Anyone move from Crowdstrike to Defender for Endpoint recently?
Anyone move from Crowdstrike to Defender for Endpoint recently?
Anyone move from Crowdstrike to Defender for Endpoint recently?
Re: Anyone move from Crowdstrike to Defender for Endpoint recently?
You can run DFE in passive mode, get all the telemetry etc and keep crowd strike as your EDR solution.
DFE and it's associated products (identity, cloud apps, sentinel etc) require way more tuning to suppress the noise than CS. At least that's my experience working in an MSSP.
DFE and it's associated products (identity, cloud apps, sentinel etc) require way more tuning to suppress the noise than CS. At least that's my experience working in an MSSP.