Organizations already running Falcon EDR who want intel that flows natively into endpoint detections and identity protection without separate plumbing.
Non-Falcon shops (integration value evaporates), buyers needing dark-web depth (Flashpoint wins), or organizations with unresolved July 2024 outage concerns.
Is CrowdStrike Falcon Intelligence a trustworthy vendor?
- 2024-07-19Global Falcon outage affected approximately 8.5M Windows devices
- 2024-08-12CrowdStrike published detailed Channel File 291 root cause analysis
- 2025-03-04Post-incident content validation and staged rollout controls live in production
What 380 reviews actually say
Synthesized from G2, Capterra, Reddit, Trustpilot. Patterns >15% prevalence shown.
Praise patterns
- Native Falcon EDR integration87% →
- Strong adversary attribution and profiles71% →
- Malware sandbox analysis useful51% →
- Falcon Adversary Hunting service well regarded47% →
Complaint patterns
- July 2024 outage still affects vendor-risk reviews64% ↓
- Best-fit narrows hard to Falcon customers51% →
- Premium tier needed for full value41% →
- Less broad open-source coverage than Recorded Future31% →
What buyers actually pay
87 anonymized deal disclosures · last updated 2026-05-01
| Company size | Median annual |
|---|---|
| 500-2,000 employees | $60,000 |
| 2,000-10,000 employees | $168,000 |
| 10,000+ employees | $480,000 |
Auto-verified certifications
Editorial: Strengths
- Native integration with Falcon EDR detections and workflows
- Strong adversary tracking (ECrime, Targeted Intrusion, State-Sponsored)
- Falcon Adversary Hunting service for advanced teams
- Curated threat actor profiles with attribution
- Sandbox malware analysis (formerly Falcon Sandbox)
- API for custom enrichment
Editorial: Weaknesses
- July 2024 outage remains the load-bearing trust event
- Best-fit narrows hard to Falcon EDR customers
- Premium tier needed for full intel value
- Less broad open-source coverage than Recorded Future
- Pricing opaque outside core Falcon bundle
Key features & integrations
- +Native Falcon EDR integration
- +Threat actor profiles and attribution
- +IOC and indicator enrichment
- +Malware sandbox analysis
- +Falcon Adversary Hunting service
- +CrowdStrike Intelligence Reports
- +API and STIX/TAXII export
- +Identity threat intelligence
- +Cloud threat intelligence (post-Bionic acquisition)
- +Custom intelligence requests on Elite tier
Read our full ranking of Threat Intelligence Software
CrowdStrike Falcon Intelligence ranks #4 in our editorial review of 10 threat intelligence software platforms. The deep-dive covers methodology, comparison tables, decision matrix, migration scoring, and FAQs.
Read the full rankingClosest alternatives in Threat Intelligence Software
Contribute your verified deal price
Pricing in B2B software is opaque because vendors want it that way. Verified buyer prices fix that, anonymously. Share what you actually paid for CrowdStrike Falcon Intelligence; we’ll add it to the verified pricing dataset on this page (with company size band only, no identifying details).
Submit anonymously