No more typing reviews! Try our Samantha, our new voice AI agent.

Microsoft Defender Threat Intelligence [EOL] vs Microsoft Defender for Cloud Apps comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 3, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
7.2
Microsoft Defender for Cloud Apps enhances security, reduces costs, and optimizes resources with seamless integration and proactive monitoring.
Sentiment score
8.2
Microsoft Defender Threat Intelligence enhances security, saves on budgets, and improves detection, offering significant ROI and value.
The biggest return on investment so far has been visibility, knowing what we have in our environment.
Cloud and data protection engineer at a university with 10,001+ employees
As a small team, Microsoft Defender for Cloud Apps allowed us to manage systems with just one or two people.
Manager, Information Technology Security Compliance at a manufacturing company with 201-500 employees
We have at least saved the costs we had from the Netskope solution this year.
Security and Continuity Manager at Rolinco NV
It's a value-for-money product.
Mobility & IT Project Manager at Voicevine Pty Ltd
 

Customer Service

Sentiment score
6.6
Microsoft Defender for Cloud Apps support has mixed reviews, with high technical proficiency but inconsistent responsiveness and communication delays.
Sentiment score
7.5
Microsoft Defender support is rated very good, with knowledgeable level two assistance, competent partners, and a helpful community platform.
Their customer service is pretty good, but it's frustrating to go through three or four channels before reaching the right person.
Cloud and data protection engineer at a university with 10,001+ employees
The support is excellent, and the speed of response is commendable.
Solutions Architect at a university with 51-200 employees
There were instances where the engineers were knowledgeable and helpful, but at other times it felt like a ping pong game, with unnecessary transfers until the right person was found.
Manager, Information Technology Security Compliance at a manufacturing company with 201-500 employees
Level two support is knowledgeable and knows how the product works, which is very good.
Cloud Solution architect at a tech services company with 51-200 employees
I would give Microsoft an eight for their technical support.
Mobility & IT Project Manager at Voicevine Pty Ltd
 

Scalability Issues

Sentiment score
7.5
Microsoft Defender for Cloud Apps offers scalable, cloud-native security but may require extra resources for large-scale policy management.
Sentiment score
7.4
Microsoft Defender Threat Intelligence is highly scalable, adaptable for businesses of all sizes, and supports thousands of endpoints efficiently.
For what I know about the log collector and how much data it can take in, it is super scalable and capable of handling high workloads.
Cloud and data protection engineer at a university with 10,001+ employees
Microsoft Defender for Cloud Apps is very scalable, provided you have the right subscription.
Solutions Architect at a university with 51-200 employees
In my experience, Microsoft Defender for Cloud Apps is good enough for small to medium businesses.
Manager, Information Technology Security Compliance at a manufacturing company with 201-500 employees
If there were some customizations available, I would rate its scalability as nine out of ten.
Cloud Solution architect at a tech services company with 51-200 employees
 

Stability Issues

Sentiment score
8.0
Microsoft Defender for Cloud Apps is stable and reliable, with minimal downtime and continuous improvements praised by users.
Sentiment score
8.0
Microsoft Defender Threat Intelligence is seen as stable and secure, with high reliability and effective phishing prevention despite occasional outages.
I would rate it a ten because I have not experienced any stability issues so far with Defender for Cloud Apps.
Head of Security Operations at a computer software company with 51-200 employees
I would assess the stability and reliability of Microsoft Defender for Cloud Apps as stable
Network Engineer at Apexon
My impression on the stability and reliability of Microsoft Defender for Cloud Apps is that it is very stable.
Security and Continuity Manager at Rolinco NV
It provides a high level of security and avoids phishing and scam emails.
Cloud Solution architect at a tech services company with 51-200 employees
 

Room For Improvement

Microsoft Defender for Cloud Apps needs improvements in pricing, interface, integrations, alert precision, documentation, and multi-cloud support.
Microsoft Defender needs price adjustments, improved integration, better accuracy, enhanced AI, and smoother user experience for evolving cybersecurity.
For data loss prevention, it would be useful to be able to drill down into the kind of data being transferred over CloudApp.
Head of Security Operations at a computer software company with 51-200 employees
Defender typically connects to Entra ID, but we have local users on the cloud for database access, SSH, or RDS, and there is nothing produced by Defender regarding those local IAM users.
Network Engineer at Apexon
Microsoft Defender for Cloud Apps would benefit if Microsoft allows users to fine-tune false positives, enabling us to dismiss alerts or make adjustments so that such things don't trigger multiple times in the future.
Security delivery analyst at a tech vendor with 10,001+ employees
Providing code customization would help keep pace with new vulnerabilities and threats.
Cloud Solution architect at a tech services company with 51-200 employees
The main area of improvement for Microsoft Defender Threat Intelligence is related to how information is conveyed.
Mobility & IT Project Manager at Voicevine Pty Ltd
From the telemetry data standpoint, I would prefer Defender data to be more open in future updates.
Consultant at Dell Technologies
 

Setup Cost

Enterprise users find Microsoft Defender for Cloud Apps affordable within bundles but expensive standalone, desiring more pricing transparency.
Microsoft Defender Threat Intelligence is cost-effective in bundles, but SMEs face challenges with standalone pricing and evolving licensing.
The pricing for Microsoft Defender for Cloud Apps is acceptable.
Solutions Architect at a university with 51-200 employees
My organization is currently revisiting pricing, but previously, the cost was a bit expensive, yet comparable to other solutions with similar functionalities and features.
Manager, Information Technology Security Compliance at a manufacturing company with 201-500 employees
It's not the cheapest, but also not the most expensive, placing it in the mid-level range.
IT Architect at a logistics company with 10,001+ employees
 

Valuable Features

Microsoft Defender for Cloud Apps offers seamless integration, real-time threat detection, and robust security features for comprehensive cloud protection.
Microsoft Defender Threat Intelligence excels in integration, threat detection, user interface, data retention, real-time protection, and analytics.
It provides excellent suggestions and options for configuration; for example, it can track suspicious files getting uploaded to cloud resources on Azure based on their signatures, generating alerts for those files.
Security delivery analyst at a tech vendor with 10,001+ employees
The product recommends things that need to be blocked and allows for dynamic configuration, which cuts down on potential issues that might arise from going through lists and understanding what needs to be blocked.
Partner & Chief Executive Officer at a consultancy with 51-200 employees
The ability to sanction unsanctioned apps using Secure Score benchmarking, included in Cloud, is also beneficial.
Head of Security Operations at a computer software company with 51-200 employees
If it wasn't for that real-time threat detection on the vulnerability, I think we would not have survived the attack.
Mobility & IT Project Manager at Voicevine Pty Ltd
One of the best features is that it provides a certain level of customization, allowing us to set our spam confidence levels.
Cloud Solution architect at a tech services company with 51-200 employees
Our threat detection is enhanced due to the AI agents in Microsoft Defender Threat Intelligence, which helps in detecting automatically.
Consultant at Dell Technologies
 

Categories and Ranking

Microsoft Defender for Clou...
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
42
Ranking in other categories
Cloud Access Security Brokers (CASB) (5th), Advanced Threat Protection (ATP) (15th), Microsoft Security Suite (9th)
Microsoft Defender Threat I...
Average Rating
8.4
Reviews Sentiment
7.3
Number of Reviews
32
Ranking in other categories
No ranking in other categories
 

Featured Reviews

Abdulrahman Muhammadi - PeerSpot reviewer
information Security and IT Manager at Discover Dollar Technologies Pvt Ltd.
Integration with existing cloud workflows has simplified compliance and threat detection
Licensing cost is a significant concern. With Defender Plan 1, Microsoft Defender for Cloud Apps comes with a pay-per-use model. Each feature has its own pricing when activated on VMs. For example, the vulnerability assessment has separate pricing, the base model including encryptions has separate pricing, and the compliance features have separate pricing. This applies to each VM and Azure resource individually. It is not straightforward where you can take one license and apply it to everything. Each feature has its own pricing model which can be tedious, as the costs keep accumulating. The only lacking feature currently is XDR (extended detection and response). Apart from that, I have only positive experiences with the whole Microsoft suite, except for the pricing structure.
Charles Mokoena - PeerSpot reviewer
Mobility & IT Project Manager at Voicevine Pty Ltd
Has strengthened our ability to detect threats in real time and improved internal security decision-making
The features that I find most valuable in Microsoft Defender Threat Intelligence include the Sentinel part of it. There are several features we've looked at, including Sentinel as well as extended Defender, which is XDR. I've used those two, and that's what I've found quite useful for us, especially in the hardening and analysis part of the whole threat analysis. We use the real-time threat detection features in Microsoft Defender Threat Intelligence. If it wasn't for that real-time threat detection on the vulnerability, I think we would not have survived the attack. The integration capabilities of Microsoft Defender Threat Intelligence with other Microsoft security tools have benefited our organization's threat management process by initially being quite a challenge, especially coming from other security tools such as Fortinet and Check Point. However, once you've gotten used to it, it's quite easy and user-friendly. The dashboard, especially the threat analysis dashboard, is quite detailed in terms of providing a view of which areas in our environment need attention, making it quite useful.
report
Use our free recommendation engine to learn which Advanced Threat Protection (ATP) solutions are best for your needs.
900,644 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
12%
Computer Software Company
9%
Manufacturing Company
8%
Comms Service Provider
6%
Financial Services Firm
20%
Manufacturing Company
9%
Computer Software Company
8%
Marketing Services Firm
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise13
Large Enterprise19
By reviewers
Company SizeCount
Small Business17
Midsize Enterprise2
Large Enterprise15
 

Questions from the Community

Which is the better security solution - Cisco Umbrella or Microsoft Cloud App Security?
Cisco Umbrella is an integral component of the Cisco SASE architecture. It integrates security in a single, cloud-native solution, unifying multiple features like DNS-layer security, threat intelli...
What is your experience regarding pricing and costs for Microsoft Cloud App Security?
At the time of implementation, when the size of our organization was small, it was a more affordable product. Since all our productivity applications were on O365, Microsoft Defender for Cloud Apps...
What needs improvement with Microsoft Cloud App Security?
The fidelity of the signal in Microsoft Defender for Cloud Apps has been a challenge in some areas. There have been instances where the alerts generated have been false positives. A lot of work has...
What needs improvement with Microsoft Defender Threat Intelligence?
From the telemetry data standpoint, I would prefer Defender data to be more open in future updates.
What is your primary use case for Microsoft Defender Threat Intelligence?
We have tried Microsoft Defender Threat Intelligence. I have expertise with Microsoft Defender products. I am not familiar with Microsoft Defender for IoT because we did not use that in our environ...
What advice do you have for others considering Microsoft Defender Threat Intelligence?
I will recommend Microsoft Defender Threat Intelligence because it is a complete automation solution for threat production detection and an end-to-end solution for client security. Unfortunately, s...
 

Also Known As

MS Cloud App Security, Microsoft Cloud App Security
No data available
 

Overview

 

Sample Customers

Customers for Microsoft Defender for Cloud Apps include Accenture, St. Luke’s University Health Network, Ansell, and Nakilat.
Information Not Available
Find out what your peers are saying about Palo Alto Networks, Microsoft, Proofpoint and others in Advanced Threat Protection (ATP). Updated: June 2026.
900,644 professionals have used our research since 2012.