No more typing reviews! Try our Samantha, our new voice AI agent.

Microsoft Entra ID vs One Identity Defender comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Aug 11, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Microsoft Entra ID
Ranking in Authentication Systems
1st
Average Rating
8.6
Reviews Sentiment
7.0
Number of Reviews
276
Ranking in other categories
Single Sign-On (SSO) (1st), Identity Management (IM) (2nd), Identity and Access Management as a Service (IDaaS) (IAMaaS) (1st), Access Management (1st), Microsoft Security Suite (2nd)
One Identity Defender
Ranking in Authentication Systems
14th
Average Rating
8.4
Reviews Sentiment
7.6
Number of Reviews
6
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of May 2026, in the Authentication Systems category, the mindshare of Microsoft Entra ID is 6.5%, down from 15.9% compared to the previous year. The mindshare of One Identity Defender is 1.4%, up from 0.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Authentication Systems Mindshare Distribution
ProductMindshare (%)
Microsoft Entra ID6.5%
One Identity Defender1.4%
Other92.1%
Authentication Systems
 

Featured Reviews

Stafin Jacob - PeerSpot reviewer
Microsoft 365 Security & Compliance Practice Lead at Invoke
Identity has become our central gatekeeper and has provided secure single sign-on for all users
Microsoft Entra ID can improve by focusing more on new passwordless methods and becoming a primary adopter. One feature we would like to see is the ability to have security questions for password resets. I know the current capability is phasing out, so we do not have an alternative method yet. Customers who already use security questions require a smoother transition for that capability to be available. My experience with the deployment has had some challenges, particularly around the Microsoft MFA campaigns. The hardest part is moving users from a different MFA provider to the Microsoft MFA provider, as it ultimately depends on user activity. In large enterprises with numerous users across various geographies, this transition takes time. If there are ways to exert more control around that process, it would improve the situation.
Mahesh Malve - PeerSpot reviewer
Senior Business Development Executive at DigitalTrack Solutions Ind Pvt Ltd
Advanced analytics have strengthened privileged access security and reduced incident response time
While One Identity Defender is a strong solution overall, there are a few areas where I feel it could be improved. One area is the user interface and dashboard customization. Although it is functional, making it more modern and allowing deeper customization would improve the user experience, especially for quick monitoring. Another improvement could be in reporting flexibility. While it provides good reports, having more custom report building options and easier export features would be helpful for different compliance and manageability needs. From an integration perspective, while One Identity Defender works well with core systems, having more out-of-the-box integrations with modern cloud services and SaaS platforms would reduce the need for custom configuration. In terms of support, the overall support is good, but faster response times for critical issues and more detailed troubleshooting documentation would help teams resolve problems more efficiently.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable features of this solution are definitely the authorization and authentication, and the rule-based user validation."
"Over the years, the performance of this particular technology has greatly improved, customers see much more robust performance from that technology and it gives them an easy way to set up their environments."
"I would assess the stability and reliability of Microsoft Entra ID as very satisfactory, as I am very happy with that. It covers our expectations and meets our requirements."
"I like how Entra allows you to upload a CSV file with user details for bulk user creation. This is useful for automation. Entra has made it easy to manage identity and access by integrating with all Microsoft services. Everything is managed in a single place, eliminating the need for another application."
"The product is easy to install and quick to deploy."
"The ability to offer employees access to any platform, including private PCs and tablets, has been a game-changer."
"It has been very instrumental towards a lot of services we run, especially on the single sign-on side. For example, we have 160 countries that all run their own IT but we still are able to provide users with a single sign-on experience towards global applications. So, they have a certain set of accounts that they get from their local IT department, then they use exactly the same account and credentials to sign into global services. For the user, it has been quite instrumental in that space. It is about efficiency, but also about users not having to remember multiple accounts and passwords since it is all single sign-on. Therefore, the single sign-on experience for us has been the most instrumental for the end user experience."
"The product is easy to use."
"If you decide to activate this solution, your infrastructure will be centered around flexibility."
"One Identity Defender has good network protection."
"We find that the product scales very well."
"One Identity Defender has good network protection."
"One Identity Defender has positively impacted our organization by improving overall security through the addition of MFA, which reduces the risk of unauthorized access and makes user authentication more controlled and reliable."
"With One Identity Defender, we have achieved around 40 to 50% time saving in maintaining privilege access tasks."
"We have definitely seen a positive ROI from using One Identity Defender, as our security team now spends about twenty to thirty percent less time on manual log analytics and investigations because the system automatically highlights high-risk activities, and we did not need to increase team size despite growing infrastructure as the tool helps us handle more security events with the same team."
"It's very fast, and it's easy to use because it's integrated with Active Directory."
 

Cons

"The conditional access rules are a little limiting. There's greater scope for the variety of rules and conditions you could put in that rules around a more factual authentication for other users. If you have an Azure AD setup, you can then connect to other people's Azure AD, but you don't have a huge amount of control in terms of what you can do. Greater control over guest users and guest access would be better. It's pretty good as it is but that could be improved."
"Its area of improvement is more about the synchronization of accounts and the intervals for that. Sometimes, there're customers with other network challenges, and it takes a while for synchronization to happen to the cloud. There is some component of their on-prem that is delaying things getting to the cloud. The turnaround time for these requests is very time-sensitive. I don't mean this as derogatory for this service, but in my experience, that happens a lot."
"Azure Active Directory could improve the two-factor authentication."
"The price has room for improvement."
"I would rate my customer service and technical support as about a five right now, as we just got in contact with our Microsoft rep, so it is improving."
"Active Directory could always be more secure. Right now, we've got two-factor authentications. All services based on Active Directory have a username and password. If somebody hacked our username, they could easily get all the data from our side. So I want two-factor authentication and a stronger password policy from Active Directory. The domain controllers should be more secure as well."
"Azure Active Directory could be made easier to use."
"Microsoft Authenticator is as easy as Google Authenticator, but it is not open to all types of applications. Google Authenticator is integrated with other third-party platforms and applications, whereas Microsoft Authenticator is not. It should have more integration with third-party platforms and applications."
"The only reason it is not a ten is because response time can sometimes be slower for complex or escalated cases."
"One Identity Defender can be improved by simplifying the user interface and making navigation more intuitive, especially for new administrators who may find the initial setup and policy configuration somewhat complex."
"The login capabilities could be better."
"One Identity Defender is a strong product, but there are a few areas where it can be improved."
"We have some clients that are wanting to protect their Apache web servers with One Identity Defender but all the research I have done says cannot be done. It can only be oriented to an IIS server. One Identity Defender should have more integration with more types of web servers."
"The login capabilities could be better."
"Maybe it could provide support for more web applications. It seems more focused on IIS web applications."
"We have some clients that are wanting to protect their Apache web servers with One Identity Defender but all the research I have done says cannot be done."
 

Pricing and Cost Advice

"Microsoft is so expensive. You know it is expensive when a Fortune 100 company like ours is complaining about the cost. That has been a big thing for me. When I really want to use an Azure service, it is very hard for me to justify the cost, especially with Microsoft support."
"Entra's pricing is somewhat higher compared to AWS."
"The licensing model makes it difficult to understand the real cost of the solution, especially because it changes all the time."
"Licensing costs for Microsoft Entra ID remain a concern, especially with the price increases in 2023."
"It is in line. Because we are so early, we have not had to come back on a cycle where we are having to negotiate again."
"Previously, only building and global administrators could purchase subscriptions or licenses. Mid-last year, Microsoft made it so users can purchase the license online. Microsoft business subscription is for 200 to 300 users. If you have more than 300 users, you can't purchase the business plan. You have to purchase the enterprise plan. The enterprise plan is for 301 users and above. Pay as you go is also available. If you pay as you go in Azure, you will be billed for whatever you use."
"Active Directory is bundled with a package of Microsoft services, so it doesn't cost much. I don't know about the individual license of Active Directory."
"The price is fine. It's a good value for the money compared with other solutions."
Information not available
report
Use our free recommendation engine to learn which Authentication Systems solutions are best for your needs.
893,438 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
12%
Manufacturing Company
8%
Government
8%
Computer Software Company
8%
Construction Company
17%
Comms Service Provider
13%
Non Profit
9%
Outsourcing Company
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business90
Midsize Enterprise41
Large Enterprise161
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise1
 

Questions from the Community

How does Duo Security compare with Microsoft Authenticator?
We switched to Duo Security for identity verification. We’d been using a competitor but got the chance to evaluate Duo for 30 days, and we could not be happier. Duo Security is easy to configure a...
What is your experience regarding pricing and costs for Azure Active Directory?
My experience with pricing, setup cost, and licensing is that going through and being able to use these things is always part of delivering an M365 bundle, so I don't think the experience is great ...
What needs improvement with Azure Active Directory?
Microsoft Entra ID can be improved by open-sourcing it. You already have Windows Subsystem for Linux, which is open-source Linux in Microsoft. One major shift for Microsoft would be using the commo...
What needs improvement with One Identity Defender?
One Identity Defender is a strong product, but there are a few areas where it can be improved. First, the user interface and reporting dashboards could be made more intuitive and customizable for f...
What is your primary use case for One Identity Defender?
One Identity Defender strengthens identity and access security through MFA, helping us ensure that only authorized users can access critical systems, especially for privileged accounts, with a focu...
What advice do you have for others considering One Identity Defender?
My advice for others looking into using One Identity Defender would be first to clearly define your use case, especially whether you need MFA mainly for privileged access, remote users, or both, as...
 

Also Known As

Azure AD, Azure Active Directory, Azure Active Directory, Microsoft Authenticator
No data available
 

Interactive Demo

Demo not available
 

Overview

 

Sample Customers

Microsoft Entre ID is trusted by companies of all sizes and industries including Walmart, Zscaler, Uniper, Amtrak, monday.com, and more.
Bakersfield Police Department, Village of Westmont, Illinois
Find out what your peers are saying about Microsoft Entra ID vs. One Identity Defender and other solutions. Updated: April 2026.
893,438 professionals have used our research since 2012.