CrowdStrike Falcon Identity Protection vs. Microsoft Defender for Identity

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
CrowdStrike Falcon Identity Protection
Score 0.0 out of 10
N/A
CrowdStrike Falcon Identity Protection delivers identity threat detection and response (ITDR) capabilities, protecting organizations from identity-based attacks in real time. It unifies identity and endpoint protection. Falcon® Identity Protection ensures comprehensive visibility and protection across on-premises, cloud, and hybrid identity environments. By baselining normal user behavior, it detects and prevents malicious identity activity, stopping adversaries in their tracks. It also extends…N/A
Microsoft Defender for Identity
Score 7.7 out of 10
N/A
Microsoft Defender for Identity (formerly Azure Advanced Threat Protection, also known as Azure ATP) is a cloud-based security solution that leverages on-premises Active Directory signals to identify, detect, and investigate advanced threats, compromised identities, and malicious insider actions directed at the organization.N/A
Pricing
CrowdStrike Falcon Identity ProtectionMicrosoft Defender for Identity
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
CrowdStrike Falcon Identity ProtectionMicrosoft Defender for Identity
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
User Ratings
CrowdStrike Falcon Identity ProtectionMicrosoft Defender for Identity
Likelihood to Recommend
-
(0 ratings)
7.0
(0 ratings)
User Testimonials
CrowdStrike Falcon Identity ProtectionMicrosoft Defender for Identity
Likelihood to Recommend
Identity Protection is well suited for organizations that need to be monitor AD/Entra for suspicious activity. During a Penetration Test our MDR didn't alert on some odd protocol implementations, but ITDR did. It is also simple to setup for MFA on RDP as well. There are other solutions for it, but found I got more out of ITDR than I did from Duo. ITDR is less suited for smaller organizations since it has a 250-seat minimum. They should lower it to at least 100.
Read full review
Microsoft Defender for Identity is a great solution for each company that has an Active Directory. It fills in the blanks for Identity related incidents that are being missed in the XDR platform. To get a full view on identity risks it is an essential component
Read full review
Pros
  • The MFA component has worked great when it comes to privileged accounts accessing RDP.
  • We wanted to stop lateral movement between endpoints and with CrowdStrike Falcon Identity Protection we were able to do that.
  • Identity has done a great job at supplementing our MDR service with telemetry.
Read full review
  • detect threats and suspicious activities
  • pro-active measurements on possible breaches
  • identity security posture
Read full review
Cons
  • It's not really a fault of the product, but unless you have Falcon installed on all your endpoints your visibility is limited.
  • I've yet to get MFA working on CIFS and Powershell traffic.
  • The interface could be streamlined a little. CrowdStrike Falcon Identity Protection keeps changing where things are.
Read full review
  • setup can be complicated, with AD complexity
  • Sometimes the load on DCs is pretty high, leading to performance issues
  • Better tuning options for preventing false-positive/bening alerts
Read full review
Usability
While the product is solid, I do find there are an excessive number of sections you can navigate to. It takes some time getting used to, but it is a very powerful product. It's not something you'll master right off the bat.
Read full review
No answers on this topic
Alternatives Considered
When comparing to Cisco Duo, I felt like the product offered more than just MFA on RDP. When comparing to Silverfort, it came down to pricing. Silverfort was double the cost and I didn't like how Silverfort had separate SKUs. If you wanted MFA on everything the cost increased dramatically.
Read full review
Microsoft Defender for Identity is more specialized on the Identity platform, it is a single solution compared to a multi-solution. The integration is better when using the XDR suite in combination with Sentinel. Microsoft Defender for Identity gives a better overview of the security posture
Read full review
Return on Investment
  • Being able to see right away during a Penetration Test that the product detected anomalies, but our MDR service didn't. It allowed us to go back to the MDR service to show them the results and fix the issue from slipping through the cracks.
  • By satisfying the requirements from our insurance provider, our premiums didn't go up (MFA on RDP).
Read full review
  • Cost impact was pretty high
  • Learning curve, needed time (money) for training
  • Greatly improved detections and gives more insights
Read full review
ScreenShots