No more typing reviews! Try our Samantha, our new voice AI agent.

Microsoft Defender for Cloud vs VulnCheck comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
5.3
Qualys TotalCloud effectively reduces costs and labor while enhancing asset visibility and risk management, boosting efficiency by up to 40%.
Sentiment score
7.1
Microsoft Defender for Cloud enhances ROI by improving security, productivity, and cost efficiency, despite perceived licensing costs.
Sentiment score
7.1
VulnCheck improved vulnerability management efficiency, reducing threat triage time and high-risk vulnerabilities, boosting security operations effectiveness.
We are able to scan all our assets with less human intervention and achieve overall effective outcomes.
Dns architect at a outsourcing company with 5,001-10,000 employees
It has saved about 90% of our time.
Senior Consultant at a consultancy with 10,001+ employees
TotalCloud has generated overall savings of 30 to 40 percent across various departments.
Security Manager at a consultancy with 10,001+ employees
Defender proactively indexes and analyzes documents, identifying potential threats even when inactive, enhancing preventative security.
Endpoint management at a government with 10,001+ employees
Identifying potential vulnerabilities has helped us avoid costly data losses.
Manager at CBTS
Compared to not having Microsoft Defender for Cloud in place, we definitely saw an advantage by not having downtime due to a security threat.
Principal Microsoft Consultant at MicroAge
VulnCheck detects exploitable vulnerabilities days to weeks earlier than alternatives, with customer detection averaging just under six and a half days sooner than most competing products.
Partner Account Manager at a wholesaler/distributor with 51-200 employees
VulnCheck reduces the time spent manually researching exploitability and threat context for individual CVEs, allowing the team to focus on the vulnerabilities that need immediate attention.
Soc Analyst at a manufacturing company with 10,001+ employees
Since using VulnCheck, we see a significant return on investment as we no longer spend excessive time on scanning, which was an issue with Rapid7.
SOC L2 Analyst at a tech services company with 51-200 employees
 

Customer Service

Sentiment score
6.7
Qualys TotalCloud support is knowledgeable but inconsistent, with some delays and varying service quality affecting customer satisfaction.
Sentiment score
6.3
Microsoft Defender for Cloud support is knowledgeable with effective documentation, but first-tier delays impact overall satisfaction.
Sentiment score
7.3
VulnCheck's support is praised for its responsiveness, knowledgeable team, and high ratings, despite needing faster resolutions on complex issues.
They are helpful, respond to my queries, and can answer any question.
Developer at a consultancy with 10,001+ employees
Qualys's tech support is highly responsive, providing multiple ways to interact with them.
Service Manager, Security Operations at CDA IT SOLUTIONS
Qualys' customer service provides quality answers, but the response time is long, even though it is within the SLA.
Works at a consultancy with 10,001+ employees
Since security is critical, we prefer a quicker response time.
Manager at CBTS
The support team was very responsive to queries.
Programme Manager- Cyber Fusion- Group CISO at a financial services firm with 10,001+ employees
They understand their product, but much like us, they struggle with the finer details, especially with new features.
Endpoint management at a government with 10,001+ employees
I will give the customer support a rating of 10 out of 10.
MANAGER IT at Axis Bank
Support for VulnCheck is very responsive, active, and helpful.
Manager at Cyvogenix
Overall, the customer support for VulnCheck has been good; the team has been responsive when we have had questions about the platform or needed help understanding specific intelligence.
Cybersecurity Executive at Gigabit Technologies Pvt Ltd
 

Scalability Issues

Sentiment score
7.4
Qualys TotalCloud efficiently scales across multi-cloud environments, supporting diverse needs for small and large teams with minimal issues.
Sentiment score
7.5
Microsoft Defender for Cloud is highly scalable, seamlessly integrates across platforms, and efficiently handles growth, with room for feature improvement.
Sentiment score
7.5
VulnCheck efficiently scales for growing security environments, managing increased workloads without performance loss and integrates seamlessly with workflows.
We started our organization about nine months back. We started with about 30 users, and we now have more than 100 users.
CIO at a venture capital & private equity firm with 11-50 employees
Our organization currently uses it to manage over 1200 web applications.
Analyst, Information Security at Infosys
It is absolutely scalable, and I would rate its scalability as nine out of ten.
retired at a consultancy with 10,001+ employees
As we have reduced our on-premises infrastructure, it is about how we can migrate workloads to the cloud to make it easier, and then having everything fully encompassed and secured within that area makes it much easier for us to scale as needed and grow.
Principal Microsoft Consultant at MicroAge
We are using infrastructure as a code, so we do not have any scalability issues with Microsoft Defender for Cloud implementation because our cloud automatically does it.
Senior Cloud Platform Engineer at Deutsche Börse
It has multiple licenses and features, covering infrastructures from a hundred to five hundred virtual machines, without any issues.
Snr. Infrastructure Architect (Data Centre) at LogicEra
VulnCheck scales exceptionally in our organization, regardless of size.
SOC L2 Analyst at a tech services company with 51-200 employees
VulnCheck scales well because it is cloud-based and API-driven, so it can support growing volumes of vulnerability and threat intelligence data without requiring significant additional infrastructure.
Soc Analyst at a manufacturing company with 10,001+ employees
VulnCheck has good scalability, as it has handled an increasing number of assets and vulnerabilities as our organization is growing.
Soc Analyst at a manufacturing company with 10,001+ employees
 

Stability Issues

Sentiment score
8.4
Qualys TotalCloud is praised for its stability, 99.9% uptime, reliable performance, and responsive support for resolving issues.
Sentiment score
7.6
Microsoft Defender for Cloud is stable and reliable, though minor update issues occur with older systems and internet latency.
Sentiment score
8.7
VulnCheck offers reliable, stable performance with consistent uptime, uninterrupted assessments, and positive user feedback for security analysis.
Overall, the support provided has been excellent.
Analyst, Information Security at Infosys
It has a lot of scanning mechanisms, which are agentless APIs, eBPF, and cloud agents, that are highly reliable.
Sr Security Engineer at a tech vendor with 5,001-10,000 employees
It is a stable solution, which is why we chose it.
CIO at a venture capital & private equity firm with 11-50 employees
Defender's stability has been flawless for us.
Engineer at a computer software company with 201-500 employees
I have not experienced any crashes or downtime.
Head Of IT at Cirrus Response
Microsoft Defender for Cloud is very stable.
Cloud architect at a tech vendor with 1,001-5,000 employees
We haven't experienced any downtime or reliability issues.
Soc Analyst at a manufacturing company with 10,001+ employees
The platform has been consistent when accessing vulnerability and exploit intelligence.
Cybersecurity Executive at Gigabit Technologies Pvt Ltd
 

Room For Improvement

Qualys TotalCloud needs UI/UX enhancements, better integrations, compliance reporting, Windows container security, AI threat prediction, and pricing clarity.
Microsoft Defender for Cloud needs improved customization, automation, UI performance, policy management, integration, AI functions, and reduced licensing complexities.
VulnCheck needs UI improvements, better tool integration, detailed insights, automation, notification customization, and more AI-driven features.
Ideally, the scanner should automatically detect and scan all subdomains, even if not explicitly defined, ensuring comprehensive vulnerability assessment.
Analyst, Information Security at Infosys
Ideally, updates should be more immediate, enabling quicker implementation of solutions.
Project Lead at Persistent Systems
Our goal is to integrate all these functions into Qualys, creating a single dashboard for comprehensive security monitoring and management.
Senior Information Security Engineer at a consultancy with 10,001+ employees
Microsoft, in general, could significantly improve its communication and support.
Endpoint management at a government with 10,001+ employees
It would be beneficial to streamline recommendations to avoid unnecessary alerts and to refine the severity of alerts based on specific environments or environmental attributes.
Works at Coca-Cola HBC
The artificial intelligence features could be expanded to allow the system to autonomously manage security issues without needing intervention from admins.
Cloud Consultant at i-Community AG
You will require other tools to act on the data that you find, which necessitates engineering time for API integration, data mapping, and tuning.
Partner Account Manager at a wholesaler/distributor with 51-200 employees
If VulnCheck works on the inventory of the software my organization uses, it would be really helpful.
Sr Network and Security Engineer at a outsourcing company with 201-500 employees
More customization in dashboards and reporting would be helpful for management-level insights.
Manager at Cyvogenix
 

Setup Cost

Qualys TotalCloud offers competitive pricing for large enterprises, providing flexible, cost-effective solutions with comprehensive features and benefits.
Microsoft Defender for Cloud offers flexible pricing but gets complex and costly, requiring careful evaluation, especially for advanced plans.
Enterprise users appreciate VulnCheck's transparent, flexible pricing model and find it reasonable, particularly for threat intelligence capabilities and scalability.
Qualys TotalCloud's pricing is currently acceptable, it is becoming increasingly expensive.
Senior Manager at a financial services firm with 10,001+ employees
Pricing is managed by our finance team; however, Qualys TotalCloud offers cost-effective licensing flexibility.
IT Manager at a consultancy with 10,001+ employees
Qualys TotalCloud is expensive, but it offers a premier solution with no headaches.
Vice President at Inspira Enterprise
Security has essentially no cost when compared to the cost of a breach.
Director, Cloud and Modern Workplace at Informanix Technology Group
Every time we consider expanding usage, we carefully evaluate the necessity due to cost concerns.
Programme Manager- Cyber Fusion- Group CISO at a financial services firm with 10,001+ employees
We appreciate the licensing approach based on employee count rather than a big enterprise license.
Manager, Microsoft Technology Alliance at Silverfort
Currently, I find the pricing of VulnCheck to be reasonable and not much expensive.
Sr Network and Security Engineer at a outsourcing company with 201-500 employees
The pricing is reasonable for the value VulnCheck provides, especially for threat intelligence.
Manager at Cyvogenix
 

Valuable Features

Qualys TotalCloud enhances cloud security with risk prioritization, automation, and visibility, boosting efficiency in vulnerability management and remediation.
Microsoft Defender for Cloud enhances security and compliance with AI-powered threat intelligence, automation, and multi-cloud integration for improved protection.
VulnCheck enhances security with real-time vulnerability insights, seamless integrations, and risk-based prioritization, improving efficiency and reducing response times.
This view of risk helps reduce the work we would have to do to combine multiple sources to prioritize risk.
Works at a consultancy with 10,001+ employees
It will help cybersecurity professionals monitor the cloud and find vulnerabilities.
Developer at a consultancy with 10,001+ employees
We are enjoying the new feature, FlexScan, which is valuable for Internet-facing VMs.
Senior Consultant at a consultancy with 10,001+ employees
The most valuable feature for me is the variety of APIs available.
Programme Manager- Cyber Fusion- Group CISO at a financial services firm with 10,001+ employees
This feature significantly aids in threat detection and enhances the user experience by streamlining security management.
Cloud Consultant at i-Community AG
The most valuable feature is the recommendations provided on how to improve security.
Cloud architect at a tech vendor with 1,001-5,000 employees
The main feature of VulnCheck is its ability to cut down all the noise and provide a scoring of how you are going to get attacked and breached.
Partner Account Manager at a wholesaler/distributor with 51-200 employees
VulnCheck helps us identify which vulnerabilities are being actively exploited or are listed as similar to known exploited vulnerabilities.
Manager at Cyvogenix
The detailed descriptions of all present vulnerabilities along with emerging threats, well-documented details, and frequent updates of threat intelligence contribute significantly to reducing the remediation workload by prioritizing the vulnerabilities that matter most.
SOC L2 Analyst at a tech services company with 51-200 employees
 

Categories and Ranking

Qualys TotalCloud
Sponsored
Ranking in Vulnerability Management
10th
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
46
Ranking in other categories
Container Security (11th), Cloud Workload Protection Platforms (CWPP) (9th), Cloud Security Posture Management (CSPM) (8th), SaaS Security Posture Management (SSPM) (2nd), Cloud-Native Application Protection Platforms (CNAPP) (7th)
Microsoft Defender for Cloud
Ranking in Vulnerability Management
9th
Average Rating
8.0
Reviews Sentiment
6.9
Number of Reviews
89
Ranking in other categories
Container Management (8th), Container Security (4th), Cloud Workload Protection Platforms (CWPP) (1st), Cloud Security Posture Management (CSPM) (4th), Cloud-Native Application Protection Platforms (CNAPP) (5th), Data Security Posture Management (DSPM) (7th), Microsoft Security Suite (6th), Compliance Management (4th), Cloud Detection and Response (CDR) (3rd)
VulnCheck
Ranking in Vulnerability Management
19th
Average Rating
9.0
Reviews Sentiment
6.7
Number of Reviews
10
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of October 2026, in the Vulnerability Management category, the mindshare of Qualys TotalCloud is 1.2%, up from 1.0% compared to the previous year. The mindshare of Microsoft Defender for Cloud is 2.5%, down from 4.8% compared to the previous year. The mindshare of VulnCheck is 0.4%, up from 0.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Vulnerability Management Mindshare Distribution
ProductMindshare (%)
Microsoft Defender for Cloud2.5%
Qualys TotalCloud1.2%
VulnCheck0.4%
Other95.9%
Vulnerability Management
 

Featured Reviews

reviewer2859021 - PeerSpot reviewer
Sr Security Engineer at a tech vendor with 5,001-10,000 employees
Risk-based triage has transformed container security and now prioritizes high-impact threats
The best features Qualys TotalCloud offers currently include managing cloud infrastructure and container security while facing major challenges such as alert fatigue. Traditional vulnerability scanners flag hundreds of CVEs on short-lived Kubernetes containers, some of which have no internet exposure or are gone before we can even triage them. I leverage Qualys TotalCloud to move beyond static CVSS. I use it to implement runtime exposure, correlation risk reprioritization, and shift-left integration. This notifies developers to fix a base image upstream rather than patching live ephemeral instances. In my work with cloud and container security, the biggest operational hurdle was alert fatigue. I use Qualys to shift left from static CVSS severity to context-aware risk prioritization. I correlated raw vulnerability data with real-time risk factors such as public network exposure, active runtime execution, or overly permissive IAM roles. This allows us to immediately drop the priority of isolated containers and escalate lower-severity CVEs that sit on an exposed, high-risk path. We can map these findings directly back to our CI/CD pipelines so developers can patch the root base images upstream. We have drastically cut down the signal-to-noise ratio, saved a lot of manual hours doing triage work, and ensured engineering effort goes directly towards high-impact risk reduction.
RW
Head Of IT at Cirrus Response
Cloud security has cut investigation time and now reveals threats faster but needs simpler oversight
When deploying AI applications, my key security concerns with Microsoft Defender for Cloud are data loss, leakage of data, and guardrails around the actual AI, and I am hoping that this is going to help me put those guardrails in place and identify data exfiltration. Microsoft Defender for Cloud has not helped me manage and secure multi-cloud environments, as we are 100 percent Microsoft and have not really got it in any other environment at all. I am not yet using the unified AI-powered security feature offered by Microsoft Defender for Cloud, but that is coming. I am not yet using the integrated XDR feature of Microsoft Defender for Cloud, but that is coming. I am not yet utilizing the GenAI threat protection features of Microsoft Defender for Cloud. That is also coming and a lot of that will come from learning it here. I have enabled the agentless scanning in my cloud environment with Microsoft Defender for Cloud. Assessing the impact on my workload protection without needing to install agents with Microsoft Defender for Cloud makes it a lot easier, but it also identifies a lot more, which puts more load on me sometimes. I would advise another organization considering Microsoft Defender for Cloud that it is the most logical route to follow if their whole ecosystem is Microsoft. It is easy to implement and it is very self-explanatory when doing it, making sense to just follow the steps as it is too simple, really. I would rate this review a 7.5 out of 10.
Vsadalaga Sadalga - PeerSpot reviewer
Soc Analyst at a manufacturing company with 10,001+ employees
Improved threat intelligence has enabled us to prioritize exploitable vulnerabilities efficiently
In my opinion, the best features VulnCheck offers are its vulnerability intelligence, exploitation tracking, and risk-based prioritization. I find the threat context especially useful because it helps us identify vulnerabilities that are more likely to be exploited and focus our remediation efforts accordingly. The exploitation tracking feature has helped my team because it helps us understand which vulnerabilities are being actively exploited or are more likely to be targeted. This gives us better context when prioritizing vulnerabilities and helps the team focus on urgent remediation instead of treating all vulnerabilities equally. Another useful feature is threat intelligence context around vulnerabilities. It helps us connect vulnerability information with real-world threats, which makes prioritization and communication with the vulnerability management team easier. Overall, it helps us focus on the vulnerabilities that present the most immediate risk. VulnCheck has impacted my organization positively by helping us improve how we prioritize vulnerabilities by giving us better threat and exploitation context. Instead of focusing only on severity scores, we can identify vulnerabilities that have a higher likelihood of being exploited. This helps us use our security resources more effectively and respond to higher risk vulnerabilities faster. VulnCheck has helped us improve vulnerability prioritization and reduce the time spent reviewing a large number of vulnerabilities. We are able to focus faster on vulnerabilities with active exploitation and higher threat relevance. I do not have a specific organization-wide metric to share, but the main improvements have been more efficient prioritization and better context of remediation decisions.
report
Use our free recommendation engine to learn which Vulnerability Management solutions are best for your needs.
915,341 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Comms Service Provider
16%
Outsourcing Company
12%
Manufacturing Company
11%
Financial Services Firm
11%
Financial Services Firm
11%
Computer Software Company
9%
Manufacturing Company
8%
Outsourcing Company
7%
Outsourcing Company
31%
Construction Company
11%
Financial Services Firm
8%
Computer Software Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business14
Midsize Enterprise6
Large Enterprise35
By reviewers
Company SizeCount
Small Business31
Midsize Enterprise12
Large Enterprise49
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise2
Large Enterprise8
 

Questions from the Community

What needs improvement with Qualys TotalCloud?
In terms of improvement, remediation still belongs to the cloud team, which is one of the issues we faced with Qualys...
What is your primary use case for Qualys TotalCloud?
My main use case for Qualys TotalCloud is regarding the cloud visibility that we were not having previously. Previous...
How is Prisma Cloud vs Azure Security Center for security?
Azure Security Center is very easy to use, integrates well, and gives very good visibility on what is happening acros...
What is your experience regarding pricing and costs for Microsoft Defender for Cloud?
My experience with pricing, setup costs, and licensing was that the license cost was the only consideration. Setup an...
What needs improvement with Microsoft Defender for Cloud?
To improve Microsoft Defender for Cloud, I think pricing-wise, the license price is a little bit higher from an inges...
What needs improvement with VulnCheck?
VulnCheck is a really good tool, but it could be improved with a more user-friendly dashboard and also with more deta...
What is your primary use case for VulnCheck?
My primary day-to-day use case for VulnCheck is for vulnerability management, where I mainly use it to review finding...
What advice do you have for others considering VulnCheck?
My advice would be to start with a clear vulnerability management goal and integrate VulnCheck with your existing sec...
 

Also Known As

Qualys TotalCloud with FlexScan
Microsoft Azure Security Center, Azure Security Center, Microsoft ASC, Azure Defender
No data available
 

Interactive Demo

Demo not available
Demo not available
 

Overview

 

Sample Customers

Information Not Available
Microsoft Defender for Cloud is trusted by companies such as ASOS, Vatenfall, SWC Technology Partners, and more.
Information Not Available
Find out what your peers are saying about Microsoft Defender for Cloud vs. VulnCheck and other solutions. Updated: September 2026.
915,341 professionals have used our research since 2012.