Microsoft Defender for Identity vs. Palo Alto Networks Advanced Threat Prevention

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Microsoft Defender for Identity
Score 8.5 out of 10
N/A
Microsoft Defender for Identity (formerly Azure Advanced Threat Protection, also known as Azure ATP) is a cloud-based security solution that leverages on-premises Active Directory signals to identify, detect, and investigate advanced threats, compromised identities, and malicious insider actions directed at the organization.N/A
Palo Alto Networks Advanced Threat Prevention
Score 8.5 out of 10
N/A
Palo Alto Networks Advanced Threat Prevention is an intrusion prevention system (IPS) used to stop zero-day attacks inline in real-time. In addition to the prevention of known threats, the solution helps to stop never-before-seen exploit attempts and command and control with its inline deep learning engines that aims to provide prevention of zero-day injection attacks and evasive command and control.N/A
Pricing
Microsoft Defender for IdentityPalo Alto Networks Advanced Threat Prevention
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Microsoft Defender for IdentityPalo Alto Networks Advanced Threat Prevention
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
Microsoft Defender for IdentityPalo Alto Networks Advanced Threat Prevention
Best Alternatives
Microsoft Defender for IdentityPalo Alto Networks Advanced Threat Prevention
Small Businesses

No answers on this topic

LevelBlue USM Anywhere
LevelBlue USM Anywhere
Score 7.6 out of 10
Medium-sized Companies
InsightIDR
InsightIDR
Score 8.7 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.1 out of 10
Enterprises
InsightIDR
InsightIDR
Score 8.7 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.1 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Microsoft Defender for IdentityPalo Alto Networks Advanced Threat Prevention
Likelihood to Recommend
7.0
(1 ratings)
8.5
(6 ratings)
Usability
-
(0 ratings)
8.5
(2 ratings)
User Testimonials
Microsoft Defender for IdentityPalo Alto Networks Advanced Threat Prevention
Likelihood to Recommend
Microsoft
Microsoft Defender for Identity is a great solution for each company that has an Active Directory. It fills in the blanks for Identity related incidents that are being missed in the XDR platform. To get a full view on identity risks it is an essential component
Read full review
Palo Alto Networks
Palo Alto NTP is an appropriate suite of protection for any enterprise environment or anyone that truly needs some serious perimeter protection in a one-stop, all-in-one unit. There are no modules or add-ons or clunky interfaces to deal with it; everything works out of one management plane, licensing, implementation, monitoring. updating, etc. As a network admin, that is immensely valuable to me. Additionally, I get real-time reporting on all the stuff NTP is catching, and it is nothing to shirk at. The real value in NTP comes in only after you begin doing SSL-decryption, however, to truly inspect the traffic. Short of that, you are just seeing a bunch of encrypted data and the NTP suite of tools isn't going to avail you. NTP plus decryption, though, is invaluable!
Read full review
Pros
Microsoft
  • detect threats and suspicious activities
  • pro-active measurements on possible breaches
  • identity security posture
Read full review
Palo Alto Networks
  • The threat engine has constant updates for important threats.
  • Wildfire helps supplement the Threat engine to help protect against 0 day threats.
  • The way the threat engine can be added at different levels to different zones and policies helps to ensure business essential traffic can have policies that are tuned to ensure traffic will flow.
Read full review
Cons
Microsoft
  • setup can be complicated, with AD complexity
  • Sometimes the load on DCs is pretty high, leading to performance issues
  • Better tuning options for preventing false-positive/bening alerts
Read full review
Palo Alto Networks
  • Cost is high, but it is a premium product
  • Endpoints are still vulnerable.
  • TAC engineers aren't always equipped with ATP knowledge
Read full review
Usability
Microsoft
No answers on this topic
Palo Alto Networks
The reason to give ATP this rating is it specialises in detecting command control traffic whose primary role is to identify unusual outbound traffic patterns which blocks the command control communication and notifies to different security team to take necessary actions. ATP Global protect holds the responsibility of inspecting all the inbound and outbound traffic going to and from corporate system regardless of the network they are on. ATP plays a major role to identify the threats that blocks threats that could lead to data breach also it identifies any malicious file enter the system will be blocked proactively
Read full review
Alternatives Considered
Microsoft
Microsoft Defender for Identity is more specialized on the Identity platform, it is a single solution compared to a multi-solution. The integration is better when using the XDR suite in combination with Sentinel. Microsoft Defender for Identity gives a better overview of the security posture
Read full review
Palo Alto Networks
Having used Palo Alto Firewalls for years, implementing threat protection was the next step in perimeter security. Works much better than the few competitors I have personally used. Frequent content updates occur which may impact some policy rules, but that is normal across most vendors.
Read full review
Return on Investment
Microsoft
  • Cost impact was pretty high
  • Learning curve, needed time (money) for training
  • Greatly improved detections and gives more insights
Read full review
Palo Alto Networks
  • After adding PA Threat Protection, we are now getting our network traffic completely inspected.
  • We are now applying security checks and scans like AV scan and Anti Spyware checks.
  • This is also giving visibility into threat and attack vectors that are using vulnerabilities and exploits to enter our environment.
Read full review
ScreenShots