TrustRadius: an HG Insights company

Microsoft Defender for Cloud Reviews & Insights

Score8.5 out of 10

110 Reviews and Ratings

Top industries

Based on 1,061 HG Insights installations.

Powered by

Community Insights for Microsoft Defender for Cloud

Synthesised from 5 verified reviews.


Synthesised from 5 reviews | Last Published June 30, 2026


Microsoft Defender for Cloud serves as a critical solution for organizations aiming to establish robust cloud security and protect sensitive data across diverse platforms, including Azure, AWS, and Google Cloud. Reviewers primarily deploy it to safeguard virtual machines and network infrastructure, addressing the imperative for comprehensive cloud workload protection, particularly for sensitive user data. In TrustRadius reviews, its strong capabilities in threat protection and ease of integration within the Microsoft ecosystem are widely noted.

Beyond core protection, reviewers also value its ability to provide quick, understandable visibility into risk ratings and efficient alerting for suspicious activities. However, the platform presents challenges in its complexity of configuration and setup, which three reviewers specifically highlighted as a significant barrier. Despite these implementation hurdles, Microsoft Defender for Cloud consistently delivers positive ROI through cost savings, enhanced security, and improved operational efficiency, making it a valuable asset for cloud security management.


  • Effective threat detection and protection against malicious activity.
  • Seamless integration, particularly within the Microsoft ecosystem.
  • Provides clear, quick visibility into cloud security risk ratings.
  • Efficient and immediate alerting for suspicious activities.
  • Contributes to significant cost savings and operational efficiency.
  • Complex initial configuration and setup process.
  • User interface can be overwhelming and challenging to navigate.
  • Requires significant effort to train security teams effectively.
  • Difficulties in managing various settings post-deployment.
How does your environment look today? Do you have on-prem resources? Do you use only Azure or other clouds (AWS and Google Cloud)?

From 16 reviews | Last Published April 30, 2026

Reviewers describe varied and often complex cloud and on-premises infrastructure environments, with a notable trend towards multi-cloud strategies and a significant focus on Microsoft Azure. Over 31% of reviewers indicated that Azure is their primary or sole cloud provider, often citing its accessibility and integration with other Microsoft tools like Office and Teams. However, a substantial portion of the surveyed organizations operate in multi-cloud environments, with 25% explicitly stating they use a mix of cloud providers, including AWS and Google Cloud, alongside Azure. Furthermore, 19% of reviewers confirmed the continued presence of on-premises resources, often integrated with cloud services through solutions like Azure ARC, highlighting a hybrid approach to infrastructure management. While Azure appears to be a dominant platform for many, the overall landscape is characterized by a strategic blend of different cloud providers and traditional on-premises infrastructure, reflecting a desire for flexibility and authorization capabilities across diverse platforms.

Azure Cloud Usage

Azure is now our main cloud, so we got startup credits, and so we are able to switch over and we're basically using it for free.

Multi-Cloud Environment

Right now we do have AWS, we were previously really relying on it, but now we're mainly using Azure.

On-Premises Resources

A mix between Azure ARC for on-prem resources, multi-cloud environments, the whole shebang.

Does using Microsoft Defender for Cloud help reduce the number of third party products you would use otherwise to protect your infrastructure? If yes, can you estimate the amount you have saved by using Defender for Cloud?

From 16 reviews | Last Published April 30, 2026

Microsoft Defender for Cloud is frequently cited by reviewers as a valuable platform for consolidating security operations and reducing reliance on disparate third-party security products. A notable 6 of 16 reviewers specifically highlighted that the platform contributes to cost savings by replacing expensive external tools, with some estimates suggesting annual savings between $20,000 and $50,000. This financial benefit is closely linked to the platform's ability to reduce the overall number of security tools an organization needs to manage, a point emphasized by 3 of 16 reviewers who noted that Defender for Cloud often negates the need for acquiring additional specialized licenses. However, while consolidation is a clear advantage, 2 of 16 reviewers also mentioned instances where additional tools were still integrated or acquired to augment specific security functions, indicating that Defender for Cloud often serves as a foundational component rather than a complete replacement for all security solutions.

Cost savings from third-party reduction

It's specific to just Azure, but I think that it works and it's saving us cost because some of the third party tools are really expensive.

Reduction in number of security tools

I think that we'd have to, we probably would've had to get a Wiz license or something if it weren't for Microsoft Defender.

Need for additional tools

The savings in tools are noticeable, but we also acquired other tools to improve the company, so let's say there were improvements and savings, but the expense was on other services.

Does Microsoft Defender for Cloud help reduce the number of threat alerts? Can you elaborate on how it has helped reduce your threat alerts? What was the percentage of threat alerts you were able to cut down by using Defender for Cloud?

From 16 reviews | Last Published April 30, 2026

Microsoft Defender for Cloud demonstrates a mixed impact on the number of threat alerts, with some reviewers experiencing a reduction, while others noted an increase in overall visibility or challenges with false positives. A notable portion of reviewers, 5 of 16 (31%), indicated that the platform aids not only in reducing alerts but also in prioritizing critical threats for more effective response [1]. One reviewer specifically reported a 25% reduction in risk associated with implementing policies. However, 2 of 16 reviewers (13%) highlighted concerns regarding false positives, suggesting that while the system generates alerts, not all represent genuine threats, which can complicate alert management. Beyond alert volume, 3 of 16 reviewers (19%) positively affirmed the platform's utility in vulnerability and threat management, praising its dashboards for clearly identifying threats and providing quick remediation insights, thereby enhancing overall security posture.

Alert reduction and prioritization

Yes, attempts to steal information have significantly reduced and now any situation is blocked and reported to us immediately, which for us is one less job to do.

False positives and alert management

I don't review the threat alerts, but I'm sure that it's better to have the alerts than the deep breach.

Vulnerability and threat management

Using this software for protecting the data and virtual machine it provides a immediately response if any suspicious activity found in application and provides easy solution to work in secure environment along with that we are able to secure our servers easily as they provide all the information about the configuration and vulnerability objects.

What positive or negative impact (i.e. Return on Investment or ROI) has Microsoft Defender for Cloud had on your overall business objectives?

From 5 reviews | Last Published June 30, 2026

Microsoft Defender for Cloud consistently demonstrates a positive return on investment for organizations, primarily through significant cost savings, enhanced security, and improved operational efficiency. All 5 reviewers highlighted the product's ability to reduce operational expenses, with several noting direct savings in human hours and infrastructure costs. The platform's robust security capabilities were also universally praised by all 5 reviewers, who emphasized its role in preventing potential breaches and protecting critical assets. Furthermore, 4 out of 5 reviewers pointed to the ease of implementation and integration as a key factor contributing to its value, enabling streamlined security management without additional software overhead. These factors collectively contribute to a strong business case for the solution, as reported by the user base.

Cost Savings and ROI

This translates into more operational continuity and less time spent inactive.

Security and Protection

We don't know how many potential breaches it may have stopped, so potentially pretty massive.

Ease of Use and Integration

Security in a single tool

Describe how you use Microsoft Defender for Cloud in your organization. What are the business problems the product addresses and what is the scope of your use case?

From 5 reviews | Last Published June 30, 2026

Microsoft Defender for Cloud is predominantly adopted by organizations to establish robust cloud security and protect sensitive data across diverse cloud platforms, including Azure, AWS, and Google Cloud. All five reviewers highlighted its critical function in securing cloud environments against unauthorized access and malicious activities, particularly for safeguarding virtual machines and network infrastructure. A significant business problem it addresses is the imperative for comprehensive protection of cloud workloads, especially for entities managing sensitive user data, a concern explicitly raised by one reviewer. Beyond foundational protection, the product is also instrumental in security posture management, with three of five reviewers noting its capabilities in identifying vulnerabilities and offering actionable remediation guidance. Additionally, two reviewers cited its application in advanced threat detection and response, leveraging features like threat explorer to proactively track and flag suspicious activities.

Cloud Security and Protection

We use it to make sure that our Azure environments are safe and that no one's starting up VMs or doing anything in our Azure environment.

Security Posture Management

The more important feature is I can pull or create policies for all the cloud endpoints we have at the moment. It's like an active directory back in the cloud.

Threat Detection and Response

It combines CSPM & CWPP to detect and responds on the threats or malware quickly. It has DevSecOps Integration that makes the pipelines, servers, container more secure by scanning the infrastructure.

Please provide some detailed examples of areas where Microsoft Defender for Cloud has room for improvement.

From 5 reviews | Last Published June 30, 2026

Reviewers identified several areas where Microsoft Defender for Cloud could be improved, with the most prominent concern being the complexity of its configuration and setup. Three out of five reviewers specifically highlighted difficulties in getting the system operational and managing its various settings, indicating a significant barrier to entry and ongoing management. This complexity extends beyond initial deployment, as users also reported challenges in navigating the user interface, describing it as "UI Overload." Furthermore, ensuring that security teams were adequately trained to utilize the platform effectively presented a notable challenge for organizations. The sentiment around these aspects was consistently negative, suggesting that while the product offers robust security capabilities, the learning curve and initial implementation effort present significant hurdles for new and existing users alike. Streamlining these processes could enhance user experience and adoption, making the platform more accessible and efficient for a broader range of organizations.

Configuration and Setup Complexity

Complex Configuration and UI Overload

Please provide some detailed examples of things that Microsoft Defender for Cloud does particularly well.

From 5 reviews | Last Published June 30, 2026

Microsoft Defender for Cloud is primarily recognized by reviewers for its strong capabilities in security and threat protection, ease of integration, and comprehensive visibility. Four of five reviewers highlighted the platform's effectiveness in protecting against threats and identifying malicious activity, with one reviewer specifically noting its ability to catch "bad actors" and enable action and response. Its ease of integration, particularly within the Microsoft ecosystem, was also a key positive, mentioned by four reviewers who appreciated its straightforward implementation. Furthermore, the solution is valued for providing quick and understandable visibility into risk ratings for websites and server configurations, a point raised by three reviewers. This visibility is complemented by efficient alerting capabilities, which also received positive feedback from three reviewers for providing immediate notifications on suspicious activities. The user interface and layout were also commended by two reviewers for being well-designed and accessible.

Ease of Integration

Easy Integration

Security and Threat Protection

Security

Visibility and Risk Assessment

I really think security posture management is something it does really well.

Loading Reviews List....