Microsoft Defender for Cloud Apps (formerly Microsoft Cloud App Security) is a multimode cloud access security broker.
N/A
Mimecast Email Security Cloud Integrated
Score 8.6 out of 10
N/A
The Mimecast Secure Email Gateway is a messaging security option with anti-spam / anti-malware, data loss prevention, large file send, and other features, from UK company Mimecast.
Microsoft Defender for Cloud Apps is well suited when working with other Microsoft Applications. For example, if you are working with Microsoft Office 365 it works very well when implementing CASB features. It works when implementing monitoring or blocks on Sanctioned applications however customizing the message to users is not that great.
If you're using the Microsoft 365 ecosystem, Mimecast Email Security CI is a must-have, as it adds an extra layer of email security. With advanced email threat detection capabilities, this tool handles internal threat incidents, ransomware, and phishing, and is effective at scanning attachments and URLs. It is a reliable/effective email security solution for business.
The integration to Microsoft Entra ID is seamless, which allows Conditional Access to redirect the session to Microsoft Defender for Cloud App for it to take actions (Block or Monitor).
Tracker users' activity is very good when troubleshooting or running an investigate.
Detecting risky users through tight integration with Microsoft Entra ID is a very good feature.
Detecting mass downloads and blocking the download of files from non-manage company devices is a very good feature as well.
Simplicity: Once set up, Mimecast Advanced Email Security is easy to use, intuitive, and simple. This reduces onboarding time with new employees.
Robust Audit Trail: Being able to see what happened with specific emails, why things happened, and who was responsible for them helps to reduce troubleshooting time as well as improving overall email observability.
Clean Interface: Mimecast Advanced Email Security is a Swiss-Army-Knife of email security. There are many different configurations and complex rules that can be implemented. To make this manageable Mimecast Advanced Email Security has implemented a simple and clean UI. Being able to favorite commonly used features makes a huge difference in usability.
Simple SSO Integration: This seems like a no-brainer, but its odd to see how many SaaS products either don't support SSO, or make it so complicated and convoluted that setup and maintenance becomes a fully time job.
It takes some time to scan and apply the policies when there is some sensitive information.
After it applies the policies, it works, but there is a delay.
It doesn't provide any way to scan Microsoft Teams when an external exchange of images is happening. You can always do the filtering on the documents during the chat, but if there is an image, then some kind of OCR capability is required to detect it. At present, there is no way [Microsoft Cloud App Security] can go and detect those kinds of images and alert us
I would like to see some additional improvement around the attachment protection, specifically what may be getting caught and what types of files are attempting to be delivered via email by impersonators.
The Targeted Threat Protection is a great product, and I wish there was a dashboard for this service where we could easily see the types of emails and/or links that have been caught as part of the protection module that could be shared with executives.
Finally, I feel that the phishing protection is great and honestly don't believe there should be much improvement needed there.
There is no question as to the value of the product to the business and the disruption of changing vendors would not be worth any savings possibly achieved by switching.
The interface is pretty simple and easy to use; however, you will need to do a lot of investigative research on your own to get comfortable with it. Originally, many of the Microsoft security tools had their own seperate consoles. Overtime, they have blended into one interface which is the ideal state. In some cases it is clear Microsoft had to pick which console a certain feature or setting was going to reside in and this leads to some confusion. For example, DLP is managed through Defender for Cloud Apps but you will also need to jump into Purview. For things like reverse proxy on your M365 tenant, you will need to go into Azure and setup conditional access rules. Not a big problem and I can understand why the settings are located where they are but for someone just starting out with Defender for Cloud Apps, it will take some time to figure out.
Mimecast advanced email security is an excellent tool, and even better, all the tools can be accessed from a single console. One thing I love about Mimecast is that when you add features to your account, they are automatically added to your console, which you already have experience with. No need to learn a new console.
I have not utilized actual support but the Sales and Product teams have been super helpful in moving our implementation forward and showing us the best practices.
When calling them you get best in the world customer services but as previously mentioned their online community and capabilities are a bit lacking. They want you to log into their portal to see updates on issues (vs. using a public facing service) and I rarely find the answers to my issues in electronic format. Their online presence is only helpful with the simplest of issues.
More flexible and more features with easy integration with cloud services like Microsoft Azure and other cloud services. Overall both gives similar features but we prefer Microsoft cloud app security due to its high threat detection rate. mostly we have been able to stop the threat in very very less time.
Mimecast Advanced Email Security is FAR superior. Sophos practically gave us the email for free and we still didn't want it. Sophos also does not do both Gateway and API properly. Mimecast Advanced Email Security's AI-Powered net is next level.
Cloud App Security saves us thousands of dollars finding and rectifying apps security issues
Identity Security Posture helps the organization identity stay in shape, saving thousands of dollars on security consultations
The cost of suffering a breach cannot be quantified, CAS helps minimize the chances of the attackers succeeding, with excellent historical logging for most operations