TrustRadius: an HG Insights company

Microsoft Defender for Cloud Reviews & Insights

Score8.5 out of 10

111 Reviews and Ratings

Top industries

Based on 1,099 HG Insights installations.

Powered by

Community Insights for Microsoft Defender for Cloud

Synthesised from 5 verified reviews.


Synthesised from 5 reviews | Last Published June 24, 2026


Microsoft Defender for Cloud is primarily used by organizations to secure multi-cloud environments, including Azure, Google, and AWS, addressing critical problems like data protection and infrastructure vulnerability. In TrustRadius reviews, it is widely adopted for comprehensive security posture management and robust threat detection and response. Reviewers frequently highlight its effectiveness in providing comprehensive security and threat protection, with 4 out of 5 noting its capabilities, often citing its native integration within the Microsoft ecosystem as a key strength.

Reviewers consistently report a positive return on investment, streamlining security operations and reducing human hours. However, a recurring concern is the complexity of its configuration and setup, which can lead to administrative overhead and significant training requirements. Despite these initial setup challenges, the product is valued for its ability to protect critical infrastructure and simplify threat identification, contributing to business continuity and overall high satisfaction.


  • Comprehensive security and threat protection across cloud environments.
  • Seamless integration, particularly within the Microsoft ecosystem.
  • Clear visibility into cloud security posture and configuration risks.
  • Efficient and timely alerting for suspicious activities.
  • User-friendly interface for managing security.
  • Complex initial configuration and setup.
  • High administrative overhead during optimization.
  • Significant ongoing training requirements for effective utilization.
How does your environment look today? Do you have on-prem resources? Do you use only Azure or other clouds (AWS and Google Cloud)?

From 16 reviews | Last Published April 30, 2026

Reviewers describe varied and often complex cloud and on-premises infrastructure environments, with a notable trend towards multi-cloud strategies and a significant focus on Microsoft Azure. Over 31% of reviewers indicated that Azure is their primary or sole cloud provider, often citing its accessibility and integration with other Microsoft tools like Office and Teams. However, a substantial portion of the surveyed organizations operate in multi-cloud environments, with 25% explicitly stating they use a mix of cloud providers, including AWS and Google Cloud, alongside Azure. Furthermore, 19% of reviewers confirmed the continued presence of on-premises resources, often integrated with cloud services through solutions like Azure ARC, highlighting a hybrid approach to infrastructure management. While Azure appears to be a dominant platform for many, the overall landscape is characterized by a strategic blend of different cloud providers and traditional on-premises infrastructure, reflecting a desire for flexibility and authorization capabilities across diverse platforms.

Azure Cloud Usage

Azure is now our main cloud, so we got startup credits, and so we are able to switch over and we're basically using it for free.

Multi-Cloud Environment

Right now we do have AWS, we were previously really relying on it, but now we're mainly using Azure.

On-Premises Resources

A mix between Azure ARC for on-prem resources, multi-cloud environments, the whole shebang.

Does using Microsoft Defender for Cloud help reduce the number of third party products you would use otherwise to protect your infrastructure? If yes, can you estimate the amount you have saved by using Defender for Cloud?

From 16 reviews | Last Published April 30, 2026

Microsoft Defender for Cloud is frequently cited by reviewers as a valuable platform for consolidating security operations and reducing reliance on disparate third-party security products. A notable 6 of 16 reviewers specifically highlighted that the platform contributes to cost savings by replacing expensive external tools, with some estimates suggesting annual savings between $20,000 and $50,000. This financial benefit is closely linked to the platform's ability to reduce the overall number of security tools an organization needs to manage, a point emphasized by 3 of 16 reviewers who noted that Defender for Cloud often negates the need for acquiring additional specialized licenses. However, while consolidation is a clear advantage, 2 of 16 reviewers also mentioned instances where additional tools were still integrated or acquired to augment specific security functions, indicating that Defender for Cloud often serves as a foundational component rather than a complete replacement for all security solutions.

Cost savings from third-party reduction

It's specific to just Azure, but I think that it works and it's saving us cost because some of the third party tools are really expensive.

Reduction in number of security tools

I think that we'd have to, we probably would've had to get a Wiz license or something if it weren't for Microsoft Defender.

Need for additional tools

The savings in tools are noticeable, but we also acquired other tools to improve the company, so let's say there were improvements and savings, but the expense was on other services.

Does Microsoft Defender for Cloud help reduce the number of threat alerts? Can you elaborate on how it has helped reduce your threat alerts? What was the percentage of threat alerts you were able to cut down by using Defender for Cloud?

From 16 reviews | Last Published April 30, 2026

Microsoft Defender for Cloud demonstrates a mixed impact on the number of threat alerts, with some reviewers experiencing a reduction, while others noted an increase in overall visibility or challenges with false positives. A notable portion of reviewers, 5 of 16 (31%), indicated that the platform aids not only in reducing alerts but also in prioritizing critical threats for more effective response [1]. One reviewer specifically reported a 25% reduction in risk associated with implementing policies. However, 2 of 16 reviewers (13%) highlighted concerns regarding false positives, suggesting that while the system generates alerts, not all represent genuine threats, which can complicate alert management. Beyond alert volume, 3 of 16 reviewers (19%) positively affirmed the platform's utility in vulnerability and threat management, praising its dashboards for clearly identifying threats and providing quick remediation insights, thereby enhancing overall security posture.

Alert reduction and prioritization

Yes, attempts to steal information have significantly reduced and now any situation is blocked and reported to us immediately, which for us is one less job to do.

False positives and alert management

I don't review the threat alerts, but I'm sure that it's better to have the alerts than the deep breach.

Vulnerability and threat management

Using this software for protecting the data and virtual machine it provides a immediately response if any suspicious activity found in application and provides easy solution to work in secure environment along with that we are able to secure our servers easily as they provide all the information about the configuration and vulnerability objects.

What positive or negative impact (i.e. Return on Investment or ROI) has Microsoft Defender for Cloud had on your overall business objectives?

From 5 reviews | Last Published June 24, 2026

Microsoft Defender for Cloud consistently delivers a positive return on investment by enhancing operational efficiency and reducing costs, as reported by all reviewers. A key driver for this ROI is the platform's ability to streamline security operations, with reviewers noting a significant reduction in human hours required for security implementations and policy management. Beyond direct cost savings, the solution provides substantial value through robust security measures, protecting critical infrastructure like servers, virtual machines, and databases from various threats. This preventative capability minimizes potential breaches and associated downtime, further contributing to business continuity. Additionally, the ease of use and integration of Microsoft Defender for Cloud into existing environments facilitate its adoption and maximize its impact, allowing organizations to consolidate security functions within a single tool without requiring extensive additional software installations.

Cost Savings and ROI

This translates into more operational continuity and less time spent inactive.

Security and Protection

We don't know how many potential breaches it may have stopped, so potentially pretty massive.

Ease of Use and Integration

Security in a single tool

Describe how you use Microsoft Defender for Cloud in your organization. What are the business problems the product addresses and what is the scope of your use case?

From 5 reviews | Last Published June 24, 2026

Microsoft Defender for Cloud is primarily utilized by organizations to establish robust security measures across their cloud environments, addressing critical business problems related to data protection and infrastructure vulnerability. All five reviewers highlighted its role in safeguarding cloud platforms, including Azure, Google, and AWS, by preventing unauthorized activities and securing virtual machines and networks. A significant portion of the reviewers, specifically three out of five, also leverage the product for comprehensive security posture management, enabling them to identify and remediate vulnerabilities within their infrastructure. Furthermore, two reviewers noted its effectiveness in threat detection and response, citing its ability to quickly identify and neutralize malicious activities. The product is seen as a crucial tool for maintaining a high standard of protection for cloud workloads, especially for organizations handling sensitive data like payment tokens, by providing an additional layer of security and simplifying the identification of threats.

Cloud Security and Protection

We use it to make sure that our Azure environments are safe and that no one's starting up VMs or doing anything in our Azure environment.

Security Posture Management

The more important feature is I can pull or create policies for all the cloud endpoints we have at the moment. It's like an active directory back in the cloud.

Threat Detection and Response

It combines CSPM & CWPP to detect and responds on the threats or malware quickly. It has DevSecOps Integration that makes the pipelines, servers, container more secure by scanning the infrastructure.

Please provide some detailed examples of areas where Microsoft Defender for Cloud has room for improvement.

From 5 reviews | Last Published June 24, 2026

Analysis of five product reviews for Microsoft Defender for Cloud reveals a primary area for improvement centered on the complexity of its configuration and setup. Three of five reviewers specifically highlighted difficulties in getting the system operational and optimizing its settings. This indicates that while the platform may offer robust security features, the initial user experience and administrative overhead present a significant hurdle for adoption and effective utilization. The challenges extend beyond initial deployment to ongoing training requirements, suggesting that organizations may need to allocate substantial resources to overcome the learning curve. This feedback suggests that streamlining the onboarding process and simplifying the user interface could enhance the product's accessibility and reduce the barrier to entry for new users.

Configuration and Setup Complexity

Complex Configuration and UI Overload

Please provide some detailed examples of things that Microsoft Defender for Cloud does particularly well.

From 5 reviews | Last Published June 24, 2026

Microsoft Defender for Cloud is consistently recognized by reviewers for its robust capabilities in security and integration. A significant majority of reviewers, 4 of 5, highlight the product's effectiveness in providing comprehensive security and threat protection, noting its ability to identify and respond to malicious activities. This is closely linked to its ease of integration, also cited by 4 of 5 reviewers, which is often attributed to its native compatibility within the Microsoft ecosystem. Furthermore, the platform's ability to offer clear visibility into risk and configuration issues is valued by 3 of 5 reviewers, who appreciate its role in security posture management. The system's efficient alerting capabilities, mentioned by 3 of 5 reviewers, complement its threat detection by providing immediate notifications of suspicious events. These core strengths are further enhanced by a user-friendly interface, noted by 2 of 5 reviewers, which contributes to an accessible user experience.

Ease of Integration

Easy Integration

Security and Threat Protection

Security

Visibility and Risk Assessment

I really think security posture management is something it does really well.

Loading Reviews List....