We are using it for incidents and alerts. It is helpful for threat hunting.
We have tied it to Azure AD or Microsoft Entra, and we are trying to implement it for Linux.
We are using it for incidents and alerts. It is helpful for threat hunting.
We have tied it to Azure AD or Microsoft Entra, and we are trying to implement it for Linux.
It saves the investigation time. There is a lot of information about the threats and other things.
Advanced hunting is good. I like that. We can drill down to lots of details.
It is user-friendly. It has a lot of parts. For me, it was pretty quick to get a sense of it.
It protects from phishing emails, but sometimes, some of the emails are not detected. They are getting delivered into the inbox, not in a junk folder or spam folder. Users are reporting them as phishing emails.
At times, when we have an incident email and we click on the link for that incident, it opens a pop-up, but there is nothing. It has happened a couple of times.
In terms of additional features, it is too early for me. I am still learning all the parts. I am just scratching the surface of the tool. One year is not enough to get every detail of it.
I have been using Microsoft Defender XDR for about a year.
It is stable, but sometimes, we experience an issue. Clicking the link in an incident email opens a small window, but we cannot find anything there. This has happened a couple of times. There is a bug.
Other than that, we have not experienced any downtime or any big issues. It is pretty stable.
We have plans to maximize its usage. We are trying to see how to get the most out of it, but my older colleagues would know more about it. I am still learning it.
I have not contacted them.
I am not sure. I am relatively new. I have only been working here for a year. They already had it in place.
I have not worked on a similar tool before. This is my first XDR tool.
It is on the cloud. I am not aware of its deployment because it was already deployed before I joined.
I cannot recommend it because this is the only tool for XDR that I have used. I have not used any other tool, but it is a good tool.
I would rate Microsoft Defender XDR a nine out of ten.
We use Microsoft Defender XDR for malware detection and browser protection. We have around 500 devices to protect. We use it to get reports for each of these devices.
We are connected to Microsoft and have every laptop enrolled. This acts as an endpoint. The tool helps me check security and compliance. I can also check what a device is doing.
We should be able to use the product on devices like Apple, Linux, etc.
I have been working with the product for three to four years.
The tool's scalability is good.
I research in forums or contact support whenever I encounter issues. We have four types of support plans available. I rate the cheapest plan a two or three out of ten since responses are slow. I rate ten out of ten for an expensive support plan.
Neutral
We have a vendor who gives us a better price. The product is expensive. Selecting the entire Microsoft suite is cheaper than using random services or products.
Bitdefender costs around five dollars per month per device. However, Microsoft Defender XDR costs 2500 dollars per month.
We are evaluating Bitdefender for Windows.
Microsoft Defender XDR helps us save time for clients.
Microsoft Defender XDR provides unified identity and access management. It is installed on every computer and checked from the Microsoft security admin center.
The tool is easy to use. You can use one account to log in to any Microsoft service.
We are aware of our compliance. We can now check the devices and get reports about it.
The product can adapt to evolving threats. We use it to manage only one tenant. We have Mac devices where Microsoft Defender XDR cannot help us.
We have the tool deployed across different locations like Germany and Denmark.
I rate the product an eight out of ten. You need to follow its guidelines.
We use Microsoft Defender XDR to secure data.
Microsoft Defender XDR has reduced our security staff.
The product integrates security into one tool instead of having third-party security tools.
The solution does not offer a unified response and standard data.
I have been using the product for three years.
Microsoft Defender XDR is stable.
The solution is scalable.
It takes weeks for the support to respond. They are not helpful.
Negative
Microsoft Defender XDR's deployment was very easy.
We have seen ROI with the tool's use.
Microsoft Defender XDR's licensing is complicated.
Microsoft Defender XDR has helped us reduce two full-time employees.
The solution is our identity source, which protects our identities through Microsoft Intra ID.
The solution helped us save time by not flipping between the systems.
I rate it an eight out of ten.
We use Microsoft Defender XDR to centralize our security solutions.
Microsoft Defender XDR has helped us save some time.
The integration with other Microsoft solutions is the most valuable feature.
The mobile app support for Android and iOS is difficult and needs improvement.
I am currently using Microsoft Defender XDR.
Microsoft Defender XDR is stable.
Microsoft Defender XDR is scalable.
The technical support is good.
Positive
In addition to using Microsoft Defender XDR, we also use Fortinet. We implemented Microsoft Defender XDR as part of our organization's policy to use Microsoft solutions because of their integration.
The initial deployment was straightforward. We completed the implementation within one year.
I would rate Microsoft Defender XDR a nine out of ten.
The primary use case for Defender is to control the endpoint systems at the user level. On the networking level, we use it to analyze spam and see if any antivirus services are required or if there's a ransomware attack. As of now, I am just using it for monitoring.
I like that it's stable. It's been stable for a long time, and Microsoft Defender has done a good job there. I can see a lot of changes to Microsoft 365 Defender when I compare what we have now to what we had from 2007 to 2010. They have implemented a ransomware feature, and if any virus comes into the system, it triggers an alert.
The price could be better. It'll also help if they can continuously update and upgrade the solution. Every day there's a new virus uploaded into the network, and we have to keep updating it to identify all these things.
I have been using Microsoft 365 Defender since 2007.
Microsoft Defender is very stable, and you can see that there is a 99.9% success rate when they give us good service. It's very helpful for configuring anything.
It's definitely easy to scale. However, scalability depends on the plan and requirements.
They have their norms and regulations that they use once a ticket is created. Whatever the technical issues are, they normally resolve them within the timeline or some days. They are good at the technical side of things.
The initial setup is totally easy. It's not complex. It takes just a couple of minutes to deploy this solution.
The price could be better. Normally, the costs depend on the country you're located in for the license. When we were in the initial stage, we went with the E5 license they call premium standard. It cost us around $5.20 per month for four users.
I would recommend Microsoft Defender to new users. I would advise them to understand their exact requirements and check if it matches before taking it up.
On a scale from one to ten, I would give Microsoft 365 Defender a seven.
We primarily use the solution as security for our endpoints. It covers everything.
The solution is very useful for scanning email traffic.
Practically every company that is working in Microsoft Cloud can use it with a Microsoft 365 subscription.
The product is very easy to use.
So far, I have found the solution to be very stable. I haven't had any issues with it.
It would be helpful if the solution could scan faster when it comes to scanning attachments to emails.
I've been using the solution for a bit more than one year.
The product is quite stable. It's been problem-free. There are no bugs or glitches. It doesn't crash or freeze. It's reliable.
I do not believe the solution is scalable. It's fixed on my PC and I cannot upgrade it. It may be changed from time to time according to the company, however, beyond that, I have no control over expansion.
We have 250 people in our office using the solution.
We have an internal IT department. If I were to have issues, which I haven't, I would go to them. I've never contacted Microsoft's technical support directly. I have no experience dealing with them. I couldn't say if they are helpful or responsive.
I didn't handle the initial setup. That was handled by a technician in my company. It was placed on my PC for me. I don't have any insights in terms of the implementation process.
It may only take one person to install it. They would have to have a bit of knowledge on the product.
We are using the higher-level package which we have to pay a licensing fee for. There are different tiers. Ours includes extended detection with Advanced Threat Protection. It's the most powerful endpoint protection Microsoft offers.
We are using the latest version of the solution.
We sell the product and we use it as well. We are resellers.
We are using advanced endpoint detection in our security for email and a lot of other things, however, it is combined with Cisco solutions, for example, Cisco Umbrella. We have a file solution from IBM, and internally we are using it, however, I am not directly using all of these things. I'm using the administrative part for partnership purposes. I'm not a technical person. I am using them as a customer as part of Microsoft OS.
There is a lot of other tools behind the scenes as well, however, they are working on a network level, on a data center level, to secure the company.
I'd rate the solution at a seven out of ten.
I use the solution for security against system threats.
I have found the ability to delete unwanted threats beneficial.
The solution could improve by having better machine learning and AI. Additionally, the interface, documentation, and integration could be better.
I have used this solution for approximately one year.
The solution is stable.
Microsoft 365 Defender is scalable.
The price of the solution is high compared to others and we have lost some customers because of it.
I rate Microsoft 365 Defender a seven out of ten.
Microsoft 365 Defender offers emerging endpoint security technologies, such as EDR and XDR and Zero trust approach
I have been using Microsoft 365 Defender for approximately two years.
Microsoft 365 Defender is a stable solution.
I am satisfied with the technical support.
The solution is included in Windows 10.
Microsoft is not competitive with the pricing of the solution. The competitors are able to offer lower discounts. The price of the solution is higher.
Microsoft 365 Defender is Microsofts first try at a security package as part of Windows.
They are offering different services with Zero Trust security, SIAM security, SOAR security with Azure. They converge all products in the same security center. Microsoft 365 Defender is one strong point to the overall security protection.
I rate Microsoft 365 Defender a five out of ten.