Try our new research platform with insights from 80,000+ expert users

Kaspersky Endpoint Security Cloud vs Microsoft Defender XDR comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
6.1
Kaspersky Endpoint Security Cloud offers reasonable pricing and savings but may require supplementary solutions for complete protection.
Sentiment score
6.7
Microsoft Defender XDR provides high ROI by consolidating security tools, streamlining operations, and enhancing security, despite licensing costs.
We can quarantine and isolate a device within minutes.
Microsoft Defender XDR has saved me at least 50% of my time.
Ever since we turned on the M5 feature set back in June, we have seen a reduced number of potentially malicious clicks and faster alerting when incidents occur.
 

Customer Service

Sentiment score
4.7
Kaspersky Endpoint Security Cloud's customer service is mixed, praised for initial help but criticized for slow responses and limited access.
Sentiment score
6.2
Microsoft Defender XDR's support is timely and responsive, yet smaller organizations experience slower, less effective assistance than larger ones.
They should start offering sessions if there's some critical error occurring, even if someone has to pay for the support.
You get stuck in low-level support for way longer than you should, instead of them escalating the issue up the chain.
It's critical to escalate SEV B issues immediately to a domestic engineer.
Once issues are escalated to the second or third layer, the support is much better.
 

Scalability Issues

Sentiment score
6.2
Kaspersky Endpoint Security Cloud is highly scalable, supporting growth from a few to hundreds of users, with room for process improvement.
Sentiment score
7.6
Microsoft Defender XDR scales well for various organizations, efficiently supporting growth and flexibility despite some network deployment challenges.
If you assign a device to a user in Kaspersky Endpoint Security Cloud, you cannot reassign it to another user.
Microsoft Defender XDR shows tremendous scalability, much more so than on-premises solutions.
Microsoft Defender XDR scales pretty well.
It is suitable for enterprise-level deployment but has room for improvement.
 

Stability Issues

Sentiment score
7.5
Kaspersky Endpoint Security Cloud is stable and effective in malware detection, though some users report occasional update issues.
Sentiment score
8.0
Microsoft Defender XDR is praised for high stability, reliable performance, minimal issues, frequent updates, and prompt issue resolution.
The service has remained consistently online, with any issues isolated to specific components, suggesting a well-designed and modular architecture.
The services within our ecosystem have been reliable, meeting their SLAs.
It provides high-fidelity signals.
 

Room For Improvement

Kaspersky Endpoint Security Cloud requires enhancements in stability, scalability, feature expansion, usability, support, and advanced threat detection.
Microsoft Defender XDR requires enhancements in speed, integration, automation, AI, ease-of-use, and industry-specific threat intelligence.
Recently, there was a company which was attacked by phishing emails, and out of 10, it was only blocking three emails.
Changes occur without notification or updates from the Kaspersky team, making it difficult to prepare for modifications.
The licensing process needs improvement and clarification.
Improvements are needed in automated response capabilities.
Some inconsistencies exist between blades, which could be improved for a more seamless user and UI experience.
 

Setup Cost

Kaspersky Endpoint Security Cloud is a cost-effective, flexible, industry-standard enterprise solution with transparent annual pricing and no hidden costs.
Microsoft Defender XDR pricing is seen as complex but fair, with high costs alleviated in bundled Microsoft 365 packages.
There are certainly savings when using Microsoft Defender XDR, which can range from 30%, 40%, and even up to 50%.
I would rate the pricing as eight out of ten, indicating it is a reasonable cost for the product.
Microsoft purposefully obfuscates this through marketing ploys to hide costs.
 

Valuable Features

Kaspersky Endpoint Security Cloud offers comprehensive protection with advanced features, Microsoft 365 integration, and reliable performance.
Microsoft Defender XDR integrates tools for comprehensive security, offering threat detection, automation, identity protection, and enhanced efficiency.
Endpoint Detection and Response functionality includes root cause analysis and device isolation.
Kaspersky Endpoint Security Cloud is one of the best, very effective software because of its vulnerability assessment and threat assessments.
With Microsoft threat intelligence information, it detects various types of threats, including insider attacks, malicious content, and data exfiltration.
This allows us to secure our systems in advance and proactively improve security, rather than waiting for incidents to occur.
Once we have it on the security dashboard, we can see a real-time storyline.
 

Categories and Ranking

Kaspersky Endpoint Security...
Ranking in Endpoint Detection and Response (EDR)
24th
Average Rating
7.4
Reviews Sentiment
6.3
Number of Reviews
13
Ranking in other categories
Ransomware Protection (8th)
Microsoft Defender XDR
Ranking in Endpoint Detection and Response (EDR)
5th
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
102
Ranking in other categories
Extended Detection and Response (XDR) (2nd), Microsoft Security Suite (4th)
 

Mindshare comparison

As of October 2025, in the Endpoint Detection and Response (EDR) category, the mindshare of Kaspersky Endpoint Security Cloud is 0.6%, up from 0.2% compared to the previous year. The mindshare of Microsoft Defender XDR is 2.9%, down from 3.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Detection and Response (EDR) Market Share Distribution
ProductMarket Share (%)
Microsoft Defender XDR2.9%
Kaspersky Endpoint Security Cloud0.6%
Other96.5%
Endpoint Detection and Response (EDR)
 

Featured Reviews

Zunair Aftab - PeerSpot reviewer
Security features excel while management tools face challenges
Kaspersky Endpoint Security Cloud has proven to be a robust and comprehensive solution for endpoint protection. So far, no major negative features have been observed. However, email security integration with Microsoft 365 has room for improvement. In a recent real-world incident, a company received 10 phishing emails, of which only three were blocked by the system. Enhancing detection accuracy to block 7 or more would significantly improve trust and effectiveness. With the on-premises version, there's a known issue where assigning a device to a new group results in it being auto-assigned back to the previous group. Fixing this bug would greatly streamline device management. Additionally, in the cloud version, once a device is assigned to a user, it cannot be reassigned without deleting the user or the device entirely. It would be far more user-friendly if the platform allowed simple reassignment or de-assignment, returning the device to an "unassigned" state. As for automated behavioral analysis, while current functionality is based on machine learning, upgrading to true AI-powered detection could bring substantial improvements. Ideally, the system should proactively flag potential threats, and offer administrators the option to either allow or block applications based on intelligent risk analysis
MohtesanShaikh - PeerSpot reviewer
Experience improves security management and simplifies threat protection
I have created automated investigations, and while they work, they operate rather slowly in the Microsoft portal. If I automate something, it takes considerable time; if I do it manually, I can complete it in a quarter of the time. The automation response being slow is the main concern; when an incident occurs or if I run a remediation, it takes significant time to complete the remediation. There are some limitations regarding the scalability of Microsoft Defender XDR with specific licensing. For SMB customers, there is only Microsoft Defender for Business, and if they want more features such as XDR features and automation investigation or incident response, they need to purchase Defender for Endpoint. We are currently using the EDR.
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
869,566 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
19%
Computer Software Company
13%
Comms Service Provider
10%
Government
6%
Computer Software Company
16%
Financial Services Firm
8%
Manufacturing Company
8%
Comms Service Provider
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise4
Large Enterprise3
By reviewers
Company SizeCount
Small Business46
Midsize Enterprise23
Large Enterprise37
 

Questions from the Community

What do you like most about KasperskyEndpoint Security Cloud?
The product works perfectly to prevent malware in our organization.
What needs improvement with KasperskyEndpoint Security Cloud?
Recent upgrades have occurred, but some customers question why certain options are disabled. Previously these options were functional. Changes occur without notification or updates from the Kaspers...
What do you like most about Microsoft 365 Defender?
Microsoft Defender XDR provides strong identity protection with comprehensive insights into risky user behavior and potential indicators of compromise.
What is your experience regarding pricing and costs for Microsoft 365 Defender?
The pricing for Microsoft Sentinel operates on a pay-as-you-go model based on data ingestion. I recall that Defender XDR pricing is based on the number of endpoints.
What needs improvement with Microsoft 365 Defender?
I have created automated investigations, and while they work, they operate rather slowly in the Microsoft portal. If I automate something, it takes considerable time; if I do it manually, I can com...
 

Also Known As

No data available
Microsoft 365 Defender, Microsoft Threat Protection, MS 365 Defender
 

Overview

 

Sample Customers

Information Not Available
Accenture, Deloitte, ExxonMobil, General Electric, IBM, Johnson & Johnson and many others.
Find out what your peers are saying about Kaspersky Endpoint Security Cloud vs. Microsoft Defender XDR and other solutions. Updated: September 2025.
869,566 professionals have used our research since 2012.