Hi All,
We’re currently between two POC’s (crowdstrike and carbon black). Based on results, they seem very compatible. However, what we are really looking for is detecting insider threats (someone intentionally running bad scripts) or data exfil, do either of these solutions have a good rep with this? From your experience, which one seems to do a better job?
I think Crowdstrike is the best, plus it’s more hands on, CB seemed like you need someone full-time monitoring it