Crowdstrike is another Silicon Valley startup that recently went public with triple-digits across the board including revenue growth, net retention rate, and annual revenue-run rate, which may have you wondering, how does one tell all of these Silicon Valley IPOs apart? For the Crowdstrike IPO, as with most cybersecurity companies, competitive landscape is crucial and requires bulletproof product differentiation as security is a very crowded space. This analysis will look into the product differentiation between Crowdstrike and its competitors for endpoint security to achieve an understanding of valuation and to form a prediction of how Crowdstrike will perform as a public company. Addressable market will also be taken into consideration as endpoint security has demand limitations.
Overview of Endpoint Security
Understanding the basics around endpoint security is important as Crowdstrike’s strength resides in how the software uses artificial intelligence to detect breaches. Some of the company’s growth may also come from offering multiple cloud modules, which provides various product features for flexibility.
The primary category for Crowdstrike is endpoint security, which secures endpoints on a network, defined as end-user devices, such as mobile devices, laptops and desktop PCs, although endpoint security can also include servers in a data center and IoT devices. Endpoint security protects the corporate network from remote devices by securing the endpoints on the network. Traditionally, endpoint security consists of security software centrally managed on a server or gateway and software on the client devices. The server authenticates logins from the endpoints and updates the software when needed.
Crowdstrike’s product improves this process by aggregating the data from the endpoints across their entire customer base, while using AI and behavior pattern-matching to stop breaches. According to CrowdStrike, their Falcon product correlates more than 90 billion security events globally to prevent and detect threats. Relying on AI’s detection capabilities for security breaches and fraud is becoming a trend into the foreseeable future. For instance, I recently interviewed Mastercard’s Vice Chairman on how Mastercard uses pattern-matching to detect fraud and unusual behavior on my tech podcast, and has been successful in preventing high-loss activities such as money laundering as these behavioral patterns appear erratic to AI, and become easily detectable.
Crowdstrike had one offering until 2017 when the company launched multiple cloud modules to provide flexibility, which are all subscription-based. According to Crowdstrike, offering different subscription options has been successful with 47% of customers buying over 4 modules, per the S-1 Filing.
Crowdstrike IPO and S-1 Filing by the Numbers
Crowdstrike has grown at a blistering pace from $37 million in revenue in 2017 to $92 million in 2018 to $219 million in 2019. The numbers published for the Crowdstrike IPO show an undeniable triple-digit growth trajectory, but keep in mind, that cybersecurity is a crowded field with many players dealing in endpoint security – more on this below.
Loads of Competition:
Endpoint security is a crowded space. Not only do you have incumbents like Symantec, but you have small to mid-cap companies – both public and private. The market size for endpoint security was at $6.4 billion in 2018 and will grow to $13.2 billion by 2022, according to Statista. Meanwhile, you have more than 20 companies competing for the $7 billion slice of pie. This is the bigger concern for Crowdstrike. Investors in Crowdstrike will have to believe that crowdsourcing endpoints and scanning for breaches with AI is enough of a differentiator to pull ahead and maintain a lead.



