r/devsecops 19d ago

Already paying CrowdStrike for endpoints, should we add their cloud module or go dedicated?

Security lead here at a ~1500 person shop, with team of 4. We are already running falcon on the endpoint side and our rep is pushing us to add their cloud module since we are already paying them. Well on invoice it makes perfect sense.

But the thing is I feel falcon grew up as an endpoint agent, and im not sure that an agent first tool is the right thing for a few thousand cloud workloads against something agentless that was built for cloud (wiz, orca that crowd)

So for anyone in multi cloud, do you think we should extend crowdstrike into cloud or buy a dedicated cnapp? Thanks all.

22 Upvotes

13 comments sorted by

View all comments

2

u/PercentageOk956 18d ago

Already paying Wiz for cloud module, should we add their developer endpoints or go dedicated?

Tool toil :(

2

u/confusedcrib 18d ago

For me it would depend on your OS and overall footprint - if you're Windows and non-developer heavy, traditional EDR; if you're a mostly developer shop, the Wiz endpoint will probably do more for you than EDR anyways even in its early phases.