Try our new research platform with insights from 80,000+ expert users
reviewer2596320 - PeerSpot reviewer
IT Administrator at a university with 10,001+ employees
Real User
Lists the criticality that is the most insecure for our environment
Pros and Cons
  • "The most valuable features are the security recommendations provided by Defender for Cloud."
  • "Defender for Cloud has improved our security posture."
  • "If they had an easier way to display all the vulnerabilities of the machines affected and remediation steps on one screen rather than having to dive deep into each of them, that would be a lot easier."

What is our primary use case?

We are using Defender for Cloud to check in on security and vulnerability management.

How has it helped my organization?

When we were switching from on-prem to the cloud, we did not have the vulnerability management tool to give us alerts on that. We were using Tenable Security Center on-prem. When we moved to the cloud, we needed a solution and chose Defender for Cloud. Now, when we do our vulnerability management meetings, we refer to Defender for Cloud recommendations. We can assign them to technicians or security personnel in case we need to change policies or make exceptions. It is set up to ensure only security personnel can dismiss a recommendation.

It lists the criticality that is the most insecure for our environment and the criticality score for it. This is helpful for us to know what we need to deal with first.

Defender for Cloud has improved our security posture. 

What is most valuable?

The most valuable features are the security recommendations provided by Defender for Cloud.

What needs improvement?

Tenable Security Center has a list of all of our vulnerabilities. I can sort it by vulnerability or by machine. Defender for Cloud does do that, but it is just not as clean and easy to get to. It sometimes gets too deep in the weeds, and I do not know how I got to that point. If they had an easier way to display all the vulnerabilities of the machines affected and remediation steps on one screen rather than having to dive deep into each of them, that would be a lot easier.

There can be an easier-to-read dashboard. It would be nice to be able to see the top ten vulnerabilities that we have specific to a system on the dashboard. We can view the security score currently, but a cleaner and simpler display would be good.

Buyer's Guide
Microsoft Defender for Cloud
May 2025
Learn what your peers think about Microsoft Defender for Cloud. Get advice and tips from experienced pros sharing their opinions. Updated: May 2025.
856,873 professionals have used our research since 2012.

For how long have I used the solution?

I have been using Defender for Cloud for three years.

What do I think about the stability of the solution?

It is pretty stable and feels solid.

How are customer service and support?

We have struggled with Microsoft customer service quite a bit. While experts are a ten, the overall experience is not always positive and we have had to make a complaint. When we are able to get to a call with their experts, it is great, but it can take time to get to that level. We have had to raise a ticket for the same thing about three times.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We were using Tenable Security Center on-prem. We switched because we were moving to a Microsoft-centric cloud solution.

How was the initial setup?

It was easy. The setup was handled by a technician who did not report any significant issues.

What about the implementation team?

We did not use any third party for deployment.

What was our ROI?

We have seen a return on investment, but I cannot quantify it.

Which other solutions did I evaluate?

We did not evaluate other solutions because we were only looking for a Microsoft-centric solution.

What other advice do I have?

I would rate Defender for Cloud an eight out of ten.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Flag as inappropriate
PeerSpot user
Josue Vidal - PeerSpot reviewer
Cloud solutions architect at Cloud Expert School
Real User
Top 20
Provides a prioritized list of remediations that helps us improve our team's capacity
Pros and Cons
  • "I would like to see more connectors and plugins with other platforms."
  • "The solution's coordinated detection and response across devices and identities is impressive because it is complete."
  • "I would like to see more connectors and plugins with other platforms."
  • "I would like to see more connectors and plugins with other platforms."

What is our primary use case?

I used Defender for Cloud in Azure Kubernetes Service and virtual machines to provide more security to these environments.

How has it helped my organization?

We are a financial company, so Defender for Cloud helps us create multiple layers to protect assets and ensure a more secure environment. The solution improves our efficiency. We've increased our security posture by around 30 percent. 

What is most valuable?

Defender for Cloud's most valuable features are the dashboard and alerts about issues inside virtual machines or containers. It covers a wide range of workloads. Defender provides a prioritized list of remediations that helps us improve our team's capacity. Integrating Defender for Cloud with Sentinel has increased our visibility. The solution's coordinated detection and response across devices and identities is impressive because it is complete.

What needs improvement?

I would like to see more connectors and plugins with other platforms.

For how long have I used the solution?

I have used Defender for Cloud for three years.

What do I think about the stability of the solution?

The stability of the solution is good. I don't have a problem with it.

What do I think about the scalability of the solution?

Its ability to scale is good.

How are customer service and support?

I rate Microsoft support eight out of 10. Customer service is good. I deducted two points because the documentation could be clearer. 

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I did not use a previous solution prior to using Defender for Cloud.

How was the initial setup?

The rollout was good. It was easy.

What about the implementation team?

I am a reseller. I am partnering with TD Synnex and TeleScenics.

What was our ROI?

The return on investment is high, it's about 20 percent.

Which other solutions did I evaluate?

I did not consider any other solutions.

What other advice do I have?

I would rate Defender for Cloud an eight out of 10. 

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: CBM Partner
Flag as inappropriate
PeerSpot user
Buyer's Guide
Microsoft Defender for Cloud
May 2025
Learn what your peers think about Microsoft Defender for Cloud. Get advice and tips from experienced pros sharing their opinions. Updated: May 2025.
856,873 professionals have used our research since 2012.
reviewer1693929 - PeerSpot reviewer
Advisory Specialist Master at a tech vendor with 10,001+ employees
Real User
One tool provides a view across your entire hybrid environment
Pros and Cons
  • "My favorite part of Microsoft Defender for Cloud is the compliance features. Defender covers a wide range of workloads, on par with competing products on the market."
  • "Microsoft Graph needs improvement."
  • "Microsoft Graph needs improvement."

What is our primary use case?

We primarily use Microsoft Defender for Cloud for cloud security posture management.

How has it helped my organization?

Defender for Cloud improves our overall cloud security posture by identifying risks and vulnerabilities. It gave me a perspective on whether we comply with the industry's best practices and benchmarks we are pursuing.

What is most valuable?

My favorite part of Microsoft Defender for Cloud is the compliance features. Defender covers a wide range of workloads, on par with competing products on the market. I can get information from other cloud platforms and use Defender across AWS, Azure, GCP, containers, servers, etc. One tool provides a view across your entire hybrid environment.

What needs improvement?

Microsoft Graph needs improvement.

For how long have I used the solution?

I have been using Microsoft Defender for Cloud for around two years.

What do I think about the stability of the solution?

The stability of Microsoft Defender for Cloud is good since it sits in the Cloud, and we have not had any challenges regarding stability.

How are customer service and support?

I rate Microsoft support seven out of 10. The documentation about what is covered in the basic support versus premium is unclear. 

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

We use multiple products that perform similar functions in our environment, including Prisma and Wiz. We use Defender for Cloud as our native Azure tool in addition to other third-party tools.

How was the initial setup?

The initial setup is relatively simple and straightforward.

What about the implementation team?

No integrated reseller or custom team was used for the deployment.

What was our ROI?

We have seen a return on investment because a lot of these native tools provide better reporting, which our team can consume.

What's my experience with pricing, setup cost, and licensing?

Defender's basic version is free, which is good. Many of our teams are evaluating the paid version against third-party products.

Which other solutions did I evaluate?

We didn't evaluate other solutions before switching as we have multiple products performing similar functionalities.

What other advice do I have?

I rate Microsoft Defender for Cloud eight out of 10. Even though there are many third-party tools with more functionality, using native tools is beneficial, and we use them alongside third-party tools.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Audit Microsoft
Flag as inappropriate
PeerSpot user
Christian Belisle - PeerSpot reviewer
Core Infrastructure Cloud Operations Team Lead, Information Technology at Saputo
Real User
Top 20
Provides a prioritized list of remediations for security issues, reducing risk and improving security operations
Pros and Cons
  • "Defender for Cloud provides a prioritized list of remediations for security issues, reducing risk and improving security operations."
  • "Scalability is great, and I would rate it a ten out of ten."
  • "It's hard to reach someone who understands my problems. I haven't had many issues, so I haven't called them."
  • "It's hard to reach someone who understands my problems. I haven't had many issues, so I haven't called them."

What is our primary use case?

We use Defender for Cloud for workloads that involve large amounts of data.

How has it helped my organization?

It's cost-effective to create custom logs in Defender for Cloud. 

What is most valuable?

Defender for Cloud provides a prioritized list of remediations for security issues, reducing risk and improving security operations.

What needs improvement?

There is room for improvement in terms of cost-effectiveness when enabling every single log, including custom logs.

For how long have I used the solution?

I've been using Defender for Cloud for a year and a half.

What do I think about the stability of the solution?

I have no issues with the stability of Microsoft Defender for Cloud.

What do I think about the scalability of the solution?

Scalability is great, and I would rate it a ten out of ten.

How are customer service and support?

It's hard to reach someone who understands my problems. I haven't had many issues, so I haven't called them.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I used an unspecified different solution before adopting Microsoft Defender for Cloud.

How was the initial setup?

The solution is really easy to enable.

What about the implementation team?

I interacted with a Microsoft representative for implementation, and the process was straightforward.

What's my experience with pricing, setup cost, and licensing?

The setup costs are low because it's easy to enable. However, I'm not clear on other pricing details.

Which other solutions did I evaluate?

I didn't evaluate other solutions extensively before choosing this.

What other advice do I have?

I rate Defender for Cloud 10 out of 10.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Flag as inappropriate
PeerSpot user
reviewer2564271 - PeerSpot reviewer
Programme Manager- Cyber Fusion- Group CISO at a financial services firm with 10,001+ employees
Real User
Top 20
Valuable API variety and enhanced security but expanding legacy asset scope is recommended
Pros and Cons
  • "The most valuable feature for me is the variety of APIs available."
  • "The most valuable feature for me is the variety of APIs available."
  • "I recommend that they extend the scope for legacy infra assets."
  • "I recommend that they extend the scope for legacy infra assets."

What is our primary use case?

We are using the tool for checking for vulnerabilities over my website for my own personal purpose and within my corporate role. This is also a tool that we have deployed. In terms of usage, it's much more related to reporting and vulnerability management rather than setting up from an organizational perspective.

How has it helped my organization?

From an efficiency perspective, it has helped with reporting and the self-service availability of security postures.

What is most valuable?

The most valuable feature for me is the variety of APIs available. Additionally, the suggestions I get from Defender for security levels and recommendations on how to upgrade my security level are very appreciated.

What needs improvement?

I recommend that they extend the scope for legacy infra assets.

For how long have I used the solution?

I have been working with it for more than a year now.

What do I think about the stability of the solution?

I rate the stability an eight out of ten.

What do I think about the scalability of the solution?

There are no complaints about scalability, and I rate it an eight out of ten.

How are customer service and support?

I rate customer support a nine out of ten. The support team was very responsive to queries.

How would you rate customer service and support?

Positive

How was the initial setup?

Rating the setup, I would give it a six out of ten. The setup process took about two to three days due to waiting on support replies.

What about the implementation team?

I had a support team to help with some of the setup aspects, and they were very responsive.

What was our ROI?

It's difficult to say because the volume of vulnerabilities and threats has increased, making it tough to compare efficiency between usage before and after implementation.

What's my experience with pricing, setup cost, and licensing?

I don't have visibility into the specific costs, but it seems to be a significant concern for our organization. Every time we consider expanding usage, we carefully evaluate the necessity due to cost concerns.

Which other solutions did I evaluate?

I am familiar with Dataiku and Databricks, and we use SailPoint in conjunction.

What other advice do I have?

Users must first understand the list of assets they have and whether there is out-of-the-box connectivity with them.

I'd rate the solution seven out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Flag as inappropriate
PeerSpot user
IT Architect at a real estate/law firm with 10,001+ employees
Real User
Top 5
Provides multi-cloud capability, is plug-and-play, and improves our security posture
Pros and Cons
  • "Defender for Cloud is a plug-and-play solution that provides continuous posture management once enabled."
  • "The remediation process could be improved."

What is our primary use case?

We have deployed Microsoft Defender for Cloud to identify vulnerabilities across various log sources for our client.

We implemented Defender to improve the security posture of our client's landscape.

How has it helped my organization?

The single pane of glass that Microsoft offers is highly crucial for several reasons. First, aggregating multiple log sources into a single pane of glass is not achievable without Microsoft Defender for Cloud. Second, we also interact with other cloud environments.

We use Defender's free CSPM functionality for the Microsoft Cloud security benchmark. The benchmark recommendations show all the vulnerabilities that help us to create a remediation plan and to take action.

It is a necessity for us that the free CSPM functionality provides multi-cloud monitoring and posture management because most of our workloads are spread across multi-clouds.

The comprehensive range of workloads protected by Defender for Cloud is sufficient for our needs, as it encompasses all essential security pillars.

We have enabled Defender for Cloud's native support for GCP. A key requirement for us before selecting Defender for Cloud was that it supported other clouds.

Defender for Cloud has aided in reducing the number of vulnerabilities and expediting the resolution process, thanks to its helpful suggestions. Consequently, we have achieved remarkable time savings of approximately 30 to 40 percent each week in comprehending and addressing vulnerabilities.

By integrating Defender for Cloud with the firewall and Defender for Endpoints, we have gained comprehensive security insights through these Microsoft integrations. This unified approach provides a single pane of glass for viewing all security information, eliminating the need to navigate between multiple portals.

Defender for Cloud has improved our security posture.

The unified monitoring has saved us around 30 percent of our time.

Defender for Cloud has increased our security team's efficiency by 30 percent.

What is most valuable?

Defender for Cloud is a plug-and-play solution that provides continuous posture management once enabled.

The multi-cloud capability is an important feature of Microsoft Defender for Cloud.

What needs improvement?

The remediation process could be improved. I have seen that Google has a similar Security Center, where they not only identify vulnerabilities but also provide the steps to fix them. If Microsoft Defender for Cloud could provide remediation steps for all vulnerabilities, it would be a significant enhancement. Currently, only some vulnerabilities have remediation steps available.

For how long have I used the solution?

I have been using Microsoft Defender for Cloud for three years.

What do I think about the stability of the solution?

Microsoft Defender for Cloud is stable. We have not encountered any downtime.

What do I think about the scalability of the solution?

Microsoft Defender for Cloud is scalable.

How are customer service and support?

The technical support is good. We can raise tickets without any issues.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We previously utilized Google's Security Center. However, we transitioned to Microsoft Defender for Cloud following the client's preference for a native solution, as they are a Microsoft-centric organization. Additionally, Microsoft Defender for Cloud's multi-cloud capabilities, including its ability to integrate information from Google Cloud, were compelling factors in our decision.

What was our ROI?

We have achieved a return on investment in terms of time and efficiency, which translates to monetary savings. For instance, we have gained 30 percent more efficiency in remediation tasks. This means that what previously took ten days can now be completed in seven days, saving us time and, consequently, money.

What's my experience with pricing, setup cost, and licensing?

I am not involved much with the pricing but the bundle offering is good.

Which other solutions did I evaluate?

We considered Prisma Cloud before ultimately selecting Microsoft Defender for Cloud. The fact that Defender for Cloud was a native solution for our client significantly simplified the integration process.

What other advice do I have?

I would rate Microsoft Defender for Cloud nine out of ten.

We have Microsoft Defender for Cloud deployed across 2,000 locations and over 3,000 endpoints.

No maintenance is required from our end.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Microsoft Azure
Disclosure: My company has a business relationship with this vendor other than being a customer:
PeerSpot user
reviewer2595948 - PeerSpot reviewer
Engineer at a computer software company with 201-500 employees
Real User
It's really easy to search through with KQL queries to find the security breaches and incidents
Pros and Cons
  • "I find Microsoft Defender for Cloud's KQL very flexible and powerful. It's really easy to search through with KQL queries to find the security breaches and incidents and to track down the breach itself."
  • "I would rate Microsoft Defender for Cloud a ten."

    What is our primary use case?

    The primary use case for Microsoft Defender for Cloud in our organization is investigating breach or security incidents.

    How has it helped my organization?

    Defender for Cloud has improved our security posture by 20 to 30 percent. With everybody moving to hybrid, it's challenging to maintain a good security posture with so many people working from home. I'm impressed with the solution's coordinated detection and responses across devices, identities, apps, emails, data, and cloud workloads. That's why we're considering using Defender in more areas and integrating it more.

    What is most valuable?

    I find Microsoft Defender for Cloud's KQL very flexible and powerful. It's really easy to search through with KQL queries to find the security breaches and incidents and to track down the breach itself. Microsoft Defender for Cloud presents a prioritized list of remediation for security issues, giving us a starting point to begin locking things down and tightening security.

    What needs improvement?

    I can't think of anything that needs improvement. It's a pretty good product.

    For how long have I used the solution?

    I have been using Microsoft Defender for Cloud for the last year.

    What do I think about the stability of the solution?

    Defender's stability has been flawless for us. I haven't noticed any issues.

    What do I think about the scalability of the solution?

    It's great. It seems perfectly scalable.

    How are customer service and support?

    I would rate Microsoft customer service and technical support 10 out of 10. They seem quick to respond and get us the answers we need, taking a hands-off approach to helping us integrate.

    How would you rate customer service and support?

    Positive

    Which solution did I use previously and why did I switch?

    I previously used other antivirus products like Kaspersky. Microsoft Defender for Cloud is preferred because it offers cloud ability and is a more trusted partner in the industry.

    What about the implementation team?

    We used a consultant for the implementation, and the experience was good. No complaints.

    What was our ROI?

    Our return on investment is seen through increased productivity. I'm able to get more done with less time.

    Which other solutions did I evaluate?

    I evaluated other antivirus products like Kaspersky before switching.

    What other advice do I have?

    I would rate Microsoft Defender for Cloud a ten. Having this solution alleviates the need to worry about other antivirus products, offering a one-stop solution.

    Which deployment model are you using for this solution?

    Hybrid Cloud
    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    Flag as inappropriate
    PeerSpot user
    Sales Manager at Voit Digital
    Reseller
    Comprehensive and centralized device management with room for licensing clarity
    Pros and Cons
    • "The valuable features include the ability to manage devices and the fact that Defender can replace other security tools like SCCM."
    • "There are challenges with the licensing policies, which are quite complicated."

    What is our primary use case?

    For example, the customer wants to restrict USB connections or any output device, or they want to verify any link they open before opening it in their real environment. Mostly, they replace the current security tool they are using, such as Kaspersky, with Defender for Cloud because it integrates well with Office 365.

    How has it helped my organization?

    The biggest advantage is it centralizes management. Customers do not have to manage different vendor products. They feel confident using Microsoft because of the long-recognized technology and detailed technical documentation available online.

    What is most valuable?

    The valuable features include the ability to manage devices and the fact that Defender can replace other security tools like SCCM. Since they use Office 365, they need tools that work better in their organization, such as M365 Defender for Cloud.

    What needs improvement?

    There are challenges with the licensing policies, which are quite complicated. The documentation is difficult to understand and resellers need proper training to support customers effectively. Microsoft should provide better training for resellers.

    For how long have I used the solution?

    I have been working with Defender for Cloud for more than five years.

    What do I think about the stability of the solution?

    It is quite stable. It doesn’t have significant stability issues. I would rate it an eight for stability.

    What do I think about the scalability of the solution?

    I am not the one using it directly yet I haven't heard any complaints, so I would rate it a five.

    How are customer service and support?

    Working with Microsoft technical support can be challenging. The problem-solving process can be delayed, and not all issues get resolved promptly. If there are ten tickets, maybe only five or six get resolved satisfactorily.

    How would you rate customer service and support?

    Neutral

    Which solution did I use previously and why did I switch?

    Customers are replacing security tools like Kaspersky, Symantec, or Broadcom to use Defender for Cloud because it integrates seamlessly with Office 365.

    How was the initial setup?

    The initial setup is not very easy yet it is manageable. It is not too difficult for those familiar with the product. It is a medium-complexity setup.

    What about the implementation team?

    The implementation should be handled by the reseller. Resellers need proper training from Microsoft as the documentation is complicated.

    What was our ROI?

    In Vietnam, the cost structure makes it expensive. The licensing is priced publicly on the Microsoft website and it adds up based on the number of users.

    What's my experience with pricing, setup cost, and licensing?

    The cost is expensive for the Vietnamese market. It is publicly available on the Microsoft website, and the pricing depends on the number of users.

    What other advice do I have?

    Organizations should ensure resellers are well-trained to support the new technologies. Proper documentation and support are crucial.

    I'd rate the solution seven out of ten.

    Which deployment model are you using for this solution?

    Public Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Other
    Disclosure: My company has a business relationship with this vendor other than being a customer:
    Flag as inappropriate
    PeerSpot user
    Buyer's Guide
    Download our free Microsoft Defender for Cloud Report and get advice and tips from experienced pros sharing their opinions.
    Updated: May 2025
    Buyer's Guide
    Download our free Microsoft Defender for Cloud Report and get advice and tips from experienced pros sharing their opinions.