No more typing reviews! Try our Samantha, our new voice AI agent.

CloudLock vs Microsoft Defender for Cloud Apps comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 3, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in Cloud Access Security Brokers (CASB)
6th
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
23
Ranking in other categories
Secure Web Gateways (SWG) (6th), Internet Security (3rd), Web Content Filtering (1st), ZTNA as a Service (6th), Secure Access Service Edge (SASE) (7th)
CloudLock
Ranking in Cloud Access Security Brokers (CASB)
23rd
Average Rating
7.8
Reviews Sentiment
7.3
Number of Reviews
5
Ranking in other categories
No ranking in other categories
Microsoft Defender for Clou...
Ranking in Cloud Access Security Brokers (CASB)
5th
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
42
Ranking in other categories
Advanced Threat Protection (ATP) (16th), Microsoft Security Suite (8th)
 

Mindshare comparison

As of August 2026, in the Cloud Access Security Brokers (CASB) category, the mindshare of iboss is 4.6%, up from 1.9% compared to the previous year. The mindshare of CloudLock is 0.9%, up from 0.7% compared to the previous year. The mindshare of Microsoft Defender for Cloud Apps is 5.6%, down from 8.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Cloud Access Security Brokers (CASB) Mindshare Distribution
ProductMindshare (%)
Microsoft Defender for Cloud Apps5.6%
iboss4.6%
CloudLock0.9%
Other88.9%
Cloud Access Security Brokers (CASB)
 

Featured Reviews

Ashok Ananthula - PeerSpot reviewer
Senior Consultant Proxy Engineering at a financial services firm with 10,001+ employees
Cloud gateway has strengthened remote web security and now needs better Mac and ISP support
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent for the Mac agents. That is where in 2025, we had to migrate to the Palo Alto-based platform. If your use case is for just Windows laptops,you can consider this platform as an option One issue is the data center resiliency part. In India especially, they are not tied up with the Tier 1 ISPs like Tata or Airtel; they were having Tier 2 ISPs and encountered many issues reaching few major sites that my organization depends on, and they were having problems that they could not fix quickly. They also lack a mechanism to route that traffic within their data center; rather, they ask customers to make a pac file change to route it to Singapore explicitly. It would be better if they route from their backend , i mean even if I send it to India DC, they should be able to route it internally to make that work; however, they fail to do that and ask the customer to route it in the pac file. Another suggestion is that in China, they do not have the proper setup; they used to have numerous problems with slowness and lack of premium circuits in China as well. That leads to multiple sites working slowly with latency-related issues. So the main issue is the ISP-related problems that need to be solved.
reviewer779877 - PeerSpot reviewer
Senior Software Engineer with 501-1,000 employees
Screens sensitive data but it should be a bigger part of an end-user device
The only improvement is that it has to be a bigger part of an end-user device. It should look at how endpoints appear on the EDR rather than creating an API to integrate into the agent app which need additional development effort. We have to integrate the source code into the system endpoint and make it as part of the connected app.
Abdulrahman Muhammadi - PeerSpot reviewer
information Security and IT Manager at Discover Dollar Technologies Pvt Ltd.
Integration with existing cloud workflows has simplified compliance and threat detection
Licensing cost is a significant concern. With Defender Plan 1, Microsoft Defender for Cloud Apps comes with a pay-per-use model. Each feature has its own pricing when activated on VMs. For example, the vulnerability assessment has separate pricing, the base model including encryptions has separate pricing, and the compliance features have separate pricing. This applies to each VM and Azure resource individually. It is not straightforward where you can take one license and apply it to everything. Each feature has its own pricing model which can be tedious, as the costs keep accumulating. The only lacking feature currently is XDR (extended detection and response). Apart from that, I have only positive experiences with the whole Microsoft suite, except for the pricing structure.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The iboss solution gives me the ability to scan the traffic through all the ports, through all the 131,000 PCP and UDP ports, and with this ability, we have the granularity also for consults over social media and applications on mobile, and this is an advantage that the customers are looking for right now."
"iboss is pretty scalable. They provide good support. The case managers you work with to coordinate what you need are pretty good."
"First of all, the security policies are essential. I do not have to rely solely on Active Directory for our users."
"iboss is easy to use despite its complexity. Multiple engineers manage it, but it's significantly more straightforward to administer than traditional VPNs and web proxies."
"It was a very easy product to install. It can be deployed very fast."
"The iboss system is highly reliable. The false positive rates are small compared to some other systems we've experienced through other partner agencies who use competing solutions."
"From a corporate perspective, I understand that it's important to keep the company data safe."
"Our primary use case for this product is DLP,"
"It allows us to know where sensitive data is really stored and offers the ability to quarantine based on data types and sharing criteria."
"The solution is very stable and reliable."
"I like CloudLock because when data gets sent out, I do not want it to get out of the environment."
"The cloud infrastructure is the solution's most valuable feature."
"It is a good CASB solution for protection of collaboration of content."
"CloudLock is a great solution if you use multiple cloud systems like Google, Salesforce, AWS, and so on, because you can scan all systems with one tool."
"I like CloudLock because when data gets sent out, I do not want it to get out of the environment. In today's world, a lot of users will remotely use the application. It screens all of the sensitive data. That data will really be as part of the environment that you do not want it to be part of. CloudLock is protection for sensitive data."
"We have seen a 35% to 45% cost reduction with this solution."
"There are a lot of features with benefits, including discovery, investigation, and putting controls around things. You can't say that you like the investigation part but not the discovery. Everything is correlated; that's how the tool works."
"The ability to sanction unsanctioned apps using Secure Score benchmarking, included in Cloud, is also beneficial."
"In Microsoft Defender for Cloud Apps, there is an option to enable files. Once you enable that, it will give you all the files in your organization and where they are located in the cloud... That feature is very useful for investigation purposes."
"The integration within the entire Defender suite is highly valuable because it allows for communication between different components and offers pretty decent correlations."
"The solution is bundled with E3 and E5 licenses; that's the reason it's most commonly deployed, as it's part of the bundle and not a separate cost, and if your business requirements are relatively simple, it can get the job done."
"Microsoft Defender for Cloud Apps is very comprehensive, providing a complete 360-degree view of applications within an organization."
"The benefit you get is that you are able to monitor all your applications and control the data that goes out of those applications."
 

Cons

"I'd like to see them accelerate development on the security side, particularly around data loss prevention."
"File integrity monitoring would be very advantageous as an additional feature."
"It is stable, but due to growth, it can sometimes be less stable than wanted."
"For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company ExxonMobil."
"SSL decryption: We had issues with learners using apps instead of using web browsers. This type of encryption is tough for any appliance in a BYOD environment."
"I am currently doing a PoC of the zero trust aspect of it. Compared to other similar solutions, it is hard to get around each feature. It takes a while to get used to it."
"Their on-premise hardware's network interface is capped at one gigabit, which is sort of a problem. If you stand a filter up where all traffic flows through that, according to them, in order to go above a gigabit, you have to have multiple devices, which in today's IT seems a little bit silly. They could easily put in an SFP port into their device that could accommodate 10 gigs or at least offer a box."
"Sometimes when you call in support, you get someone who is just following a sheet. It feels like a runaround. You feel that you are running into that support wall."
"The only improvement is that it has to be a bigger part of an end-user device."
"The only improvement is that it has to be a bigger part of an end-user device. It should look at how endpoints appear on the EDR rather than creating a separate agent. We have to integrate the source code into the system endpoint and make it an agent."
"As long as this issue exists, CloudLock or any other product is only a band-aid solution."
"The solution needs to have better integration capabilities. I have a lot of customers asking about how they can integrate it better."
"Like all CASB products, this product also needs to expand its capabilities and features in order to increase scope of application."
"Sometimes, we'll get false positive alarms. For example, when a SharePoint path has no file sharing, but there is an external user, it will trigger an alarm that the file has been shared with an external user... the alerting mechanism should be more precise when giving you an alert about what activity has been done with the file..."
"There are some features, such as user navigation content filtering, that are disabled by default, and it probably makes sense to enable them by default."
"The documentation could be improved as it is not updated immediately when Microsoft makes changes. Users must wait a few weeks for the changes to be reflected in the documentation."
"They need to improve the attack surface reduction (ASR) rules. In the latest version, you can implement ASR rules, which are quite useful, but you have to enable those because if they're not enabled, they flag false positives. In the Defender portal, it logs a block for WMI processes and PowerShell. Apparently, it's because ASR rules are not configured. So, you generally have to enable them to exclude, for example, WMI queries or PowerShell because they have a habit of blocking your security scanners. It's a bit weird that they have to be enabled to be configured, and it's not the other way around."
"Defender could integrate better with multi-cloud and hybrid environments. It requires some additional configuration to ingest data from non-Azure environments and integrate it with Sentinel."
"The response time could be better. It will be helpful if the alerts are even more proactive and we can see more data. Currently, the data is a little bit weak. It is not complete. I can't just see it and completely know which user or which device it is. It takes some effort and time on my part to investigate and isolate a user. It would be great if it is more user-friendly or easy for people to understand."
"We would like to get more information from the endpoint. I don't get enough detailed information right now on why something failed. There is not enough visibility."
"Currently, reporting is not very straightforward and it needs to be enhanced. Specific reports are not included and you need to run a query, drill down, and then export it and share it. I would love to have reports with more fine-tuning or granularity, and more predefined reports."
 

Pricing and Cost Advice

"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"It is probably in line with other solutions, but I do not deal with the financial side."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"It is expensive compared to one of its competitors."
"The overall pricing for iboss is very competitive and transparent."
Information not available
"The pricing is in the middle. It isn't too cheap or expensive compared to other antivirus or security products. It is priced according to industry standards."
"It has pretty good pricing."
"The product's pricing seems fair."
"Where we are right now, this is an acceptable pricing. I would like to see more transparency given to the end user. The end user given to us is via the cloud service provider. There are different programs and license models. Some include this, and some include that. It is all over the place. There can be a little more consistency or simplification in the pricing so that your parts list is not ten pages long, and you are not trying to determine, "If I have an E3, does this cover that?", or "Do I need to pay separately for the license?" Simplification would probably be better."
"The pricing is fair."
"It has fair pricing. You pay for what you get. As far as I know, there are no costs in addition to the standard licensing fee."
"This product is not expensive."
"The cost could be improved when you need to pay for anything. For example, refreshing files takes time to load, though it may be my Internet. To improve the refresh time, Microsoft says that we need to pay for a Premium license, and I don't like paying for things that help make a solution better."
report
Use our free recommendation engine to learn which Cloud Access Security Brokers (CASB) solutions are best for your needs.
909,099 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Manufacturing Company
9%
Computer Software Company
8%
Construction Company
7%
No data available
Financial Services Firm
12%
Manufacturing Company
8%
Computer Software Company
8%
Comms Service Provider
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business11
Midsize Enterprise8
Large Enterprise10
No data available
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise13
Large Enterprise19
 

Questions from the Community

What needs improvement with iboss?
I think iboss could be improved by making reporting and dashboard customization more flexible, and simplifying troubl...
What is your primary use case for iboss?
I use iboss as a cloud-based secure web gateway to provide secure internet access, web filtering, and protect remote ...
What is your experience regarding pricing and costs for iboss?
My experience with iboss's pricing structure, setup cost, and licensing model has been positive, straightforward, and...
Ask a question
Earn 20 points
Which is the better security solution - Cisco Umbrella or Microsoft Cloud App Security?
Cisco Umbrella is an integral component of the Cisco SASE architecture. It integrates security in a single, cloud-nat...
What is your experience regarding pricing and costs for Microsoft Cloud App Security?
At the time of implementation, when the size of our organization was small, it was a more affordable product. Since a...
What needs improvement with Microsoft Cloud App Security?
The fidelity of the signal in Microsoft Defender for Cloud Apps has been a challenge in some areas. There have been i...
 

Also Known As

iBoss Cloud Platform
No data available
MS Cloud App Security, Microsoft Cloud App Security
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Dominion Enterprises, Quality Distribution, Clark Construction Group LLC, Ahold, Middlesex Hospital, Austin Community College (ACC), Dominion Enterprises, The United States Holocaust Memorial Museum, Oakland Unified School District, Sunnova, Damballa, Financial Times, Boise State University
Customers for Microsoft Defender for Cloud Apps include Accenture, St. Luke’s University Health Network, Ansell, and Nakilat.
Find out what your peers are saying about CloudLock vs. Microsoft Defender for Cloud Apps and other solutions. Updated: August 2026.
909,099 professionals have used our research since 2012.