Armis vs. Microsoft Defender for IoT

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Armis
Score 9.2 out of 10
N/A
Armis headquartered in Palo Alto offers an agentless, enterprise-class security platform to address the new threat landscape of unmanaged and IoT devices, an out-of-band sensing technology to discover and analyze all managed, unmanaged, and IoT devices—from traditional devices like laptops and smartphones to new unmanaged smart devices like smart TVs, webcams, printers, HVAC systems, industrial robots, medical devices and more. Armis discovers devices on and off the network, continuously…N/A
Microsoft Defender for IoT
Score 9.0 out of 10
N/A
Microsoft states users can protect IoT/OT devices and get visibility into risk with Microsoft Defender for IoT (formerly Azure Defender for IoT), boasting agentless network monitoring for asset discovery, vulnerability management, and continuous threat detection across IoT/OT devices whether they’re unmanaged devices or managed devices provisioned via Azure IoT Hub. Features an integration with Azure Sentinel and third-party solutions. Deploy in either on-premises or Azure-connected…N/A
Pricing
ArmisMicrosoft Defender for IoT
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
ArmisMicrosoft Defender for IoT
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
User Ratings
ArmisMicrosoft Defender for IoT
Likelihood to Recommend
10.0
(0 ratings)
9.0
(0 ratings)
User Testimonials
ArmisMicrosoft Defender for IoT
Likelihood to Recommend
We started an entirely new network segregation implementation for security policies. Armis was unparalleled at helping us find rogue static IP-assigned devices in our old network and helped us identify what they were so we could tackle the challenge of moving everything to the new network VLANs. Another use case is finding a specific device or a specific user account to track their activity. The layout is phenomenal, and the data is easy to understand and drill down into for further information. The new AVM (Asset Vulnerability Management) section is awesome to help us find the out-of-date devices or other risks on the network to figure out where we are most vulnerable and at risk. If you're looking for a way to have Armis auto patch vulnerabilities - that's only on the radar from what I've heard - but currently, it is an amazing tool for finding and detailing the CVEs and other risks. You can create policies to block specific risky behaviors, but currently, at the time of writing, there isn't any automated patching or remediation to known CVEs found on a device.
Read full review
Companies that are not using Azure cloud exhaustively will struggle with maximizing the potential of Microsoft defender as multiple important features require the use of IoT Hub etc The product definitely shines though, when integrated with it's friends, i.e when used collectively within microsoft ecosystem. Paired with Intune and IoT Hub, it does a phenomenal job at providing global protection including automated threat protection and cross domain network security features
Read full review
Pros
  • Analyzing Traffic
  • Detecting Device Types
  • Finding vulnerabilities by pure magic!
  • Searching through all the data - intuitive and no programming required!
  • Alerts and policies for anything you can imagine
  • Reports and dashboards customizable to any extent you can imagine
  • Integrates with so many systems and ties all your data together in one screen
  • Create automated processes to handle events automatically by event/data/device etc.
Read full review
  • Agentless monitoring
  • Integration with Sentinel
  • Multiple protocol support
Read full review
Cons
  • I've requested integration with Mosyle Manager for our Apple MDM products - it is on the radar but slow going - Mosyle has an API and a free 30-day trial, so implementation shouldn't be difficult - but honestly, other than that - Armis support has been astonishing, and there are so many integrations already - it's small potatoes.
  • Considering Armis has all the data collected and parsed - it would be nice to see a back-end system for those of us who are true nerds and want to really dig into the Syslog data and analyze packets directly - however, building some quick queries is probably easier if you know what you are looking for anyway - which is probably why this is a backward way of my own thinking and no fault of Armis at all. They make the interface so easy to use it's not necessary, but it hurts my inner geek.
Read full review
  • To use it to it's full potential, multiple Azure services are required including but not limited to Intune, VM etc
  • Due to a heavy focus on UI rather than Code heavy approach, it sometimes limits itself in terms of features and adds additional complexity when looking for niche network security features.
  • Major features like Device inventory and alerting are still in preview mode, which of course can hamper an organisation's trust
Read full review
Alternatives Considered
Armis is kind of a total conglomeration of a ton of different tools/systems, and depending on how you want to set it up can do almost anything a lot of these other tools can do - and in some cases, even better. It doesn't do software deployment or other things like SCCM I have listed, but the reporting side is so much better than SCCM's interface. As far as data breaches, user/device activity tracking, vulnerability outlook, network scanning, device identification, and agentless miracles of magic - Armis is the king.
Read full review
Defender being native to MS was the decision maker for us.
Read full review
Return on Investment
  • Armis helped with multiple projects saving incalculable time since we've gotten it
  • Network analysis is a breeze
  • Device traffic reports and alerts is one click easy peasy
  • Blocking devices or specific traffic is super easy and helpful - if you have the right integrations for those options
Read full review
  • With this Microsoft software the protection of our project data is excellent and easy data mining solution.
  • Extraction and data analytics generation is very effective.
  • Data modeling and preparation of multiple data reports from various projects.
Read full review
ScreenShots