IRONSCALES and Microsoft Defender for Identity are notable competitors in the email security and identity protection category. IRONSCALES has an advantage in terms of advanced automated detection and response capabilities while Microsoft Defender for Identity excels in threat visibility and integration within the Microsoft ecosystem.
Features: IRONSCALES is known for its automated detection and response, AI capabilities, and community threat-sharing which enhances phishing detection and provides rapid threat mitigation. Microsoft Defender for Identity offers comprehensive threat visibility, real-time analytics, and anomaly detection across both cloud and on-premises environments, integrating seamlessly with other Microsoft tools for cohesive identity protection.
Room for Improvement: Users of IRONSCALES suggest improvements in Google Suite integration, reporting features, and user interface simplification. There is also a call for more security awareness content and improved mobile app notifications. For Microsoft Defender for Identity, reducing false positives, enhancing administrative interfaces, and better on-premises system integration are areas for growth. Users also desire streamlined alert correlations and an improved threat intelligence schema.
Ease of Deployment and Customer Service: IRONSCALES is valued for its versatile deployment options across cloud environments and proactive customer support, often praised for quick issue resolution. Microsoft Defender for Identity supports both cloud and on-premises deployments and is noted for helpful and responsive technical support. Both receive positive feedback, with IRONSCALES notably appreciated for its proactive customer handling.
Pricing and ROI: IRONSCALES is relatively expensive but justified by its effectiveness and substantial ROI in reducing manual intervention and preventing security breaches. Meanwhile, Microsoft Defender for Identity, included in Microsoft 365, is perceived as cost-effective within the ecosystem despite occasional cost concerns compared to standalone alternatives. The different pricing tiers, particularly E5 offering better cost benefits, are highlighted.
The quality of support is very good, but troubleshooting can take time due to complex setups and the need to provide many logs.
Generally, the support is more effective than other providers like Oracle.
In a Microsoft-centric organization, especially with Azure infrastructure and Office 365, Microsoft Defender for Identity is scalable.
Microsoft Defender for Identity is quite robust and built on Azure hyperscale infrastructure, with a 99% availability.
We do not see any issues with the stability of Microsoft Defender for Identity.
Having recently started using it, reliability is affirmed, but manual investigation is often performed to verify if alerts identified by auto-remediation are accurate.
If Microsoft could develop a feature that indicates when impossible travel is caused by VPN connections, it would prevent unnecessary password resets and session disruptions, especially for VIP users in organizations.
One improvement I would recommend is the integration of an admin application within Teams, allowing easy access to attack information on a mobile platform.
Reducing false positives is something we've been working on with Microsoft.
If they can reduce the costs, organizations will be happy, and it will compensate for using the Azure environment, which is more expensive on the infrastructure as a service side.
the Microsoft Defender Suite is quite expensive, especially when integrated into Sentinel.
Ensuring a fair price according to market standards.
We receive an advance report of risky users, allowing us to take preemptive action before an attack causes damage to organization details.
Based on the detection of incidents, we can prevent issues, and if there are any identity-related alerts, they are prevented through a conditional access policy.
The most valuable features of Microsoft Defender for Identity include its automatic remedies, possibilities for avoiding incidents, the privilege manager, and the generation of logs that facilitate a safer environment.
IRONSCALES secures against business email compromises, phishing, and email-based attacks. Protects Microsoft 365 users by enhancing spam filters, automating threat mitigation, and providing phishing awareness training.
Deploy IRONSCALES to inspect, report, and quarantine threats with a sandbox feature, and run simulations to train staff worldwide, adding an extra security layer. Communicates via API to ensure ongoing email security. Offers threat-sharing capability, AI, easy setup, scalability, stability, and effective email security. Automated detection and response, mobile app notifications, integration with Microsoft 365, phishing training modules, and a user-friendly interface, including an Outlook extension to report suspicious emails. Reduces manual analysis time, saving considerable effort.
What are the most important features of IRONSCALES?In specific industries, IRONSCALES can be implemented to address varied email security needs. For instance, financial services may benefit from robust threat mitigation and phishing training to protect sensitive data. Healthcare organizations could utilize features like AI-driven detection and sandboxing to comply with stringent regulations. Technology firms might value the easy setup and scalability to keep up with rapid growth and evolving threats. Retailers can leverage mobile app notifications and automated response to ensure continuous protection against email-based attacks. Education sectors may find phishing awareness training modules particularly useful to educate staff and students about potential threats.
Microsoft Defender for Identity integrates with Microsoft tools to monitor user activity, providing advanced threat detection and analysis using AI. It enhances proactive threat response and security visibility, making it essential for securing on-premises and cloud environments like Active Directory.
Microsoft Defender for Identity offers comprehensive monitoring and AI-driven user behavior analysis. It detects threats through real-time alerts and identifies lateral movements and entity tagging, ensuring robust security management. With excellent visibility via its dashboard, it supports customized detection rules and seamlessly integrates with SIEM platforms. While SecureScore and SecureScan provide robust environment security, there is room for improvement in cloud security, on-premises application integration, and remediation capabilities. Azure integration is limited, and the administrative interface could be more user-friendly. Users experience frequent false positives, affecting threat detection efficiency.
What key features stand out in Microsoft Defender for Identity?In specific industries such as education and finance, Microsoft Defender for Identity is crucial for securing on-premises Active Directory and Azure Active Directory environments. It effectively detects suspicious activities and manages conditional access policies, offering user and entity behavior analytics, endpoint detection and response capabilities. This helps prevent unauthorized access and strengthens overall security, making it an invaluable asset for organizations aiming to safeguard their digital infrastructure.
We monitor all Advanced Threat Protection (ATP) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.