Hacker News new | ask | show | jobs
by akerl_ 705 days ago
Crowdstrike isn’t installed by the average person. It’s selected and installed by an organization’s IT and/or Infosec teams. Just like everything other enterprise security software.

Those teams 100% have the capacity to make an informed decision.

3 comments

> 100%

Not sure about that. Groups of professionals don't appear better at navigating this space than individuals. I'm sure you've sat in such agonising meetings too. Common experience: They're hellholes of group-think, risk aversion, inertia, legacy constraints, resistance to change, pressure to reach fast decisions, duress or undue influence from salesmen and 'partners'.

Have you ever seen a company of any size actually sit down, open-mindedly weigh up a real and serious evidence-based long term security plan built around risk analysis, a full network and service overview, with all real software options on the table and all stakeholders present. Companies made up of well educated people with impressive job titles are as vulnerable to pitfalls and shortcuts as anyone else. They just operate, and fall victim to scams, on an organisational scale. Crowdstrike and other protection rackets are a way to make a problem go away, not to face its complexity head on.

For sure. After something that looked like a data breach (but turned out to be a hilariously funny glitch caused by a Chrome update that suddenly started translating one part of an app into Romanian) I was in on a lengthy pitch meeting for a similar endpoint security package from a company larger and more recognizable than CrowdStrike. After which I told the CEO of the company I worked for hell no there is no way we are putting this on all our machines and giving these idiots root access. They have no clue what they're talking about. Most of these machines don't even face users and they're talking about checking for suspicious links in emails employees open.
No they don’t. Most barely understand what they are proposing or the risks associated with the mechanisms being introduced.