No more typing reviews! Try our Samantha, our new voice AI agent.

Azure Key Vault vs Microsoft Defender for Identity comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
7.1
Azure Key Vault delivers ROI through cost-efficiency, enhanced security, compliance, and centralized management, improving organizational security and access control.
Sentiment score
4.8
Microsoft Defender for Identity enhances threat detection, reduces efforts, minimizes risks, and optimizes costs despite varied ROI assessments.
 

Customer Service

Sentiment score
6.9
Azure Key Vault support is praised for responsiveness and knowledge, though some experience communication issues and delays reaching experts.
Sentiment score
6.4
Microsoft Defender for Identity offers knowledgeable support, yet response times can vary, especially with complex issues or initial contacts.
Technical support from Azure responds as quickly as possible without any delay.
Security Engineer at a computer software company with 1,001-5,000 employees
I have a strong relationship with Microsoft since we are one of their best clients in Spain.
Software Architect at RedesCDM
The skill level of the support staff is also questionable.
IT Director at Infosys
Generally, the support is more effective than other providers like Oracle.
Owner at Alopex ONE UG
The quality of support is very good, but troubleshooting can take time due to complex setups and the need to provide many logs.
Cloud Security & Governance at a financial services firm with 10,001+ employees
The people I normally use for support are very knowledgeable, especially when they help remote in and get to where I need to go and show me much faster and help me understand what I should be doing.
Technology Coordinator at a educational organization with 501-1,000 employees
 

Scalability Issues

Sentiment score
7.2
Azure Key Vault is scalable, cloud-based, suitable for enterprises, but requires improved integration; users rate scalability highly.
Sentiment score
7.2
Microsoft Defender for Identity is highly scalable and adaptable, excelling in large enterprises with efficient cloud-based processing.
In a Microsoft-centric organization, especially with Azure infrastructure and Office 365, Microsoft Defender for Identity is scalable.
Cloud Security & Governance at a financial services firm with 10,001+ employees
 

Stability Issues

Sentiment score
8.1
Azure Key Vault is highly reliable, rated 8-10, with minor performance issues as usage increases, outperforming competitors in stability.
Sentiment score
7.1
Microsoft Defender for Identity is highly stable, reliable, with minimal downtime; occasional issues require support for agent redeployment.
Microsoft Defender for Identity is quite robust and built on Azure hyperscale infrastructure, with a 99% availability.
Cloud Security & Governance at a financial services firm with 10,001+ employees
We do not see any issues with the stability of Microsoft Defender for Identity.
Deputy Manager at Servion Global Solutions
Having recently started using it, reliability is affirmed, but manual investigation is often performed to verify if alerts identified by auto-remediation are accurate.
Instrumentation Engineer at Toyo Engineering Corp
 

Room For Improvement

Azure Key Vault needs an intuitive interface, improved integration, enhanced security, optimized pricing, and better support and accessibility.
Microsoft Defender for Identity needs improvements in alert accuracy, UI/UX, asset integration, automation, anomaly detection, and third-party integration.
My security area wants to rotate passwords every day, every week, or every month, depending on the services.
Software Architect at RedesCDM
One of our certificates was not getting deployed, and during that time, the support team was unsure and had to connect with the back-end team for assistance.
Senior Infrastructure Engineer at MIC Global
The skill level of the support staff is also questionable.
IT Director at Infosys
If Microsoft could develop a feature that indicates when impossible travel is caused by VPN connections, it would prevent unnecessary password resets and session disruptions, especially for VIP users in organizations.
CyberSecurity Engineer | Information Security Management at Self Employed
One improvement I would recommend is the integration of an admin application within Teams, allowing easy access to attack information on a mobile platform.
Owner at Alopex ONE UG
Reducing false positives is something we've been working on with Microsoft.
Cloud Security & Governance at a financial services firm with 10,001+ employees
 

Setup Cost

Azure Key Vault pricing varies by usage, seen as cost-effective versus competitors, though some find it expensive.
Microsoft Defender for Identity pricing aligns with E5 licenses, offering value in hybrid setups but can be costly at scale.
I would classify it as low priced.
Enterprise Architect at a computer software company with 1,001-5,000 employees
The pricing of Azure Key Vault is nominal, not that expensive.
Associate Vice President (Data Security & Protection - Confidential AI) at Standard Chartered Bank
We are planning to buy protection for Entra.
IT Director at Infosys
If they can reduce the costs, organizations will be happy, and it will compensate for using the Azure environment, which is more expensive on the infrastructure as a service side.
CyberSecurity Engineer | Information Security Management at Self Employed
Ensuring a fair price according to market standards.
Owner at Alopex ONE UG
From an organization perspective, using E5 licenses is value for money, especially if Azure and Office 365 are already in use.
Cloud Security & Governance at a financial services firm with 10,001+ employees
 

Valuable Features

Azure Key Vault offers secure, scalable secret management with easy integration, featuring advanced protection, role-based access, and DevOps support.
Microsoft Defender for Identity enhances threat detection and security integration, offering streamlined investigation with automated alerts and behavioral analytics.
All secrets are in the Key Vault, and access is managed by the integrated management in ITT, which Azure provides to the services.
Software Architect at RedesCDM
It also helps me increase my security posture and assists with regulatory and compliance requirements.
Enterprise Architect at a computer software company with 1,001-5,000 employees
Since implementing Azure Key Vault, I have observed that instead of storing plain values, we can store them securely as and when required.
Software Engineer at Synoptek
We receive an advance report of risky users, allowing us to take preemptive action before an attack causes damage to organization details.
Instrumentation Engineer at Toyo Engineering Corp
The most valuable feature is its hybrid artificial intelligence, which gathers forensic data to track and counteract security threats, much like the CSI series in effect.
Owner at Alopex ONE UG
The advanced threat protection is one of the strengths of Microsoft Defender for Identity, as it utilizes user and entity analytics and can detect indicative attacks.
Cloud Security & Governance at a financial services firm with 10,001+ employees
 

Categories and Ranking

Azure Key Vault
Ranking in Microsoft Security Suite
19th
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
52
Ranking in other categories
Enterprise Password Managers (1st), Certificate Management Software (1st), Secrets Management Tools (2nd)
Microsoft Defender for Iden...
Ranking in Microsoft Security Suite
5th
Average Rating
8.8
Reviews Sentiment
6.8
Number of Reviews
28
Ranking in other categories
Advanced Threat Protection (ATP) (8th), Identity Threat Detection and Response (ITDR) (3rd)
 

Mindshare comparison

As of May 2026, in the Microsoft Security Suite category, the mindshare of Azure Key Vault is 2.2%, up from 0.9% compared to the previous year. The mindshare of Microsoft Defender for Identity is 4.4%, down from 6.9% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Microsoft Security Suite Mindshare Distribution
ProductMindshare (%)
Microsoft Defender for Identity4.4%
Azure Key Vault2.2%
Other93.4%
Microsoft Security Suite
 

Featured Reviews

Rajthilak BS - PeerSpot reviewer
Associate Vice President (Data Security & Protection - Confidential AI) at Standard Chartered Bank
Have addressed compliance challenges but still struggle with seamless integration of certificate issuance between environments
In terms of Azure Key Vault improvements, we have to compare the competitor. If we consider AWS, our bank has Microsoft PKI, which is a Microsoft product, for the entire digital certificate infrastructure. Even in the cloud, when it is AWS, the internal certificates are MS PKI. When we had a problem, users had to come to on-premise to get a certificate and import it to AWS Certificate Manager and assign it. We wondered why we could not issue the certificate directly from the cloud for cloud users. There was a simple way in AWS. They have a Private Certificate Authority (PCA) and Amazon Certificate Manager. Private Certificate Authority issues certificates to Amazon services. They also provide Amazon Certificate Manager to store and deploy certificates. These are two neat components - one is an issuer and another is storage and deployment solutions for certificates. With PCA, I can directly enable it and get certificates from AWS itself. AWS can issue SSL/TLS certificates if you enable it directly. If you consider Azure, it is not very clear. Even the naming convention, Key Vault, might not suggest that this is a PKI or certificate manager. You cannot issue certificates directly. They have app certificates and did not have a clear-cut certificate management solution in the cloud when I worked at that time. I am not sure whether they have updated Azure Key Vault as a full-fledged PKI solution now. From what I saw, it was not a full-fledged PKI solution. We are not majorly using Azure Key Vault because it is only for storing secrets. If some solutions can provide guidance on how we can maximize leverage, we can immediately look forward to doing that. We already have some business problems we want to solve. While our primary focus is AWS, many of the services such as ADO are running on Azure, and the secondary services are growing bigger.
OA
CyberSecurity Engineer | Information Security Management at Self Employed
Automation and threat intelligence streamline threat response and user management
In Microsoft Defender for Identity, I would appreciate improvements in providing information on conditional access. They have added more control that can be put in place, which was not present years ago. They have also integrated Azure Information Protection where policies can be configured. The Self-Service Password Reset (SSPR) allows users to reset their passwords, which is a valuable tool for remote workers. They have added more features into conditional access that integrate with other components, including SSPR and Identity Information Protection, trusted IPs, and locations. These configurations in trusted IP addresses are integrated into conditional access and control the applications I want to secure. Regarding impossible travel scenarios, I can either block the user or grant access while requesting multi-factor authentication. They should improve the automation for impossible travel detection. When connected to Wi-Fi and then to VPN, the system sometimes interprets the IP address change as impossible travel. If Microsoft could develop a feature that indicates when impossible travel is caused by VPN connections, it would prevent unnecessary password resets and session disruptions, especially for VIP users in organizations.
report
Use our free recommendation engine to learn which Microsoft Security Suite solutions are best for your needs.
894,738 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
13%
Computer Software Company
9%
Manufacturing Company
9%
Government
7%
Financial Services Firm
13%
Computer Software Company
11%
Manufacturing Company
9%
Comms Service Provider
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise11
Large Enterprise27
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise5
Large Enterprise15
 

Questions from the Community

Which is better - Azure Key Vault or AWS Secrets Manager?
Azure Key Vault is a SaaS solution. You can easily store passwords and secrets securely and encrypt them. Azure Key Vault is a great solution to ensure you are compliant with security and governanc...
What needs improvement with Microsoft Azure Key Vault?
Based on my three years of experience, I believe there have been no updates to Azure Key Vault. I think the product needs upgrades in terms of access control and certification improvements. While A...
What needs improvement with Microsoft Defender for Identity?
I really would have to sit down to think about how Microsoft Defender for Identity can be improved. I didn't take stock in what needs to be improved because I appreciated having the tools right the...
What is your primary use case for Microsoft Defender for Identity?
My main use cases for Microsoft Defender for Identity include Conditional Access, checking risky users, remediating risky users, and user sign-ins. I can easily remediate or determine what the user...
What advice do you have for others considering Microsoft Defender for Identity?
I don't really use Microsoft Defender for Identity a lot because my new role doesn't allow me to take time to do so. I don't really use the threat intelligence feature of Microsoft Defender for Ide...
 

Also Known As

Microsoft Azure Key Vault, MS Azure Key Vault
Azure Advanced Threat Protection, Azure ATP, MS Defender for Identity
 

Overview

 

Sample Customers

Adobe, DriveTime, Johnson Controls, HP, InterContinental Hotels Group, ASOS
Microsoft Defender for Identity is trusted by companies such as St. Luke’s University Health Network, Ansell, and more.
Find out what your peers are saying about Azure Key Vault vs. Microsoft Defender for Identity and other solutions. Updated: April 2026.
894,738 professionals have used our research since 2012.