TrustRadius: an HG Insights company

Microsoft Defender for Cloud Reviews & Insights

Score8.5 out of 10

85 Reviews and Ratings

Top industries

Based on 832 HG Insights installations.

Community Insights for Microsoft Defender for Cloud

Synthesised from 17 verified reviews.


Synthesised from 17 reviews


Microsoft Defender for Cloud is primarily utilized by organizations to establish and maintain robust security postures across diverse cloud environments, including Azure, AWS, and Google Cloud, often within hybrid setups. It addresses critical business problems such as data protection, workload security, and vulnerability management. In TrustRadius reviews, its robust threat detection and real-time alerting capabilities are frequently highlighted, with 35% of reviewers noting improved security posture and active threat detection.

Reviewers also note its ability to reduce reliance on third-party security products, leading to significant cost savings for many. However, some users report challenges with integration, particularly with non-Microsoft tools, and find the initial setup complex. Cost is also a recurring concern, though the perceived security and efficiency gains often outweigh these drawbacks, contributing to a generally favorable ROI.


  • Robust threat detection and real-time alerting for malicious activities.
  • Comprehensive security posture management, including secure score tracking and control assessment.
  • Strong logging and auditing capabilities to capture unusual activities and configuration changes.
  • Seamless integration within the broader Microsoft ecosystem for existing users.
  • Reduces reliance on third-party security products, leading to demonstrable cost savings.
  • Challenges with integration, particularly with non-Microsoft cloud resources and ITSM solutions.
  • Complex initial setup and configuration, especially for new users.
  • High cost compared to competitors, with additional services not always negating consultancy needs.
  • Mixed effectiveness in reducing false positive threat alerts, requiring manual diligence.
  • Implementation can sometimes be driven by compliance checklists rather than continuous threat mitigation.
What other products like Microsoft Defender for Cloud have you used or evaluated?

From 17 reviews

In evaluations alongside or as alternatives to Microsoft Defender for Cloud, reviewers occasionally cited other cloud security platforms. Palo Alto Networks Prisma Cloud was mentioned by 2 of 17 reviewers, indicating its presence in competitive assessments or existing security portfolios. Similarly, Wiz was noted by 2 of 17 reviewers, suggesting it is also a recognized solution in the cloud security posture management and cloud workload protection space. These mentions primarily serve to identify other products that organizations consider when addressing cloud security needs, rather than providing detailed comparative feedback or specific reasons for their evaluation or use. The limited number of mentions for each product suggests that while they are known alternatives, a broad consensus or detailed comparative analysis among the reviewed sample is not evident. Reviewers did not elaborate on specific features, advantages, or disadvantages of these alternative solutions in the context of their experience with Microsoft Defender for Cloud.

Palo Alto Networks Prisma Cloud

Palo Alto Networks Prisma Cloud

Wiz

Wiz

How does your environment look today? Do you have on-prem resources? Do you use only Azure or other clouds (AWS and Google Cloud)?

From 17 reviews

Reviewers frequently describe their current environments as complex and varied, with a strong emphasis on cloud adoption, particularly Azure. Over half of the reviewers (59%) indicate using Azure as their primary or sole cloud platform, often citing its integration with other Microsoft tools like Office and Teams as a key benefit. However, this widespread adoption is tempered by concerns about cost, with one reviewer noting Azure can be expensive compared to competitors. Many organizations also maintain hybrid environments, with 35% of reviewers reporting a mix of on-premises resources alongside their cloud infrastructure. Furthermore, a significant portion of the review base, 29%, operates in a multi-cloud setup, commonly incorporating AWS and occasionally planning for Google Cloud Platform, even while Azure typically remains the dominant cloud provider in these mixed environments. This suggests a trend towards diversified infrastructure strategies rather than exclusive reliance on a single cloud or on-premises solution.

Multi-Cloud Usage (AWS, GCP)

Right now we do have AWS, we were previously really relying on it, but now we're mainly using Azure.

On-Premises Resources

We use Azure and are fairly pleased with the performance and quality.

Azure Usage

Azure is now our main cloud, so we got startup credits, and so we are able to switch over and we're basically using it for free.

Does using Microsoft Defender for Cloud help reduce the number of third party products you would use otherwise to protect your infrastructure? If yes, can you estimate the amount you have saved by using Defender for Cloud?

From 17 reviews

Microsoft Defender for Cloud is widely perceived by reviewers as an effective solution for reducing reliance on third-party security products and generating significant cost savings. A substantial majority of reviewers, 10 out of 17, explicitly stated that using Defender for Cloud helped them decrease the number of external security tools they would otherwise need, primarily due to its comprehensive capabilities. These capabilities often encompass Cloud Security Posture Management (CSPM) and Workload Protection, which would typically require separate, expensive third-party solutions. Reviewers frequently cited direct cost reductions, with estimates ranging from $10,000-$15,000 annually for some organizations to upwards of $150,000 for larger enterprises. The platform's native integration within the Azure environment was also highlighted by 3 of 17 reviewers as a key factor contributing to its effectiveness and value proposition, simplifying deployment and management while offering competitive cost comparisons, particularly for those with existing enterprise licenses.

Cost savings from third-party reduction

It's specific to just Azure, but I think that it works and it's saving us cost because some of the third party tools are really expensive.

Native Azure integration

It's specific to just Azure, but I think that it works and it's saving us cost because some of the third party tools are really expensive.

Does Microsoft Defender for Cloud help reduce the number of threat alerts? Can you elaborate on how it has helped reduce your threat alerts? What was the percentage of threat alerts you were able to cut down by using Defender for Cloud?

From 17 reviews

Reviewers report mixed but generally positive experiences regarding Microsoft Defender for Cloud's ability to reduce threat alerts. A significant portion of the review sample, 24% (4 of 17 reviewers), affirmed that the solution leads to a reduction in the number of threat alerts, with one reviewer specifically noting a 25% decrease in alerts. This reduction is often attributed to the system's capacity to minimize "noise" and duplicate alerts, allowing security teams to concentrate on critical issues. However, the system's impact on false positives is viewed with mixed sentiment among 29% of reviewers (5 of 17 reviewers). While some highlight its effectiveness in reducing false positives through advanced detection and suppression, others indicate that false positives still require manual diligence to differentiate from genuine threats. Furthermore, 18% of reviewers (3 of 17 reviewers) emphasized that the platform primarily enhances visibility and provides intelligence for deeper investigation, which, while crucial for risk posture, does not always directly translate to a lower alert count in their experience.

Reduced Threat Alerts

Yes, attempts to steal information have significantly reduced and now any situation is blocked and reported to us immediately, which for us is one less job to do.

Increased Visibility and Investigation

My recent implementations have been about increasing visibility, so I wouldn't say it necessarily reduces the amount of alerts kind of strictly, at least in my recent experience.

False Positives Reduction

Defender helps to reduce the number of threat alerts by leveraging advanced threat detection and suppression rules to minimize false positives

What positive or negative impact (i.e. Return on Investment or ROI) has Microsoft Defender for Cloud had on your overall business objectives?

From 17 reviews

Microsoft Defender for Cloud has largely delivered positive returns on investment for organizations, primarily by enhancing security posture and generating operational cost savings. A significant portion of reviewers, 35%, highlighted the product's ability to improve security, citing its capabilities in active threat detection, compliance, and risk management as critical for protecting servers and overall environments. Concurrently, 29% of reviewers noted direct cost savings, primarily through reductions in manual effort and workforce hours required for security implementations and policy management. While these benefits were widely acknowledged, some organizations expressed concerns regarding the initial investment and ongoing pricing of Microsoft Defender for Cloud, with 18% of reviewers mentioning complexity and cost as potential drawbacks. Despite these cost considerations, the ease of implementation and the availability of clear recommendations within the platform were also highlighted by 18% of reviewers as factors contributing to a smoother deployment and quicker realization of value. This suggests that while cost can be a barrier for some, the perceived security and efficiency gains largely outweigh these concerns for many users, contributing to a favorable overall ROI.

Cost Savings

cost savins

Security Improvement

Security in a single tool

Complexity and Cost Concerns

Initial training and investiment costs

Besides Microsoft Defender for Cloud, what other software do you regularly use? How likely would you be to recommend it to a friend or colleague?

From 17 reviews

The synthesis of 17 product reviews indicates that beyond Microsoft Defender for Cloud, reviewers regularly utilize a range of other software, primarily focusing on enhancing cloud security and managing cloud-based data storage. Two distinct categories of software were consistently mentioned by reviewers who provided specific examples. Both categories received positive mentions from the small subset of reviewers who elaborated on their additional software usage, suggesting satisfaction with their performance and integration into existing workflows. Specifically, cloud security platforms were cited by 2 of 17 reviewers, who highlighted solutions like Palo Alto Networks Prisma Cloud, Trend Micro Cloud One, SentinelOne Singularity, and Carbonite Safe. These mentions suggest a strategy among some users to diversify or augment their security tools for comprehensive protection. Concurrently, cloud storage services were also noted by 2 of 17 reviewers, with examples including Amazon Web Services, Dropbox, and OneDrive, indicating a common practice of leveraging external platforms for data accessibility and management alongside their primary security solutions.

Cloud Security Platforms

Palo Alto Networks Prisma Cloud, Trend Micro Cloud One - Application Security

Cloud Storage Services

Amazon Web Services

Describe how you use Microsoft Defender for Cloud in your organization. What are the business problems the product addresses and what is the scope of your use case?

From 17 reviews

Organizations primarily leverage Microsoft Defender for Cloud to establish and maintain a robust security posture across their cloud environments, addressing critical business problems related to data protection, workload security, and vulnerability management. A significant portion of reviewers, 5 of 17, highlight its utility in Cloud Security Posture Management, ensuring Azure environments are secure and preventing unauthorized activities. Similarly, 5 of 17 reviewers emphasize its role in Workload and Endpoint Protection, extending security to various cloud platforms like Azure, Google, and AWS, covering containers, databases, and virtual machines. The product is also widely used for Data and Identity Protection, with 4 of 17 reviewers noting its effectiveness in safeguarding sensitive data and identities, contributing to compliance and preventing security breaches. While some organizations utilize it for proactive security measures, 2 of 17 reviewers suggest that its implementation can sometimes be driven by compliance checklists rather than continuous threat mitigation. Furthermore, the platform aids in Vulnerability Identification and Remediation, cited by 2 of 17 reviewers, by scanning infrastructure for gaps and providing actionable remediation steps.

Workload and Endpoint Protection

MD helps us to prevent attaacks to our containers, storage, clients databases.

Data and Identity Protection

One of the biggest advantages has been the safeguarding of our data. Our entire system is in the cloud, meeting rigorous security and compliance standards, which provides us with great comfort. So far, we have had no incidents of data loss, availability errors, or security breaches.

Cloud Security Posture Management

We use it to make sure that our Azure environments are safe and that no one's starting up VMs or doing anything in our Azure environment.

Please provide some detailed examples of areas where Microsoft Defender for Cloud has room for improvement.

From 17 reviews

Reviewers of Microsoft Defender for Cloud frequently identified several areas for potential enhancement, primarily concerning integration capabilities, setup complexity, and cost considerations. A notable concern, expressed by three of 17 reviewers, centered on the product's integration with other tools, particularly popular ITSM solutions and non-Microsoft cloud resources. Similarly, three reviewers pointed to challenges related to the platform's configuration and initial setup, describing it as complex, especially for new users, and noting significant changes during implementation phases. The cost of the solution also emerged as a point of contention, with three reviewers suggesting it is expensive compared to competitors and that additional services, like Copilot, don't always negate the need for external consultancy to optimize setup. Despite these areas for improvement, a quarter of reviewers also highlighted positive aspects of Microsoft Defender for Cloud, acknowledging its effectiveness in managing security, providing security tips, mitigating threats, and safeguarding virtual machines and databases. The alert system and dashboard were also mentioned positively, indicating a mixed user experience with specific strengths alongside noted weaknesses.

Positive aspects

helsp to manage security

Documentation and education

documentation could be better and updated regularly

Accuracy and threat detection

Not always accurate especially zero day attack.

Loading Reviews List....