No more typing reviews! Try our Samantha, our new voice AI agent.

BigFix vs Tanium comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 18, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Microsoft Intune
Sponsored
Ranking in Unified Endpoint Management (UEM)
1st
Average Rating
8.2
Reviews Sentiment
6.7
Number of Reviews
378
Ranking in other categories
Configuration Management (2nd), Remote Access (2nd), Enterprise Mobility Management (EMM) (1st), Microsoft Security Suite (1st)
BigFix
Ranking in Unified Endpoint Management (UEM)
11th
Average Rating
8.6
Reviews Sentiment
6.3
Number of Reviews
99
Ranking in other categories
Configuration Management (9th), Endpoint Protection Platform (EPP) (25th), Patch Management (8th)
Tanium
Ranking in Unified Endpoint Management (UEM)
7th
Average Rating
7.8
Reviews Sentiment
6.2
Number of Reviews
22
Ranking in other categories
Server Monitoring (4th), Vulnerability Management (26th), Endpoint Protection Platform (EPP) (17th), Endpoint Detection and Response (EDR) (22nd)
 

Featured Reviews

OluwashileAdeniyi - PeerSpot reviewer
Senior Infrastructure Security Engineer at a outsourcing company with 51-200 employees
Centralized endpoint security has improved and supports hybrid work and BYOD policies
Regarding what I dislike about Microsoft Intune and its downsides, I would say that more Mac controls are needed because we have limited Mac and Linux control. When comparing controls and policies between Windows, Mac, and Linux, Windows has almost everything you can think of, while Mac and Linux have limited types of control. You cannot implement certain things on Mac and Linux that you can on Windows. The limited controls are a major issue. Additionally, if Microsoft could find a way to embed servers into Microsoft Intune, that would be beneficial. Microsoft Intune is not really designed for servers or Windows servers. It is more tailored towards Windows 11 and Windows 10 operating systems. Windows servers are not fully supported. Enterprise organizations usually have both servers and endpoints, which are users' workstations. For servers, most people look for other solutions such as SCCM, which is Configuration Manager. However, SCCM is what Microsoft Intune is trying to replace. Both SCCM and Microsoft Intune belong to Microsoft. Microsoft is trying to transition organizations into Microsoft Intune, the native cloud solution. However, because this update is still in process, servers are not fully compatible with Microsoft Intune and cannot be managed by it. The current policy that has emerged from issues with clients is what they call co-management, which is relatively new, and I do not know if adoption is significant. Many legacy or older customers who have been using these products for decades still have SCCM. When it is time for them to manage their Windows devices, they use what is called cloud attach. Cloud attach is a term whereby your SCCM is connected to your Microsoft Intune. Most people do not know about it, but I have deployed it for several organizations. Cloud attach and co-management work together so that your device is in SCCM, but some policies are pushed from Microsoft Intune. It is like two different solutions working hand in hand. That is what they call co-management. Microsoft Intune does not bring all of your endpoint and security management tools into one place, which is the goal and how it should be. However, as I mentioned, servers are not included. If we talk about end users, Microsoft Intune does bring all your devices together. In a typical enterprise environment, you have end users with workstations, laptops, company-issued phones, and bring your own devices. You can create policies for all of these. However, for the backend, your servers do not have much coverage. Servers are not really covered by Microsoft Intune in that way.
Ravi Khanchandani - PeerSpot reviewer
Founder Director at Techsa Services
Long-term partnership improves customer satisfaction and delivers efficient endpoint management
BigFix supports something known as Patch Policies, which allows users to define that whenever critical patches are released, they should get evaluated against machines and automatically deploy them. Their software distribution is very efficient because they use a pull mechanism rather than a push mechanism, allowing each machine to download from the closest repository and install themselves. The same assessment mechanism applies for real-time vulnerability remediation, allowing identification, evaluation, and automatic remediation across machines. Compliance metrics typically measure the patch percentages deployed against the number of endpoints, which could be various device types including virtual machines and mobile devices. Measurements are taken against each device type, looking into compliance percentages for browsers such as Chrome and Edge based on their versions.
MA
Division Manager, Information Technology at a legal firm with 51-200 employees
Centralized policies have improved remote endpoint control and have simplified data visibility
The integration is not simple and easy. It requires experienced users or people who have done the implementation. When certain policies are applied, they do not immediately push the policies. For example, we manage endpoint device USB access. We set a policy to block it, but it does not come into effect immediately. Sometimes it takes three or four days for it to reflect. That is a pain point. I have raised this issue with support as well, but they said that I need to limit the number of devices in the policy. In terms of application deployment, for us, it was seamless.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The product is very useful in terms of Windows Information Protection."
"What I have found most useful in Microsoft Intune is creating an environment where customers or clients need someone to work immediately with an out-of-box experience."
"Its most valuable aspect is it is very connected with the Microsoft ecosystem."
"Microsoft Intune brings all endpoint and security management tools into one place, and for app discovery, deployment, and automatic updating, it's reliable."
"I rate Intune 10 out of 10."
"Application deployment and keeping the devices secure no matter where they are, by having this cloud solution — that has been great."
"The user experience of Microsoft Intune is quite good because there's not much disturbance in the background; it's just running in the background."
"I like Intune's ability to install software to a device remotely and push policy through the Azure portal."
"I like the overall usage of it; it's easy to use, gives you great visibility into your environment, allows customization of your reports, and offers a community of users from whom you can pull experience and knowledge, which is one of the main advantages of using BigFix."
"It covers multiple operating systems and helps with patch management."
"BigFix is a great product. The flexibility of putting together your own relevance and retrieving custom data from any one of your agents is a valuable feature. It is one of my favorite features because if a boss asks me, "How many of these devices do we have?", I can put together a report in two seconds."
"We are able to use BigFix through API connections to automate and reduce resources and time. The product's been great for us. It's increased the security posture ten-fold and it's increased our visibility across our endpoints enormously."
"The older version of the tools that I use also included the connectivity aspect, and the fact that the tool now has it separate from the collection of usage data makes the deployment of these tools much easier."
"Altogether, help desk calls have been reduced by around 50%."
"Our services are easy to manage with BigFix."
"Patch management, because it very much improved the patch compliance and has the capability to manage Windows and non-Windows clients."
"Tanium is used for endpoint management, specifically patching and configuration management."
"It's definitely not complex, it is pretty user-friendly and it's a solid tool enterprise to use."
"Tanium is highly scalable."
"I find the inventory and compliance features of Tanium to be the most impressive."
"For inventory purposes, it's from one of the best things on the scene, as you can get live inventory."
"Tanium's most valuable feature is its instant discovery aspect."
"The product is granular and can build complex roles compared to other EDR vendors."
"Tanium's most valuable features are patch management, inventory, and distribution software."
 

Cons

"There is room for improvement in server patch management and allowing direct uploads of EXE applications instead of needing to convert them to Intune format, which would save time."
"The reports aren't complete, and it's not easy to build custom reports. For example, Windows Autopilot isn't working well in cases where the computers don't have a good internet connection. Then the option is not good enough."
"The solution could be improved by the opportunity to connect third-party application databases, such as Chocolatey or another setup store, to Intune."
"The support is not very good. It's very poor."
"Microsoft Intune could improve in reporting data for endpoints and fleets. Enhanced capabilities to run queries and gather specific device data to identify trends or issues would be beneficial. The feature parity for MacOS and handling devices from an MDM perspective is not comprehensive. Consolidation of these functionalities within Intune would simplify processes and finances."
"A feature I would want to see added in Microsoft Intune is the ability to manage other non-Microsoft devices."
"I would like to see easier pushdowns. Currently, we have to package our own software and then push it. Intune can make that way easier and integrate applications, such as Zoom and Adobe Acrobat, that are used by a lot of enterprise or corporate organizations."
"Reporting could be improved. It needs to be more expensive and robust."
"The console interface is not friendly, and requires training before using it in production."
"Still, you have to dance around and probably do some voodoo in order to get that data back."
"Relay selection and availability needs improvement as an incorrect relay selected can cause network chokes."
"A major feature that I think they need to add to Detect is application whitelisting."
"I self-taught for this online, so the initial setup was a little difficult to pick up at first. I had to create a couple of testing environments and destroy them in order to learn how to use it. There was a lot of trial and error, a lot of reading of the manuals."
"The new EDR (Endpoint Detection and Response) feature, Detect, is new and still needs a few updates."
"Web reports. The interface for web reports is still pretty basic, and really hasn't changed in the seven years that we've had the product, so that would be one thing that would be really nice."
"The solution needs to improve console speed. I would like to see one console that does everything. It doesn't need to have a big client console."
"Our biggest issue with the solution is its lack of mobility."
"There are some bugs in the product. The tool needs to improve in the area of reporting."
"Any movement into a SaaS solution has challenges since the processes and data flows are not well defined. Hence, you need to build it at the same time."
"The performance could improve in future releases. We have had performance issues in specialized web environments, but overall I think the problems are less than 2% of the computer systems being used."
"The solution can give a lot of false positives."
"The solution lacks mobility."
"We set a policy to block USB access. The moment a device is being set up on the network, I apply the policy, but it does not come into effect immediately."
"The main issues are the network connection because different customers have issues with their networks. It's difficult implementing this type of solution because the network is the main feature in the architecture for these types of solutions. Tanium could improve by creating some network optimization."
 

Pricing and Cost Advice

"No one can compete with Microsoft when it comes to price, and the features it is offering."
"I rate Intune five out of 10 for pricing. It's expensive."
"If you're ever going to buy an Office 365 environment, then pricing is reasonable given all that it does, but if you're not, then you might find the pricing expensive."
"Microsoft Intune is available for individual purchase at a low per-device cost."
"It's affordable for the protection it gives. There are no additional costs."
"Microsoft Intune's pricing is reasonable."
"Its pricing seems reasonable."
"The licensing costs we leave up to the customer and these vary from one to another."
"The price of BigFix is better than the solutions. You are able to pay monthly or annually. There are not any hidden costs with BigFix. There is an additional cost for the SQL database."
"There's not much big cost. We only have to pay the agents' cost for the server, and for the systems."
"On a scale from one to ten, where one is expensive and ten is cheap, I rate the solution's pricing one out of ten."
"The cost is slightly high."
"You get what we call the Platform Edition, which you get for free. The patch service is maybe $0.50 per workstation per month. Then there's the basic server cost, which is about $1.50 per server per month. You also get into Lifecycle which does power management, OSD remote control, and those types of things, and that might be about 10 times the price - which works out to about $13 per server and, maybe $5 per workstation per month."
"So, the pricing is slightly more expensive than the others. I have to keep buying licenses every time I add a new device."
"The price is very fair."
"I can estimate the reduced cost of servers maintenance to approximatively $500,000."
"It's an expensive solution. It would be nice if the cost were lower."
"It is higher than some competitors in the market."
"There is an annual license required to use this solution."
"The solution offers value for money."
"Tanium is a more expensive solution in Latin America than some of the competitors, such as BigFix."
"The solution is expensive but it's a good investment."
"The product's pricing differs from region to region depending on negotiations and the number of endpoints."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
902,270 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
10%
Manufacturing Company
10%
Computer Software Company
8%
Government
7%
Financial Services Firm
13%
Manufacturing Company
10%
Government
7%
Construction Company
5%
Financial Services Firm
14%
Government
11%
Manufacturing Company
9%
Healthcare Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business190
Midsize Enterprise65
Large Enterprise185
By reviewers
Company SizeCount
Small Business30
Midsize Enterprise12
Large Enterprise67
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise3
Large Enterprise12
 

Questions from the Community

How does Microsoft Intune compare with VMware Workspace One?
Microsoft Intune is a great tool for managing a mobile device fleet while keeping access control. The solution makes ...
What are the pros and cons of Microsoft Intune?
Microsoft Intune is a great configuration management tool and has a lot of good things going for it. Here are some of...
How does Google Cloud Identity compare with Microsoft Intune?
Microsoft Intune offers not only an easy-to-deploy data protection and productivity management solution, but also ...
What is your experience regarding pricing and costs for BigFix?
The pricing is pretty good and now follows a subscription model similar to other major software solutions, making it ...
What needs improvement with BigFix?
I have concerns about BigFix's pricing, which I find to be slightly on the higher side. While it may not be the most ...
What is your primary use case for BigFix?
I have been working at Tech Data for the last 12 plus years.
What needs improvement with Tanium?
While there is always room for improvement, I am pleased with Tanium.
What is your primary use case for Tanium?
The primary use case for Tanium ( /products/tanium-reviews ) is compliance, patching, and inventory as part of the co...
What advice do you have for others considering Tanium?
For smaller companies, Tanium is quite a big investment, and one needs to have a considerable setup to make it econom...
 

Also Known As

Intune, MS Intune, Microsoft Endpoint Manager
Tivoli Endpoint Manager
Tanium Inc Cloud, Tanium XEM
 

Interactive Demo

Demo not available
Demo not available
 

Overview

 

Sample Customers

Mitchells and Buzzers, Callaway
US Foods, Penn State, St Vincent's Health US Foods, Sabadell Bank, SunTrust, Australia Sydney, Stemac, Capgemini, WNS Global Services, Jebsen & Jessen, CenterBeam, Strauss, Christian Hospital Centre, Brit Insurance, Career Education Corporation
JPMorgan Chase, eBay, Amazon, US Bank, MetLife, pwc, Cerner, Delphi, MGM Grand, New York Life
Find out what your peers are saying about BigFix vs. Tanium and other solutions. Updated: May 2026.
902,270 professionals have used our research since 2012.