Try our new research platform with insights from 80,000+ expert users

Abnormal Security vs IRONSCALES comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 5, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Microsoft Defender for Offi...
Sponsored
Ranking in Email Security
1st
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
49
Ranking in other categories
Advanced Threat Protection (ATP) (1st), Microsoft Security Suite (11th)
Abnormal Security
Ranking in Email Security
5th
Average Rating
9.6
Reviews Sentiment
7.9
Number of Reviews
10
Ranking in other categories
Secure Email Gateway (SEG) (1st)
IRONSCALES
Ranking in Email Security
18th
Average Rating
9.2
Reviews Sentiment
7.6
Number of Reviews
13
Ranking in other categories
Advanced Threat Protection (ATP) (18th), Secure Email Gateway (SEG) (7th)
 

Mindshare comparison

As of May 2025, in the Secure Email Gateway (SEG) category, the mindshare of Microsoft Defender for Office 365 is 29.5%, down from 39.3% compared to the previous year. The mindshare of Abnormal Security is 12.2%, up from 4.6% compared to the previous year. The mindshare of IRONSCALES is 3.3%, up from 2.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Secure Email Gateway (SEG)
 

Featured Reviews

Tolu Omolaja - PeerSpot reviewer
Great URL scanning and attachment scanning, but I would like more proactive threat analysis
The two main features that prove most beneficial for us are URL scanning and attachment scanning. URL scanning involves an automatic scan of links and emails. When a user clicks on a link within an email, the system promptly checks the link's safety. If the link is deemed safe, access is granted automatically. However, if it is flagged as unsafe, we receive feedback and notification to caution us about the potentially harmful link. At this point, we are presented with the option to proceed or return. I have personally witnessed the system identify a few unsafe links, making this the primary advantage of using the solution. The second crucial aspect is the scanning of attachments. When an email containing an attachment arrives, we receive a notification of the new email, along with information that the attachment is being scanned for threats. This additional layer of security provides peace of mind for our organization. While Microsoft Defender for Office 365 offers numerous features, these two stand out as particularly impressive and valuable to us.
William Schellhaas - PeerSpot reviewer
Provides comprehensive email security management, effective in detecting a wide range of email threats
The ideal scenario would be for Abnormal Security to work in tandem with Microsoft to analyze incoming emails. This means Abnormal Security would assess emails before they reach my inbox, even if it happens slightly after Microsoft's initial scan. Currently, the process isn't seamless. Microsoft analyzes emails and delivers legitimate ones to my inbox. Abnormal Security then scans these delivered emails, and if flagged as malicious, they disappear. This creates a problem for our ticketing system mailbox, which is a third-party service. Emails sent to the ticketing system address are automatically forwarded by Microsoft. However, if these emails are malicious, Abnormal Security only cleans them from my Outlook mailbox after they've been forwarded. Since we primarily rely on the ticketing system and not the Outlook mailbox, these malicious emails still reach the ticketing system.
Orion Trist - PeerSpot reviewer
Saved us a big deal by catching malicious links and attachments sent directly to our staff and has also been helpful for educating our staff
It has helped immensely because it has gotten rid of malicious links and malicious attachments that have been targeted at our different staff members. It has definitely protected us on more than one occasion. Their integrated approach of combining email security and employee awareness training is excellent because the training is a reminder for staff to continually be on their feet and look out for the ever-changing landscape. It also lets us know who has been trained, who hasn't been trained, and what they're like. It integrates a risk ratio for all our employees. Its artificial intelligence and machine learning capabilities are very important because I don't want to have to manage 24/7. Having the AI to do a lot of the work for me is invaluable. Its automated detection and response capabilities are excellent. It does a wonderful job. They provide all the stats on what it has done. It gives you information about how much time is saved and all that kind of good information. Its automated detection and response capabilities have massively decreased the time we spend manually reviewing email events. Since May, it has taken care of 170 hours. So, it has saved 88 hours per analyst. It is very good in terms of the customization of the automated detection and response capabilities. It is granular, and you can adjust it however you want. If it is too high, you can turn it down. If it is too low, you can turn it up.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Microsoft Defender has a feature to protect each and every attachment. Even if it's an encrypted attachment, it will check for any potential threats."
"It also gives the vulnerability status according to the versions you have selected. Let's say you have Google Chrome. It mentions the versions it has, and it updates. Within two hours of an update, it is reflected in the dashboard. That's really nice to have."
"The email protection is excellent, especially in terms of anti-phishing policies."
"The product is not resource-intensive."
"Since we have started using the solution, there have been fewer compromises."
"The most valuable feature of Microsoft Defender for Office 365 is the ease of use."
"Microsoft Defender for Office 365's most valuable feature is its performance."
"The initial setup is straightforward. You just add the license, click it, and then you can set up the rules. It is quite simple."
"Initial auto-remediation allows us to auto-remediate before the email lands in the end user's inbox for a split second."
"It does some really cool stuff that other tools aren't doing. We found it to be really effective, and the AI/ML functionality is really what differentiates them."
"Ease of use is undoubtedly one of the most valuable features of Abnormal Security."
"I like Abnormal's threat protection with auto-remediation, but I also love its abuse mailbox feature, which automatically responds to the end user. That feature has a super-valuable security component and helps improve the user experience."
"What I like about Abnormal Security is that it notifies me if any of my partners or suppliers are experiencing a security breach by analyzing their database and identifying potential cyber threats."
"Their ability to take things out of the mailbox and catch things much faster than users is excellent."
"I would recommend Abnormal Security."
"The features that appeal to me most are the combination of auto-remediation and Detection 360."
"There is buzz around phishing awareness training. When I make a campaign, all of a sudden people in our organization are talking, thinking, and wondering about it. Therefore, it keeps people on their toes. That is perfect because it does exactly what we want it to do."
"The report function through Gmail is probably the most valuable feature. The next most valuable features are simulation and training."
"For what was being offered with IRONSCALES, I feel like we got an incredible deal."
"The solution captures a bit more of the unknown, quantifies it, and applies intelligence to it to pick out and stop a lot of phishing emails that come through."
"Their anti-phishing platform is absolutely fantastic. The automated AI piece is amazing, and their technical support is fantastic."
"The stability is good."
"The most valuable features of the solution are that it is easy to set it up, install, and manage the product."
"The fact that it is set-and-forget is valuable. Once you turn it on, you very rarely have to micromanage it, whereas, with a lot of spam filters, you have to go in very often."
 

Cons

"Microsoft security solutions work as expected. They are constantly updating the solutions to make them better. At the same time, the changes can impact a customer's environment, and we need to adjust settings. Sometimes we aren't aware of the changes, and nothing is pushed from the backend automatically."
"The changes to customer service, specifically the new model for support agreements, are not favorable."
"Microsoft could improve by offering recommendations for domain spoofing attacks, especially scenarios where DNS records like SPF, DKIM, and DMARC are not properly published."
"Microsoft should provide more documentation for users so they can self-educate. I would like to see more documentation for advanced security features."
"Microsoft needs to broaden its global support presence by establishing teams of subject-matter experts in all regions."
"Microsoft Defender for Office 365 could improve by giving customers information on techniques to prevent threats. For example, information about best practices on how to protect their own devices against hackers and scammers, such as educational information or training. This would help others have a better understanding of cyber security. Additionally, there can be more security features added."
"They have moved features from one console to another. Things have been moved around in the interface and it takes me time to find where certain features are."
"In one of the reports I can get the exact place where a vulnerable file resides. But for that, I need to explicitly go into the device and check. If they could include that file part in the report, without my having to go to the device itself, that would help."
"I would like to have the ability to customize the auto-remediation feature."
"The ideal scenario would be for Abnormal Security to work in tandem with Microsoft to analyze incoming emails."
"There could be more selectable options and more granular selections available."
"When we're working on something as engineers, and we find an idea or a method of doing something that would be greatly improved by doing it another way, there should be an ability for me to click the ideas button, type in an idea that I have, and submit it to a product review team or developers to have them think through the process a little bit more."
"Abnormal should add more automatic reports. I have an open request to our account team for more notification and report types that can be sent automatically. For example, they have an awesome report that gets sent weekly, and I also want them monthly, so I don't need to do so much adding up when my director wants numbers over time."
"One feature I'd love to see is outbound scanning."
"There could be room for improvement in enhancing integration with other cybersecurity tools."
"There could be more selectable options and more granular selections available."
"In addition to integrated training, they should also have personalized training that you don't have to do as part of a phishing campaign or a simulation."
"There's room for improvement in the campaign management. IRONSCALES has many built-in templates that I use, but you can also build templates from scratch. However, the interface for creating custom templates needs to be updated."
"The only thing that I could say is that some of the reporting features could be better."
"The integration with Google Suite needs to be better. it's something they can work on."
"The tool supports 15 to 16 languages, but the content it uses in the training in Spanish has certain limitations."
"There is a feature called Account Takeover, which isn't what I want it to be able to do. I know that they're working on that, but when they first started the Account Takeover feature in incident management, it didn't have much information. It didn't have any usability to it. I already had tools in place that were better."
"IRONSCALES should bundle more features together instead of separating them and charging additional licensing fees."
"Even though they have been continuously improving it, it is not 100% there. We have had a few incidents where legitimate emails were getting blocked, and we had to manually remove those emails from quarantine. It is 90% effective or accurate because, on rare occasions, some emails from customers were not getting delivered. In one or two instances, their emails got blocked by IRONSCALES, and we had to manually remove the emails from quarantine. I would like them to improve their algorithm to avoid flagging genuine emails as malicious. I would also like to be able to whitelist certain email addresses. I'd love to be able to whitelist a particular customer."
 

Pricing and Cost Advice

"It's a user-base subscription."
"The product is very expensive."
"For licensing, it's usually a yearly package for customers who are subscribed to Office 365, but they can also pay on a monthly basis."
"The product is expensive."
"It is much more expensive than using another solution because we have had to include some options and upgrade our license."
"For large enterprise organizations, they can definitely afford it, but for small and medium organizations, they might struggle to cover the expenses."
"Microsoft Defender for Office 365 comes with Microsoft Windows. It is free with the operating system."
"From the pricing point of view, like any other product in the market, there is scope for negotiation."
"Abnormal Security, on the other hand, provides the same level of functionality for just over $60,000 – that's half the price!"
"The license is based on the user count, so the number of users that have an email address in the organization."
"The pricing appears fair, and they demonstrate a genuine willingness to work with us on it."
"Overall, we'd certainly prefer lower pricing, but Abnormal Security doesn't seem unreasonable compared to similar offerings in the market."
"The tool is not very cheap, but it is affordable."
"As compared to everything else we looked at, it was good. It was the best value for the dollars."
"The product is available as a middle-priced tool. I think it is not the cheapest solution."
"They are pretty much the same as all the other competitors in the market."
"We pay $3000 plus a little more a year for the number of employees we have, and we're not even that big. The solution is at the higher end in terms of cost. It's not the most expensive product, but I would say it's worth the price if you have a high volume of email traffic. In our case, the solution has inspected over 162,000 emails between three and four months. It saved us a lot of time and money. It's a worthwhile investment because a bad actor only has to succeed once; we must defend against everything in our business. IRONSCALES offers a sense of security and confidence from being well protected."
"IRONSCALES is an expensive solution."
"There is an installation cost. Since we have this as a managed service, we pay for licensing and the managed service itself. Other than that, there are no additional costs."
"I don't know about its pricing because I don't run the budget or pay the bills, but if it was extortionate, we probably would be looking to scrap it, and because we are not, I assume its price is okay."
report
Use our free recommendation engine to learn which Secure Email Gateway (SEG) solutions are best for your needs.
850,028 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Financial Services Firm
9%
Manufacturing Company
8%
Government
6%
Computer Software Company
16%
Financial Services Firm
9%
Manufacturing Company
7%
Government
7%
Computer Software Company
19%
Manufacturing Company
9%
Financial Services Firm
7%
University
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Microsoft Defender for Office 365?
Threat Explorer is an invaluable tool for me, and it plays a crucial role in helping me discern the origins of variou...
What is your experience regarding pricing and costs for Microsoft Defender for Office 365?
Money-wise, it is a part of the Office 365 ( /products/office-365-reviews ) suite, making it slightly more expensive ...
What needs improvement with Microsoft Defender for Office 365?
The main area for improvement is simplifying the implementation and rollout process. There are many conditions to be ...
What do you like most about Abnormal Security?
The features that appeal to me most are the combination of auto-remediation and Detection 360.
What is your experience regarding pricing and costs for Abnormal Security?
I find the pricing to be favorable, but I did not disclose the exact cost.
What needs improvement with Abnormal Security?
There could be more selectable options and more granular selections available.
What do you like most about IRONSCALES?
The solution captures a bit more of the unknown, quantifies it, and applies intelligence to it to pick out and stop a...
What is your experience regarding pricing and costs for IRONSCALES?
The product is available as a middle-priced tool. I think it is not the cheapest solution. There are other solutions ...
What needs improvement with IRONSCALES?
I think maybe on the side of the awareness training, the tool can improve a little more information and have some oth...
 

Also Known As

MS Defender for Office 365
No data available
No data available
 

Overview

 

Sample Customers

Microsoft Defender for Office 365 is trusted by companies such as Ithaca College.
Foot Lcoker, Xerox, Liberty Mutual, Mattel, Boston Scientific
Allegheny Millwork, Ayrshire College, Nium, Orris, Paramount School District, Pres Les, PRT Staffing, Recovery Unplugged, Telit, WebHelp
Find out what your peers are saying about Abnormal Security vs. IRONSCALES and other solutions. Updated: April 2025.
850,028 professionals have used our research since 2012.