemetry—unlike siloed IAM tools. It detects credential-based attacks (like Pass-the-Hash) in real-time using behavioral analytics, not just rules. The lightweight agent (unlike bulky legacy solutions) won’t slow systems, and its threat graph correlates identity risks with endpoint activity. However, it lacks deep AD management features—best paired with CrowdStrike’s EDR for full coverage.

What is your favorite aspect of this product?

My favorite aspect is Falcon Identity’s real-time attack chaining—it doesn’t just flag suspicious logins, but shows exactly how attackers move from compromised credentials to endpoint exploitation. During our pen tests, it detected stealthy lateral movement (like RDP session hijacking) that SIEMs missed, with clear visual timelines. The lightweight agent (only 1-2% CPU usage) makes it viable for all endpoints, and the automated response actions (like forcing MFA re-auth) saved us hours of manual containment.

What do you dislike most about this product?

The most frustrating limitations are the lack of detailed forensic context within the Identity Protection console - you often need to switch to Falcon OverWatch or EDR for full attack chain analysis. The alert customization is too basic, lacking role-based thresholds (VIP users vs contractors), and cloud identity provider integrations (like Okta/Azure AD) only cover basic scenarios. During large-scale incidents, the UI becomes sluggish when loading 1000+ event timelines. For a premium product, the reporting feels outdated (static PDFs vs interactive dashboards), and the API rate limits complicate SIEM integrations.

What recommendations would you give to someone considering this product?

If you're considering CrowdStrike Falcon Identity Protection, first evaluate how well it fits your existing setup. It works best for companies already using CrowdStrike's EDR, as the integration between the two is seamless. Be prepared to spend time fine-tuning alerts to reduce false positives - we needed about two weeks to get them right. The product excels at detecting Windows Active Directory threats but has limited functionality for cloud identity providers like Okta. You'll need to use their API carefully due to rate limits when connecting to SIEM systems. This solution isn't the best choice if you need full IAM capabilities.

Pros

  • Helps Innovate
  • Continually Improving Product
  • Reliable
  • Performance Enhancing