Data security at Planning Center is a split between two teams with separate and overlapping responsibilities. The IT team manages endpoint security and associated tools, while the Platform Operations team is responsible for network and infrastructure security, including the company’s annual SOC2 audits. Both teams are relatively small—the IT team is a team of one—which means time and resources are at a premium and efficiency is especially valuable.
Despite trying various endpoint protection solutions, the IT team found themselves still searching for that elusive perfect fit.
Malwarebytes: Planning Center found this antivirus to be resource-intensive. It caused slowdowns on endpoints and negatively impacted users.
CrowdStrike: This EDR also proved very resource-intensive on endpoints, causing performance issues, especially for developers. Compile tasks that otherwise took about 5 minutes required 30 minutes or more with CrowdStrike running, as it tried to scan inside every software container used to build code. This 6x increase in compile time was a major issue for their development team's productivity and ultimately led to its removal.
SentinelOne: Planning Center eventually settled on SentinelOne as a less resource-intensive choice for its Mac computers, but it presented other challenges:
We had difficulty with CrowdStrike and SentinelOne; they were somewhat overloaded. They were difficult to learn, difficult to navigate, and it was hard for a “one-guy team” to manage them.
Topher Ohlin
IT Operations Manager
Planning Center was already using Iru's device management solution to manage their Apple fleet, so migrating to Iru's Endpoint Detection & Response from SentinelOne seemed like an obvious way to consolidate solutions and improve efficiency. Full migration happened in 2 steps over 3 weeks:
Iru EDR was functional within a week and I felt like I had a handle on it before the end of the month.
Topher Ohlin
IT Operations Manager
The support I have received since moving to Iru MDM and Iru EDR has been outstanding. Bar none, the best support we have with any of our vendors. Odds are that I'm going to get someone who knows how to answer my question at the first try, in under a minute. I do not have that experience in many places.
Topher Ohlin
IT Operations Manager
This led to strategic value for the team in the form of:
While enjoying these improvements, Planning Center IT team reported that Iru EDR was performing at the same level with SentinelOne on these 3 items:
Switching to Iru EDR allowed our team to keep the same IT headcount while the company was growing. If we had continued to use SentinelOne, we may have had to hire a new person to support the company growth and manage the endpoint protection efforts required.
Topher Ohlin
IT Operations Manager
Comparison of endpoint resource consumption*
| Indicator | CrowdStrike | SentinelOne | Iru EDR |
|---|---|---|---|
| Software Compilation Tasks | 30 min | 5 min | 5 min |
Overall comparison*
| Indicator | SentinelOne | Iru EDR |
|---|---|---|
| Time to Full Deployment and Peak Confidence Level | 3-6 months | 1 month |
| Number of Clicks to Release False Positives From Quarantine | 25 clicks, a couple minutes | 5 clicks, a few seconds |
| Time IT team spent on the EDR tool weekly | Up to 6 hrs per week | A few minutes per week |
*Lower is better
I couldn't recommend Iru EDR highly enough. The burden to switch is low and the value proposition is very high.
Topher Ohlin
IT Operations Manager
Planning Center was able to grow efficiently and maintain the performance they needed for their workforce while keeping their endpoints secure with Iru. Their streamlined IT and security operations lowered costs and allowed the IT team to work on projects that could unlock more value for the organization.