We purchased the software so that we could have better software to protect our users against phishing attempts.
Reduces manual review time, offers great pricing, and is easy to set up
Pros and Cons
- "For what was being offered with IRONSCALES, I feel like we got an incredible deal."
- "The only thing that I could say is that some of the reporting features could be better."
What is our primary use case?
How has it helped my organization?
We were looking to minimize the amount of time that it took, one, for our users to report incidents and then, two, to do the research and block those different domains and email addresses that were sent to us.
What is most valuable?
We have three companies. The fact that we can put all companies under one umbrella and take care of all three companies in one space is probably the best feature that they have.
We haven't used the employee awareness training as of yet, although we do plan on using it, however, the effectiveness of the email security itself has been tremendous. It's cut down on our time and our employees' time. The ability to have zero-day effectiveness against phishing attempts has been critical to our business.
We do use IRONSCALES' automated detection and response capabilities. It's 99% effective. Not only does IRONSCALES do a great job of detection within the email prior to it actually being received in our users' mailbox, but we also have the whole IRONSCALES community across the world mitigating other phishing attempts, a lot of times we don't even see or it's classified prior to even reaching our users' mailboxes.
The automated detection and response capabilities decrease the time we spend manually reviewing email events by probably a hundredfold. Just by the simple fact that if other community members in IRONSCALES have already seen the email and have already classified it as a phishing attempt or a spam attempt, I then don't have to go in as it's already automated and it's already been resolved by the community. The fact that IRONSCALES software goes and classifies it before I even have to get in has been paramount to the amount of time that we've saved using IRONSCALES.
I use IRONSCALES' mobile app. It does notify you when a new incident is created. It also notifies us when it's been remediated either by the community or by them. It also lets us know if there is a new incident that's been created that it doesn't know how to classify.
The capabilities the mobile app provides us with for alerts that need to be dealt with right away are great. The fact that I can just get onto IRONSCALES right from my mobile device if I'm not home, or if I happen to be in a meeting where I can't get away from the screen that I'm currently in and I can still do it, I can still take care of the issue from my phone itself. Overall, the app works as if I was sitting in front of a computer. I see truly no differentiation between the two, other than the size of the screen that I'm looking at.
What needs improvement?
I really don't see anything to be improved upon just yet. We haven't gotten into the training, although we do plan on using it. As far as email security, as far as community support, I haven't really found anywhere that I feel as though I could comment on making a change for the better.
The only thing that I could say is that some of the reporting features could be better. If I could have just a separate section for specific reports or have the ability to maybe create reports and put them down that left-hand navigation to be able to access them a little bit easier would be great.
Buyer's Guide
IRONSCALES
June 2025

Learn what your peers think about IRONSCALES. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
856,873 professionals have used our research since 2012.
For how long have I used the solution?
We've been on IRONSCALES for four months now.
What do I think about the stability of the solution?
We haven't seen this solution go down once, and it's definitely made our lives easier.
What do I think about the scalability of the solution?
IRONSCALES is completely scalable with what we have. The simulation and the training that they offer are great. While I've seen the demo of it, I haven't used it personally, the ability for us to provide training to our users, as well as upload our own individual videos, if we create them, is useful. I know that recently they upgraded to some other partners to be able to provide training, so the scalability of it looks pretty fantastic.
As our business grows, we will increase usage. With new users and new people being onboarded, we're going to be using it more and more. Towards the end of July, we're going to start our training and test simulations to roll out to our users so that we can make sure that they understand what phishing is and how to catch it when it does come in.
How are customer service and support?
I've only used technical support once and they were able to fix the issue within ten minutes.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Previously, we were using Microsoft Exchange Server Email Defender.
On average, our users were getting at least 15 to 20 phishing attempts per day. When you equate that to the time it took for them to send over the phishing alert and then for either myself or my colleague to do the research, trace the message, do the background on the IP address of the sender, and then either add or allow the email, it was just too time-consuming for us to do on a daily basis.
How was the initial setup?
The deployment was done in three integration points - one for each business, and it was three lines of code. It was extremely simple.
We support a total of 326 mailboxes across three companies that are 90% remote. Everything goes through Office 365, and IRONSCALES sits outside of our Office 365. Everything gets remediated either at the point of entry to our Office 365 instance. Or, if something does get through and it is a phish, it's then remediated and all the mailboxes are removed until such time that we determine it either to be safe or removed completely if we determine it to be phishing or spam.
What about the implementation team?
The setup was handled by myself, my colleague, and, I believe, somebody from IRONSCALES.
What was our ROI?
We have easily seen a return on investment. According to one of our reports, in the past 30 days, we've saved over two and a half hours of time. If a company can just equate that to what my time costs, what our users' time costs, and the amount saved, there is just incredible ROI.
What's my experience with pricing, setup cost, and licensing?
The pricing is right down to what we wanted to spend. Obviously, time is money. The amount of time that we were spending per day was costing us effectiveness, was costing our users' time, and was costing us money due to the time that it took out of our day. For what was being offered with IRONSCALES, I feel like we got an incredible deal.
Which other solutions did I evaluate?
Before choosing this product, we did evaluate other options. Unfortunately, I can't remember some of the names as I was already on board with IRONSCALES when we did the demo. I will say that for some of the other options that we had to choose from, the cost was a big issue for us. Some of them were more expensive than what we needed as a smaller business. I could see some of their benefits if we were tenfold, however, it wasn't cost-effective for us to go with some of the other ones. It was too much for what we needed.
Also, one of the downsides of most of the other ones that we found was that they would still allow the email to reach the user's mailbox and sit there until we actually remediated the issue.
There was only one other company we evaluated before IRONSCALES that actually provided a mobile solution for us so that if we needed to be on our phone and remediate some of these phishing attempts, we would only be able to do it either through IRONSCALES or the other company.
What other advice do I have?
I'd rate the solution ten out of ten. There isn't one thing I don't like.
If a company is looking for something that is extremely robust, that has the ability to catch zero-day incidents, and they're not looking to spend an arm and a leg, there's no other choice. It's got to be this product.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.

Technology CyberSecurity at Oryx industries
Applies AI automation to clearly identify and stop a lot of phishing emails
Pros and Cons
- "The solution captures a bit more of the unknown, quantifies it, and applies intelligence to it to pick out and stop a lot of phishing emails that come through."
- "IRONSCALES should bundle more features together instead of separating them and charging additional licensing fees."
What is most valuable?
The solution captures a bit more of the unknown, quantifies it, and applies intelligence to it to pick out and stop a lot of phishing emails that come through. The solution improved our response to phishing attempts. IRONSCALES has a virtual assistant and some AI intelligence that's applied to it. That was the main differentiator between IRONSCALES and Microsoft.
The solution's AI automation clearly identifies phishing emails and gives you an overall indication of why it found the mail to be malicious. It does the whole analysis for you to see why the email was deemed a phishing email. The solution's response time is better than that of our previous tool. The solution's user interface is pretty straightforward and user-friendly.
What needs improvement?
IRONSCALES should bundle more features together instead of separating them and charging additional licensing fees. The solution’s scalability could be improved.
For how long have I used the solution?
I have been using IRONSCALES for one year.
What do I think about the scalability of the solution?
I rate the solution a seven out of ten for scalability.
Which solution did I use previously and why did I switch?
We did a side-by-side comparison of Microsoft and IRONSCALES. Microsoft generally has a lot of features, but for me, Microsoft is behind in terms of the more advanced and smarter solutions. I wouldn't recommend using Microsoft as a main filter for email protection. IRONSCALES performed better in terms of what it was catching than Microsoft.
How was the initial setup?
The solution’s initial setup was straightforward.
What's my experience with pricing, setup cost, and licensing?
IRONSCALES is an expensive solution. The solution has certain add-on features, and its pricing depends on how you scale it. You have to pay additional licensing fees for some specific features.
What other advice do I have?
IRONSCALES has a pretty smart technology, which is different from the traditional gateway kind of technology.
Overall, I rate the solution an eight out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
IRONSCALES
June 2025

Learn what your peers think about IRONSCALES. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
856,873 professionals have used our research since 2012.
Endpoint Cyber Security Analyst at a tech company with 51-200 employees
The automated detection and response feature handles most of the job
Pros and Cons
- "The biggest benefit is that we get fewer phishing and spam emails, so using IRONSCALES has made our environment much safer."
- "There's room for improvement in the campaign management. IRONSCALES has many built-in templates that I use, but you can also build templates from scratch. However, the interface for creating custom templates needs to be updated."
What is our primary use case?
Phishing emails and spam are challenges companies of all sizes face. IRONSCALES acts as a second layer on top of the Microsoft mail relay we use. It scans every email coming into our organization and automatically checks the validity. We also check manually in some cases.
While we mainly use it for the mail relay, IRONSCALES can also act as a phishing campaign simulator. We can send simulated phishing emails to our colleagues to test their readiness.
Our entire organization uses IRONSCALES across many locations worldwide in South America, Asia, Europe, and North America. All sites use the system to protect the mailboxes and just act as a mail relay. We have about 8,000 users.
How has it helped my organization?
The biggest benefit is that we get fewer phishing and spam emails, so using IRONSCALES has made our environment much safer. While I wasn't here when they deployed the system, I believe they saw benefits right away.
What is most valuable?
The feature I use the most is the main relay. IRONSCALES was designed around that, but phishing simulation management is also a handy tool that I don't see often. Combining these features enables a user to be more comfortable with the simulations.
For example, one of IRONSCALES' features is an Outlook extension that lets you report phishing emails and other stuff that looks malicious. In our training, we encourage our colleagues to click this button to report as many emails as possible. Reporting suspicious emails should become part of our employees' everyday routine. The training campaign usually helps us catch our colleagues outside their comfort zone to see if they're paying attention to all these suspicious emails they receive.
AI and machine learning are essential components of the product. It automatically can identify phishing emails and classify them according to several factors. I'm not sure how it works, but there's a ranking system that ports onto every sender and email we receive. This artificial intelligence can conduct a thorough search that's sometimes better than humans.
The automated detection and response feature handles most of the job. I only need to classify a few emails manually each day. Artificial intelligence does everything else automatically for me. Without this technology, we would have to sort 1,000 emails each day manually. IRONSCALES cuts that down to maybe 50.
The IRONSCALES mobile app is convenient to use outside working hours. It's not my primary tool, but it's nice not to need to open your laptop whenever you would like to classify something. You can use the app to check up on the system.
What needs improvement?
There's room for improvement in the campaign management. IRONSCALES has many built-in templates that I use, but I can also build templates from scratch. However, the interface for creating custom templates needs to be updated.
I've already contacted IRONSCALES with some features I'd like to see, and they've promised to implement them. For example, let's say I send campaigns using customized tags assigned to each user. If I would like to send a campaign to my colleagues in China, I would send the campaign using a tag that says China. In many cases, new users don't have tags.
I asked IRONSCALES to add the ability to send campaigns to colleagues that don't have any tags. They promised this feature would be available during the next update.
For how long have I used the solution?
I've been using IRONSCALES since I started working here at my current company about a year ago.
What do I think about the stability of the solution?
IRONSCALES is stable. I can't think of any outages.
What do I think about the scalability of the solution?
We can grow as much as we want. We are growing right now and adding new sites to our company.
How are customer service and support?
I rate IRONSCALES support 10 out of 10. They provide support in less than 24 hours. I have never had a problem with them, and they always solve my issues.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
The company previously used Microsoft ATP, which required a lot of manual work. I was told that they used to spend a lot of time manually sorting the emails by phishing, spam, etc. The company switched to IRONSCALES because they wanted something to help automatically sort stuff and get faster results.
How was the initial setup?
Though I wasn't here when IRONSCALES was deployed, I saw the system requirements and a basic guide to implementing the system. It was straightforward.
After deployment, it doesn't require much maintenance. It does everything automatically as well. IRONSCALES supports older versions of Exchange and local Exchange servers that require manual updates of the add-ons they use to protect the mailboxes, but we don't use those services.
What other advice do I have?
I rate IRONSCALES nine out of ten. Some improvements to the campaign management might bring it up to ten. It's a great system. I would recommend it if you only need a mail relay. On top of that, there are additional advantages of using the system, like the campaign manager that complements the mail relay.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
Systems Engineer at a tech services company with 10,001+ employees
Has an easy to setup phase and can be managed conveniently by the users
Pros and Cons
- "The most valuable features of the solution are that it is easy to set it up, install, and manage the product."
- "The tool supports 15 to 16 languages, but the content it uses in the training in Spanish has certain limitations."
What is our primary use case?
I use the solution in my company to stop phishing and spam efficiently and automatically.
What is most valuable?
The most valuable features of the solution are that it is easy to set it up, install, and manage the product.
What needs improvement?
I think maybe on the side of the awareness training, the tool can improve a little more information and have some other languages since even though English is good, Spanish is not so good. The tool can improve the content in Spanish and other languages. The tool supports 15 to 16 languages, but the content it uses in the training in Spanish has certain limitations.
For how long have I used the solution?
I have been using IRONSCALES for a year. My company is an end user of the tool.
What do I think about the stability of the solution?
It is a very stable solution as it is software that runs in the cloud. I didn't have any outages with the tool.
What do I think about the scalability of the solution?
It is a very scalable solution. I know the tool scales up very well. Some of our customers have thousands of use of mailboxes. In my case, only one hundred users use the tool. It requires very little installation, but I know thousands of customers.
How are customer service and support?
The technical support offered is very good. The tool's support team attends very quickly to the support tickets raised. The technical support is very good at resolving issues.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I have used a security gateway from Forcepoint, which was a lot more complicated to maintain and set up. Forcepoint decided to discontinue its solution for email gateway, and then it decided to introduce another solution in the market that includes AI.
How was the initial setup?
The product is easy to set up as it is an API-based solution. With IRONSCALES, you don't have to do anything on the platform. You just need to do the integration and the connection with Office 365 tenants, and that is it.
I rate the product's setup phase as a ten out of ten.
The solution can be deployed by one person from IRONSCALES, who will create the tenant for me. Then, I do the rest of the setup process, which includes three or more steps, but it can be done in minutes.
The solution can be deployed in 15 to 30 minutes.
What's my experience with pricing, setup cost, and licensing?
The product is available as a middle-priced tool. I think it is not the cheapest solution. There are other solutions apart from IRONSCALES that are more expensive, while some are a little bit more cheap, but they are not available with the same capabilities.
What other advice do I have?
The automated response capabilities are very accurate for detecting suspicious activities and suspicious languages used by the attackers.
The only people needed when using the tool are to take care of the console and an analyst. In some cases, some incidents require an analyst to complete the analysis of the email. I don't create incidents that can be automatically resolved by AI. I create incidents that need a review from an analyst. The only people who need to be aware of the incidents and where such details should not be classified is when it comes to analysts. I don't need to do any maintenance process for the tool every day. Everything is available as a service, so I don't need to do anything to maintain the platform apart from dealing with the non-classified incidents.
The tool uses a lot of AI technologies to detect the accuracy of the email, especially to filter out phishing emails. It not only detects phishing emails but also provides a preview of who the attackers are before we receive the real phishing email. It is not just to detect phishing emails but also to detect the intent of the attacker in creating a phishing email.
I rate the tool a nine and a half out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: Sep 24, 2024
Flag as inappropriateDigital Risk Intelligence Partner at a comms service provider with 1-10 employees
Easy to set up with great AI and very good threat-sharing capabilities
Pros and Cons
- "The stability is good."
- "The integration with Google Suite needs to be better. it's something they can work on."
What is our primary use case?
We help customers use this to help them to secure against business email compromises, phishing, and impersonation.
What is most valuable?
They're outstanding as a solution. They have a threat-sharing capability so that you get information from all the customers regarding any phishing attack. That's a great feature for us due to the fact that we get information very fast if someone else in the world has seen that email.
The artificial intelligence is excellent. They are able to use it to recognize phishing emails due to the language used.
The initial setup is very easy.
The solution can scale.
The stability is good.
We've been satisfied with technical support.
What needs improvement?
The integration with Google Suite needs to be better. it's something they can work on.
The pricing is a bit high.
In the future, I'd like to see digital exposure of the users, such as credential exposure, or this kind of feature.
For how long have I used the solution?
We've been working with the solution over the past year.
What do I think about the stability of the solution?
The solution has been very stable. It's reliable. We haven't found bugs or glitches and it doesn't crash or freeze.
What do I think about the scalability of the solution?
We don't have any issues with scaling - even when dealing with many different customers.
Our clients range in size. We help companies with anywhere from 50 users to thousands of users.
How are customer service and technical support?
We have been satisfied with the solution's technical support. They have been helpful and responsive.
Which solution did I use previously and why did I switch?
We have used Darktrace in the past. The reason we are looking into Darktrace is to have another option. However, for us, Darktrace is not so good as IRONSCALES. IRONSCALES is easier to use, easier to implement, and more accurate when it comes to false positives.
We've also worked with Proofpoint and some Microsoft-owned options, however, we haven't worked with anything else.
How was the initial setup?
The initial setup is amazing. it's not overly complex or difficult at all.
It was fast, easy, and straightforward to implement and deploy. On average, with the customers, it takes us around 10 minutes to one hour to set everything up, depending on the size of the customer.
What about the implementation team?
We can assist our clients with the initial setup.
What's my experience with pricing, setup cost, and licensing?
We have a yearly licensing contract. The pricing is a bit expensive, and we'd, of course, like it to be lower, however, we really like the product.
What other advice do I have?
We are a customer as well as an integrator. In some cases we sell the solution, in some cases, we provide the customer with the service. We are a security service provider.
We are working with the latest version. IRONSCALES is a universal service cloud for service. So you always have the latest one.
I would recommend the solution to other users and companies. I couldn't believe that it could filter out 35% of the email. We've very satisfied.
I'd rate the solution at a nine out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: System provider, Partner

Buyer's Guide
Download our free IRONSCALES Report and get advice and tips from experienced pros
sharing their opinions.
Updated: June 2025
Popular Comparisons
Microsoft Defender for Office 365
Darktrace
Proofpoint Email Protection
Cloudflare One
Microsoft Exchange Online Protection (EOP)
Cisco Secure Email
Mimecast Email Security
Fortinet FortiMail
Check Point Harmony Email & Collaboration
Barracuda Email Security Gateway
Avanan
Trend Micro Email Security
Sophos Email
Perception Point Advanced Email Security
TitanHQ SpamTitan
Buyer's Guide
Download our free IRONSCALES Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links