Infosec IQ security awareness and training aims to empower employees with the knowledge and skills to stay cybersecure at work and home. With over 2,000 awareness and training resources, Choose Your Own Adventure® Security Awareness Games and personalized learning experiences, the solution aims to present everything needed to prepare employees and strengthen the user's cybersecurity culture. The platform can be customized and personalized to match an organization’s…
N/A
Microsoft Defender for Endpoint
Score 8.8 out of 10
N/A
Microsoft Defender for Endpoint (formerly Microsoft Defender ATP) is a holistic, cloud delivered endpoint security solution that includes risk-based vulnerability management and assessment, attack surface reduction, behavioral based and cloud-powered next generation protection, endpoint detection and response (EDR), automatic investigation and remediation, managed hunting services, rich APIs, and unified security management.
Infosec IQ stands out as an excellent solution for conducting recurrent trainings and running simulated phishing campaigns. The platform not only offers robust features but also provides prompt and reliable support to its users. This level of assistance ensures a smooth experience and helps address any questions or concerns that may arise during training or campaign execution.One notable advantage of Infosec IQ is its support for Single Sign-On (SSO) functionality. This feature enables users to access the platform seamlessly using their existing credentials, eliminating the need for separate login information. By integrating with an organization's existing authentication system, Infosec IQ simplifies user management and enhances security by leveraging established access controls.In summary, the strengths of Infosec IQ include its comprehensive training and simulated phishing capabilities, excellent support services, and the convenience of SSO integration. These features contribute to a more efficient and effective training experience, allowing organizations to strengthen their cybersecurity defenses while minimizing administrative burdens.
It's well-suited if you're already a Microsoft shop, particularly if there are budgeting concerns or it's a smaller operation where you might not have the finances to have a more diverse toolset. Falling back on something built-in because you're already a Microsoft customer is really helpful. Areas where I would say it's less appropriate are if you're not already a Microsoft customer. If you're a Google shop, then maybe it doesn't make the most sense. And then I'd say if you have large budgets, a wide diversity of systems, or a very large footprint, then having something ancillary, or at least another tool, can be impactful as far as making sure you have better visibility.
The content for AwareEd training is robust and extensive. Many cybersecurity topics available for training material. As well as the ability to print promotional training sheets that can be displayed in break rooms, training rooms, hallways, etc.
The built-in phishing simulation templates are great! Recently, Infosec IQ added a new category called "Catch of the Week" that has very realistic phishing simulations that are much more effective and great examples of the types of phishing scams being used today.
Reporting works very well and provides information that can be shared with department managers so they can have visibility on how well their team members are meeting the cybersecurity training requirements.
The big thing for us is on endpoint, it kind of integrates with everything else that we already have because we use Microsoft completely. And so that helps us with being able to integrate, and send things over to Azure Sentinel as we need to as well.
Differently. The biggest thing is that if there is a particular update to it that, for whatever reason, is incompatible with, like, an EHR or some software that we have, there is no easy way to roll back. There's not just like a one click rollback or anything like that. So we have to get in and do that. We've actually written a tool ourselves to manage that, so that's something that's missing.
So far this platform has worked really well for our company. Feedback has been great from our users because training is interesting, interactive and always being updated. Phishing simulations have been extremely helpful for us to stay compliant with ISO requirements and provide insight into areas we need to improve upon to educate our users better and make them more aware of vulnerabilities and threats
Cost add-ons for Security features is nickel and diming the process to keep pace with cybercrime. Limited Education budgets require us to be more pro-active in finding cost-effective measures to protect our devices, staff and students. Defender is a strong, well-featured product that is pricing itself out of the education market
They continue to work on the interface but there are still weird places where you have to hover to see options come up, weird navigation sometimes. Administering is not my favorite part of it. Need to increase their capability for uploading your own training.
It's fairly good whenever you talk about leveraging it, but your staff just has to go read the tech articles. Microsoft does a great job of producing Microsoft technical articles. And so if you can go out there and take the time to read them, you will learn how to do it. It's just not intuitive from the screen if you're just kind of going through it for the first time.
Microsoft Defender for Endpoint chugs along just fine no matter what we throw at it and what systems it's running on. It doesn't take up a lot of resources either, so that's welcomed.
We've gotten great help when we needed it. When our IT guy left who managed security, we had limited knowledge internally with all of the configuration and implementation. Support helped get us running quickly. They spent an hour or so with the new IT person and they hit the ground running. That was super easy.
The first time I tried to onboard my macOS endpoints to MDE I struggled for quite a bit. I had to reach out to Microsoft's MDE support team. The tech was very helpful in walking me through the steps during a screen share session
Deployment was handled by our team here and everything went pretty smoothly. We did have a few hiccups in our test group, but that only took a bit to get ironed out.
Infosec [IQ] is lightyears ahead of cofense. They did not even have training videos on their platform. The cost for cofense also went up by nearly triple for education. Creating phishing emails was a chore and some things were not possible. Infosec [IQ] has much better templates and creating emails from scratch is a ton easier.
I've used Sophos, Bitdefender, SentinelOne, and, of course, Microsoft Defender for Endpoint. We chose this at the time because we were such a Microsoft shop that it just seemed to integrate well with all the other things that we had set up with Microsoft.
Pricing per user is reasonable for an annual contract. Not a bad investment considering that phishing emails and other threats are popping up daily in our users email accounts. Imagine if they did not know how to identify threats and how to be more careful in clicking links, it would have a been a far more expensive endeavor to recover from a network attack.
They're well fitted for my business requirements. Reporting fraud actions and data piracy is important for my company's healthy life. More restricted access to hacking thus ensuring a safe workplace
When we were threatened with a major price hike, we were able to transition to Infosec IQ at our current cost despite being a new account and the delta cost difference being high.
Allowing our larger clients to access and administrate themselves cuts down on requests.
The Outlook plug-in minimizes tickets asking our technicians 'is this spam?'
I'd probably say improved security outcomes and reduced risks. Vulnerability management has been crazy over these past few years just because of the amount of vulnerabilities that are getting discovered and reported. But Microsoft Defender for Endpoint has given us great visibility around that, even though it's a lot. And from that data, we have used it to help fix vulnerabilities, work with our systems team, and work with the appropriate teams to get those vulnerabilities resolved.