

Find out in this report how the two Microsoft Security Suite solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
We can quarantine and isolate a device within minutes.
Microsoft Defender XDR has saved me at least 50% of my time.
It helped stop multiple intrusion points where we would have had millions in lost revenue if the attackers got in.
Purview saved us from potential lawsuits and the loss of confidential information, preventing legal issues.
The one example that I provided was worth significant attention, as the FBI and other organizations became involved, so I am assuming it was really important.
You get stuck in low-level support for way longer than you should, instead of them escalating the issue up the chain.
It's critical to escalate SEV B issues immediately to a domestic engineer.
Once issues are escalated to the second or third layer, the support is much better.
Premium support provides excellent service, but it can be challenging for customers who cannot afford it.
Overall, I had a few issues, so I would rate the service a nine for Purview.
My concern is about the scale of events and alerts being generated, and the product is doing a very good job of only surfacing the important items for us.
It has a very good integration system that integrates with all Azure services, all threat intelligence data models, and integrates very well with other systems such as Palo Alto.
Microsoft Defender XDR shows tremendous scalability, much more so than on-premises solutions.
The capability of creating policies to facilitate detections and responses improved.
I believe Microsoft Purview Insider Risk Management scales well with the growing needs of the organization.
The service has remained consistently online, with any issues isolated to specific components, suggesting a well-designed and modular architecture.
The services within our ecosystem have been reliable, meeting their SLAs.
It provides high-fidelity signals.
We have experienced minimal downtime, with Microsoft resolving issues within five to ten minutes maximum.
I would assess the stability and reliability of Microsoft Purview Insider Risk Management as having improved.
The licensing process needs improvement and clarification.
Improvements are needed in automated response capabilities.
If you have a central location where you perform one isolation method, all other potentially affected systems that have been touched may also be isolated simultaneously.
Microsoft's pricing is very expensive.
I feel Microsoft Purview Insider Risk Management can be improved by being able to identify patterns and practices of users to determine whether or not they fit the normal use case of a developer, an architect, and other roles.
It could be improved in terms of producing reports to provide information to the C-suite or others.
There are certainly savings when using Microsoft Defender XDR, which can range from 30%, 40%, and even up to 50%.
I would rate the pricing as eight out of ten, indicating it is a reasonable cost for the product.
Microsoft purposefully obfuscates this through marketing ploys to hide costs.
With Microsoft threat intelligence information, it detects various types of threats, including insider attacks, malicious content, and data exfiltration.
This allows us to secure our systems in advance and proactively improve security, rather than waiting for incidents to occur.
Once we have it on the security dashboard, we can see a real-time storyline.
It has saved us money on lawsuits and the loss of important confidential information that could lead to legal issues.
The scoring mechanism is exceptional because it eliminates the need to reinvent criteria for identifying risks, misconfigurations, or vulnerabilities.
We were able to remediate the fact that we had a North Korean spy working for us.
| Product | Mindshare (%) |
|---|---|
| Microsoft Defender XDR | 5.5% |
| Microsoft Purview Insider Risk Management | 2.2% |
| Other | 92.3% |

| Company Size | Count |
|---|---|
| Small Business | 46 |
| Midsize Enterprise | 29 |
| Large Enterprise | 41 |
Microsoft Defender XDR is a comprehensive security solution designed to protect against threats in the Microsoft 365 environment.
It offers robust security measures, comprehensive threat detection capabilities, and an efficient incident response system. With seamless integration with other Microsoft products and a user-friendly interface, it simplifies security management tasks.
Users have found it effective in detecting and preventing various types of attacks, such as phishing attempts, malware infections, and data breaches.
Watch the Microsoft demo video here: Microsoft Defender XDR demo video.
Microsoft Purview Insider Risk Management helps organizations identify and manage potential internal threats by utilizing advanced analytics and insights to minimize risk.
With a focus on addressing internal threats, Microsoft Purview Insider Risk Management employs sophisticated analytics to proactively detect and manage risks. It offers context-rich insights to protect data, helping businesses maintain compliance and safeguard their information. By implementing mechanisms to predict potential risks, it aids in preventing data loss and ensures that sensitive information remains secure.
What are the most important features of Microsoft Purview Insider Risk Management?In industries like finance and healthcare, where data sensitivity is critical, adopting Microsoft Purview Insider Risk Management can be crucial. For example, financial institutions utilize this tool to detect and mitigate fraudulent activities, while healthcare providers leverage its capabilities to protect patient data, ensuring compliance with data protection regulations. Its implementation varies across industries but consistently focuses on securing valuable information and reducing risk exposure.
We monitor all Microsoft Security Suite reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.