CrowdStrike Falcon vs. KnowBe4 PhishER/PhishER Plus

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
CrowdStrike Falcon
Score 9.0 out of 10
N/A
CrowdStrike offers the Falcon Endpoint Protection suite, an antivirus and endpoint protection system emphasizing threat detection, machine learning malware detection, and signature free updating. Additionally the available Falcon Spotlight module delivers vulnerability assessment with no performance impact, no additional agents, hardware, scheduled scans, firewall exceptions or admin credentials.
$59.99
per endpoint/month (minimum number of endpoints applies)
KnowBe4 PhishER/PhishER Plus
Score 9.2 out of 10
N/A
PhishER is presented as a lightweight Security Orchestration, Automation and Response (SOAR) platform to orchestrate threat response and manage the high volume of potentially malicious email messages reported by users. And, with automatic prioritization of emails, PhishER helps InfoSec and Security Operations team cut through the inbox noise and respond to the most dangerous threats more quickly.
$0.75
per month (billed annually) per seat
Pricing
CrowdStrike FalconKnowBe4 PhishER/PhishER Plus
Editions & Modules
Falcon Go (Small Business)
$59.99
per endpoint/month (minimum number of endpoints applies)
Falcon Go (Small Business)
$59.99
Falcon Pro
$99.99
per endpoint/month (for 5-250 endpoints, billed annually)
Falcon Enterprise
$184.99
per endpoint/month (minimum number of endpoints applies)
3001-5000 Monthly Pricing Per Seat
$0.75
per month (billed annually) per seat
2001-3000 Monthly Pricing Per Seat
$0.85
per month (billed annually) per seat
1001-2000 Monthly Pricing Per Seat
$1.00
per month (billed annually) per seat
501-1000 Monthly Pricing Per Seat
$1.15
per month (billed annually) per seat
101-500 Monthly Pricing Per Seat
$1.50
per month (billed annually) per seat
Offerings
Pricing Offerings
CrowdStrike FalconKnowBe4 PhishER/PhishER Plus
Free Trial
YesNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
CrowdStrike FalconKnowBe4 PhishER/PhishER Plus
Considered Both Products
CrowdStrike Falcon
Chose CrowdStrike Falcon
Sentinelone is bit complicated language use in there console in compare to CrowdStrike Falcon. CrowdStrike Falcon have much big modules and features but sentinelone don't. CrowdStrike Falcon have one single unified agent and in sentinelone bit confused in selection of agent …
Chose CrowdStrike Falcon
CrowdStrike is by far the superior product as we have had zero problems since installing compared to Trend where is positively failed us. We switched and again have had zero issues with the product and it protects our environment as it should without much interaction.
Chose CrowdStrike Falcon
CrowdStrike Falcon is way ahead of Symantec, and covers features that defender XDR doesn't, even if you purchase all the addons. I think the only real competitors are Sentinel One, maybe Palo Alto or Huntress, or Carbon Black.
Chose CrowdStrike Falcon
In my opinion, CrowdStrike Falcon provides superior detection and prevention capabilities over Jamf Protect. At the time we purchased (2017) CrowdStrike Falcon was more advanced than SentinelOne and Microsoft Defender for Endpoint.
Chose CrowdStrike Falcon
CrowdStrike Falcon is far superior in all aspects. I love the features and support they provide.
Chose CrowdStrike Falcon
CrowdStrike Falcon is an industry leader in this sector and is superior in its low overhead agent, having minimal impact on end-users. We plan to migrate our macOS fleet when our existing contract expires.
Chose CrowdStrike Falcon
We felt that CrowdStrike had a more comprehensive security tool set and the overall cost for CrowdStrike was less than those other solutions.
Chose CrowdStrike Falcon
Advance detection capability.Overwatch threat hunt team which proactively hunts your environment Interactive sandbox. Reduced false positives & ease of whitelisting to granular level.AI and ML can analyze events to identify subtle patterns that might indicate malicious …
Chose CrowdStrike Falcon
In my opinion,
CrowdStrike Falcon does a better job of detection than Carbon black in all forms. Compared to SentinelOne XDR, CrowdStrike Falcon does a better job of finding potential threats even though the machine learning based detection cause more False Positives than the …
Chose CrowdStrike Falcon
It is superior on the following two: Advanced threat detection because AI and ML can analyze vast amounts of data to identify subtle patterns that might indicate malicious activity, even zero-day attacks (previously unknown threats).Reduced false positives because it can help …
Chose CrowdStrike Falcon
It’s provides all of what the other solutions offered individually and at a better price.
Chose CrowdStrike Falcon
At the time of purchase CrowdStrike provided the best featureset and value proposition for the organisation. The cloud first nature of the product and the mix of heuristic and behaviour based detection technologies was better than anything else that we looked at.
Chose CrowdStrike Falcon
we felt that this was a new refresh as what we had prior was best at the time and there are new and modern approaches to keep the end points secure
Chose CrowdStrike Falcon
CrowdStrike Falcon is the market leader so is head and shoulders above these products. These products work of old school methodologies of detecting malware which are no longer fit for purpose.
Chose CrowdStrike Falcon
Although the other products were good, CrowdStrike Falcon Complete had more to offer and had a much cleaner, more intuitive interface.
Chose CrowdStrike Falcon
It was the easiest to deploy and manage, while the dashboard was also very clear and precise in terms of useful information.
Another major reason in selection CrowdStrike Falcon was its AI and ML detection capabilities which really impressed us during evaluation. Other tools …
Chose CrowdStrike Falcon
Better tool and it was used by our Incident response team on a real incident.
Chose CrowdStrike Falcon
Managed service for EDR operation
Chose CrowdStrike Falcon
We moved on from Symantec and compared with Sophos - the impact (performance) to the endpoint is very minimal - our engineers always fight new security tools. During testing, they were running CrowdStrike for 2 weeks when they asked when we would install the new EDR tool to …
Chose CrowdStrike Falcon
Before choosing CrowdStrike Falcon, we evaluated alternative solutions such as Symantec and McAfee. However, CrowdStrike Falcon's cloud-native approach, advanced threat hunting capabilities, and real-time visibility into endpoint activities set it apart as the optimal choice …
Chose CrowdStrike Falcon
Next Gen antivirus solution. You don't need your own infrastructure for the service. Deployment is very easy and fast. Only one sensor on the clients with very low CPU impact. Easy multi factor deployment. Good overview in the console over your entire envirement. Very good and …
Chose CrowdStrike Falcon
At the time we evaluated the products, CrowdStrike was clearly leading in this space. It's possible since that time so other products have added additional features and may be equivalent.
Chose CrowdStrike Falcon
CrowdStrike Falcon's cloud-native architecture gives it an edge in terms of scalability, ease of deployment, and real-time threat intelligence updates. The user interface of Falcon is intuitive and offers clear visibility into our organization's threat landscape. Our team felt …
Chose CrowdStrike Falcon
When we looked, we narrowed to two choices Sentinel One and CrowdStrike. We chose CrowdStrike due to the use of AI backed up with Human Security experts to investigate detections and issues.
KnowBe4 PhishER/PhishER Plus
Chose KnowBe4 PhishER/PhishER Plus
We evaluated the Titan options because we have already used their DNS filtering product. However, KnowBe4 came in with a better price per user and a significantly stronger product lineup, particularly with its security awareness training component.
Chose KnowBe4 PhishER/PhishER Plus
Hands down superior
Chose KnowBe4 PhishER/PhishER Plus
Email customization looks like a carbon copy. Layout is more convoluted. We would have to purchase three separate elements to achieve what we get with KnowBe4 PhishER/PhishER Plus at double/triple the cost. The KnowBe4 PhishER/PhishER Plus product lineup is better, more …
Chose KnowBe4 PhishER/PhishER Plus
Only tool that has features like rip and flip
Chose KnowBe4 PhishER/PhishER Plus
KnowBe4's PhishER was the deciding factor for us.
Chose KnowBe4 PhishER/PhishER Plus
Harmony does not provide security awareness training or simulated phishing emails like KnowB4. However, it does provide a phish alert button & workflow similar to PhishER & we may stop using PhishER because the Phish Alert reports from PhishER don't feed into Harmony to help …
Chose KnowBe4 PhishER/PhishER Plus
None of the other security awareness applications we used or considered offered a similar product to PhishER or their overall security awareness application was so subpar that we didn't even consider if they had an option similar to PhishER.
Chose KnowBe4 PhishER/PhishER Plus
No comparison in their capabilities.
Chose KnowBe4 PhishER/PhishER Plus
KnowBe4 PhishER/PhishER Plus had a better user interface and a greater option for growth
Chose KnowBe4 PhishER/PhishER Plus
We decided on KnowBe4 PhishER to make our response process smoother and cut down on the time and effort needed to handle threats. We wanted to reduce manual work and focus our team on real threats. PhishER’s fast analysis and response were key in our decision. Overall, …
Chose KnowBe4 PhishER/PhishER Plus
we have not looked at other products
Chose KnowBe4 PhishER/PhishER Plus
Our organization has always solely trusted KnowBe4.
Recommended by our outside IT vendor- they continuously do random research on other similar products and time and time again, find KnowBe4 to be the best out there for value and product
Chose KnowBe4 PhishER/PhishER Plus
Arctic Wolf also offers a similar product to PhishER using their Phish Tell engine. However, it was severely lacking in terms of workflow automation. Switching to Arctic Wolf's email reporting and response product would have increased the number of manual hours spent on email …
Chose KnowBe4 PhishER/PhishER Plus
Microsoft's backed in email reporting tool is good but the time to resolution varies for all messages. It claims that it will help train filters to better classify messages into the tenant, but we have not seen much of that.

Barracuda offered a similar product to PhishER but …
Chose KnowBe4 PhishER/PhishER Plus
Some other providers offer similar training but have found Phisher tends to be where we get the most value compared to other products
Chose KnowBe4 PhishER/PhishER Plus
We researched several, however, KnowBe4 was our first choice and we've been with them since the beginning of our time with these types of products.
Chose KnowBe4 PhishER/PhishER Plus
Abnormal is on an entirely nother level both in cost and functionality. Costs is 25x but is borderline magic. Barracuda was finicky and cost more. Defender for email we already had but falls short in a lot of areas, especially with the reporting piece.
Chose KnowBe4 PhishER/PhishER Plus
We use the two tools in parallel to ensure that we can effectively manage and report on Phishing and further enhance our training campaigns.
Chose KnowBe4 PhishER/PhishER Plus
We liked the integration and ease of use.
Chose KnowBe4 PhishER/PhishER Plus
PhishER is an add-on to the email client which makes it easy to setup and readily available to use for all staff. Other products require much more indepth setup and can be confusing for untrained staff. PhishER is easy to use for all staff and this encourages staff to use it …
Chose KnowBe4 PhishER/PhishER Plus
I think that KnowBe4 PhishER/PhishER Plus is better than Huntress by precisely telling you in real time what your other defenses are missing. Encourage targeted, just-in-time training against actual threats. Provides evidence and data to demonstrate a true risk reduction.
Chose KnowBe4 PhishER/PhishER Plus
We view KnowBe4 PhishER as another piece to the security puzzle. It works well alongside the other security applications and services in use at our organization.
Chose KnowBe4 PhishER/PhishER Plus
We only have evaluated and/or used PhishER since it is a part of the complete KnowB4 package that we subscribe to.
Chose KnowBe4 PhishER/PhishER Plus
KnowBe4 PhishER requires less hands-on involvement from our small (but mighty) IT team. Threats are alleviated quickly without our team having to drop something important that they are working on to respond to a phishing email.
Features
CrowdStrike FalconKnowBe4 PhishER/PhishER Plus
Endpoint Security
Comparison of Endpoint Security features of Product A and Product B
CrowdStrike Falcon
9.1
Ratings
6% above category average
KnowBe4 PhishER/PhishER Plus
-
Ratings
Anti-Exploit Technology9.50 Ratings00 Ratings
Endpoint Detection and Response (EDR)9.70 Ratings00 Ratings
Centralized Management9.70 Ratings00 Ratings
Hybrid Deployment Support8.20 Ratings00 Ratings
Infection Remediation9.30 Ratings00 Ratings
Vulnerability Management7.70 Ratings00 Ratings
Malware Detection9.40 Ratings00 Ratings
Incident Response Platforms
Comparison of Incident Response Platforms features of Product A and Product B
CrowdStrike Falcon
-
Ratings
KnowBe4 PhishER/PhishER Plus
8.7
Ratings
1% below category average
Company-wide Incident Reporting00 Ratings8.70 Ratings
Integration with Other Security Systems00 Ratings8.50 Ratings
Centralized Dashboard00 Ratings8.70 Ratings
Machine Learning to Prevent Incidents00 Ratings8.70 Ratings
Live Response for Rapid Remediation00 Ratings8.60 Ratings
Best Alternatives
CrowdStrike FalconKnowBe4 PhishER/PhishER Plus
Small Businesses
ThreatLocker
ThreatLocker
Score 9.5 out of 10
ThreatDown, powered by Malwarebytes
ThreatDown, powered by Malwarebytes
Score 8.8 out of 10
Medium-sized Companies
BlackBerry Protect (CylancePROTECT)
BlackBerry Protect (CylancePROTECT)
Score 9.1 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.0 out of 10
Enterprises
BeyondTrust Endpoint Privilege Management
BeyondTrust Endpoint Privilege Management
Score 9.8 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.0 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
CrowdStrike FalconKnowBe4 PhishER/PhishER Plus
Likelihood to Recommend
9.6
(0 ratings)
8.8
(0 ratings)
Likelihood to Renew
10.0
(0 ratings)
8.3
(0 ratings)
Usability
10.0
(0 ratings)
8.0
(0 ratings)
Support Rating
10.0
(0 ratings)
8.2
(0 ratings)
In-Person Training
9.0
(0 ratings)
-
(0 ratings)
Implementation Rating
10.0
(0 ratings)
9.1
(0 ratings)
Configurability
-
(0 ratings)
7.3
(0 ratings)
Ease of integration
-
(0 ratings)
8.2
(0 ratings)
User Testimonials
CrowdStrike FalconKnowBe4 PhishER/PhishER Plus
Likelihood to Recommend
CrowdStrike Falcon is well suited for any size of environment. Large to small, CrowdStrike Falcon does an amazing job. The ability to have the same security as a fortune 500 company and have a solution that sees the same threats that they are seeing is amazing. I do not think that there is a company or environment that wouldn't benefit from the CrowdStrike Falcon solution.
Read full review
PhishER comes with some good features, such as PhishML, PhishRIP, PhishFlip, etc. These features help us manage phishing email reporting incidents. From reporting emails via Phish Alert Button plug-in to collecting all reported emails in one place at the PhishER dashboard. Now, the PhishML comes into play, scanning all reported emails and tagging each as clean, spam, or threat. With the help of this machine learning-based algorithm, our investigation process becomes easier. Other features, such as PhishRip, help to search and quarantine phishing emails, and PhishFlip converts a real phishing campaign to a test phishing campaign.
Read full review
Pros
  • The Log analysis is very detailed and easy to use.
  • Prevent and block all type of malwares.
  • Great threat intelligence which is very up-to-date with the recent cyber attacks
  • very user friendly in access and management
  • Automated feature of detecting, taking action and closing incidents using fusion workflow.
Read full review
  • Well structured KMSAT, PAB is a great addition.
  • Good Training Library, ability to customize templates
  • Phish/ER opens a windows to types & volume of suspect emails and allows admins to act upon.
  • "Rooms" in Phish/ER, to me, is considered my entry point to start my admin duties.
  • PAB and Phish/ER work very well together.
  • KnowBe4 Learner App is a great addition.
Read full review
Cons
  • The Dashboard can become overwhelming at times, too much information to absorb
  • Computers that may have made it out into the field without the endpoint sensor are very difficult to find
  • As with all systems that rely on machine learning false positives occurr
Read full review
  • Issues with Global Blocklist
  • Email Template Modification - Simplification
  • Target Specific Users vs. Groups
  • PhishRIP info tabs (i.e. if improperly check ripped emails are turned into tests. This has caused issues.) Info tabs or markers allow user to hover and get more information about what action a check box or slider provides.
Read full review
Likelihood to Renew
Crowdstrike has a large suite of tools built for helping the engineers triage and respond to security event whenever identified. The ability to customize the security policies and implement more granular policies to different devices based on the functionality is unmatched. Crowdstrike provides so much of ability in a decent budget which ascertains the value for money or ROI.
Read full review
When we first discovered that KnowBe4 released something like this, we saw a demo of it and were floored at what it could do and how it could help us from a security standpoint. Gone are the days of us in IT sending out a mass email saying please don't click on anything in the email from sender "X", and it allows us to quietly and easily ensure that people don't take any action on malicious emails.
Read full review
Usability
I think it is a complete and very trustful XDR platform, with very few False Positives. It is very well supported by highly skilled professionals on all levels: from pre-sales engineers, Customer Account Managers and support engineers.
Read full review
I think that the system is well designed and makes it easy to fine phishing emails that have been reported. It also has a simple user interface that allows you to review and address threat emails also providing an automated component that allows for automated threat mitigation and customized feedback responses to users
Read full review
Support Rating
Support is generally pretty fast and gets right to the issue. We haven't had to use them much, fortunately, but the issues and questions we've had are usually answered quickly. The customer success manager/account manager you're assigned will also follow up with you on a regular cadence to ensure you're getting the most out of the subscription. There's not a whole lot of room to improve, other than the general confusion about what is/what is not covered in custom packages you're subscribed to. The initial purchase took much longer because of a package name changes and realignments of different modules into those packages.
Read full review
Responses to questions were answered quickly and accurately.
Read full review
In-Person Training
There is limited amount of learning that can be completed in an in-person training available. In my opinion, the self-paced learning provided by Falcon portal is more useful over in-person training. The support from Falcon is great and useful to overcome difficulties, if any.
Read full review
No answers on this topic
Online Training
The training provided by Crowdstrike Falcon is complete in terms of the depth of technical knowledge and teaches the users about going through with the platform. There are lots of jargons for different tools that Crowdstrike Falcon has and this training teaches them all which helps in managing the platform better. Plus, the regular knowledge checks are also very helpful for the end user.
Read full review
No answers on this topic
Implementation Rating
Read the documentation
Read full review
It was very simple to implement - with just a few settings needed to connect it to our O365 environment
Read full review
Alternatives Considered
We were a former Arctic Wolf customer and feel like they worked more as a team with us. Cylance is what we're looking at possibly migrating to.
Read full review
We evaluated the Titan options because we have already used their DNS filtering product. However, KnowBe4 came in with a better price per user and a significantly stronger product lineup, particularly with its security awareness training component.
Read full review
Return on Investment
  • CrowdStrike Falcon's proactive threat mitigation has significantly reduced the risk of successful cyber attacks, resulting in tangible savings related to potential data breaches or system compromises.
  • The cloud-native architecture and automated features have improved operational efficiency.
  • The platform's real-time visibility and threat hunting capabilities have drastically improved incident response times.
Read full review
  • There has been a 700% increase in emails being reported now. Previously, staff were only reporting 4 emails a month. It is easier for us to promote the phish alert button, receive automated remediation and rapidly respond.
  • We had no reports on the amount of phishing emails were coming through Mimecast but now we have reports for the board of trustees.
  • Every Wednesday we talk about cyber security to all staff, PhishER allows us to point out the trend and what to look out for which raises awareness. Never before were we able to talk about cyber security like this.
Read full review
ScreenShots

KnowBe4 PhishER/PhishER Plus Screenshots

Screenshot of how PhishER Plus enables a critical workstream to help IR teams work together to mitigate the phishing threat and is suited for any organization that wants to automatically prioritize and manage potentially malicious messages.