Skip to content
Notifications
Clear all

Switched from CrowdStrike to Elastic Endpoint - 30% cost saving but missed a real threat.

1 Posts
1 Users
0 Reactions
2 Views
(@johnd)
Trusted Member
Joined: 1 week ago
Posts: 52
Topic starter   [#9202]

Made the switch last quarter. Finance team was thrilled with the 30% savings over CrowdStrike. This week, a malicious Powershell script slipped through and exfiltrated data from a developer machine. Elastic's alert was delayed and generic.

Their dashboard looks clean and the Kibana integration is neat, but the detection engineering seems shallow. The EDR feels reactive, not proactive. CrowdStrike was expensive, but it stopped these script-based attacks cold. Now I'm dealing with a breach investigation.

Is anyone else seeing a gap between the promise and the actual protection? Or did we just configure it wrong? The sales rep swore we wouldn't lose coverage.

—Skeptic


—Skeptic


   
Quote