Skip to main content
TrustRadius
Microsoft Defender XDR

Microsoft Defender XDR
Formerly Microsoft 365 Defender

Overview

What is Microsoft Defender XDR?

Microsoft 365 Defender combines SIEM and XDR capabilities for Microsoft 365 environments, encompassing threat detection, post-breach detection, automated investigation, and response for endpoints. Additionally, it protects cloud apps, emails and documents, and employee identities.

Read more
Recent Reviews

Microsoft Defender XDR

10 out of 10
February 06, 2024
Microsoft Defender XDR is mainly responsible for the detection and handling of Phishing related emails. Microsoft Defender XDR is also …
Continue reading
Read all reviews

Awards

Products that are considered exceptional by their customers based on a variety of criteria win TrustRadius awards. Learn more about the types of TrustRadius awards to make the best purchase decision. More about TrustRadius Awards

Reviewer Pros & Cons

View all pros & cons
Return to navigation

Pricing

View all pricing
N/A
Unavailable

What is Microsoft Defender XDR?

Microsoft 365 Defender combines SIEM and XDR capabilities for Microsoft 365 environments, encompassing threat detection, post-breach detection, automated investigation, and response for endpoints. Additionally, it protects cloud apps, emails and documents, and employee identities.

Entry-level set up fee?

  • No setup fee
For the latest information on pricing, visithttps://www.microsoft.com/en…

Offerings

  • Free Trial
  • Free/Freemium Version
  • Premium Consulting/Integration Services

Would you like us to let the vendor know that you want pricing?

26 people also want pricing

Alternatives Pricing

What is Kaspersky EDR Expert?

Kaspersky Endpoint Detection and Response (EDR) Expert provides endpoint protection, advanced detection, threat hunting and investigation capabilities and multiple response options in a single package. It is an EDR solution for IT security teams with more mature incident response processes,…

Return to navigation

Product Demos

Getting started with Microsoft 365 Defender

YouTube
Return to navigation

Product Details

What is Microsoft Defender XDR?

For SecOps, XDR with incident-level visibility across the kill chain for automatic disruption of sophisticated attacks and accelerated response across endpoints, identities, email, collaboration tools, cloud applications, and data.


Endpoints: Discovers and secures endpoint and network devices across a multiplatform enterprise.

Identities: Manages and secures hybrid identities and simplifies employee, partner, and customer access.

Cloud apps: Visibility, control, and threat detection across cloud services and apps.

Email and collaboration tools: Protects email and collaboration tools from advanced threats, such as phishing and business email compromise.

Microsoft Defender XDR (formerly Microsoft 365 Defender) combines SIEM and XDR capabilities for Microsoft 365 environments, encompassing threat detection, post-breach detection, automated investigation, and response for endpoints. Additionally, it protects cloud apps, emails and documents, and employee identities.

Microsoft Defender XDR Features

  • Supported: Endpoints: Discovers and secures endpoint and network devices across a multiplatform enterprise.
  • Supported: Identities: Manages and secures hybrid identities and simplifies employee, partner, and customer access.
  • Supported: Cloud Apps: Offers visibility, controls data, and detects threats across cloud services and apps.
  • Supported: Email & Collaboration tools: Protects email and collaboration tools from advanced threats, such as phishing and business email compromise.

Microsoft Defender XDR Screenshots

Screenshot of AH Advanced ModeScreenshot of AH Guided modeScreenshot of CD exampleScreenshot of CD Supported actions

Microsoft Defender XDR Technical Details

Operating SystemsUnspecified
Mobile ApplicationNo

Frequently Asked Questions

Microsoft 365 Defender combines SIEM and XDR capabilities for Microsoft 365 environments, encompassing threat detection, post-breach detection, automated investigation, and response for endpoints. Additionally, it protects cloud apps, emails and documents, and employee identities.

CrowdStrike Falcon, Sophos Intercept X, and Symantec Endpoint Security are common alternatives for Microsoft Defender XDR.

Reviewers rate Usability highest, with a score of 8.

The most common users of Microsoft Defender XDR are from Mid-sized Companies (51-1,000 employees).
Return to navigation

Comparisons

View all alternatives
Return to navigation

Reviews and Ratings

(137)

Attribute Ratings

Reviews

(1-25 of 59)
Companies can't remove reviews or game the system. Here's why
Score 8 out of 10
Vetted Review
Verified User
Incentivized
  • All in one solution so no need to use multiple products which could make the whole process more complex.
  • Prevents us from phishing attempts and malware attacks as it scans the system in real time for potential threats.
  • Costs more but also provides value in terms of security.
February 06, 2024

Microsoft Defender XDR

Score 10 out of 10
Vetted Review
Verified User
  • Microsoft Defender XDR has been a great help when it comes to preventing targeted phishing in our organization.
Score 8 out of 10
Vetted Review
ResellerIncentivized
  • Cost-Efficiency: Microsoft Defender XDR often proves cost-effective compared to implementing multiple standalone security solutions, consolidating threat detection and response capabilities.
  • Time Savings: Its centralized dashboard and automated features can save time for security teams, allowing them to focus on critical tasks
Score 8 out of 10
Vetted Review
Verified User
Incentivized
  • Security incident cannot be measured, once you down you down, hence the security applications like this is just a must have
  • The subscription model will be cheaper and can be a good point if you want to free resources within the IT Team
  • The SaaS model, if measured correctly can and will reduce long term cost in Infrastructure and Man Power
Yash Mudaliar | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User
Incentivized
  • Only negative or rather I'd say a less favorable ROI has been increase in the cost as Microsoft 365 Defender counts as a premium product from Microsoft which has significant cost associated to it.
  • Our security analysts have seen a significant increase of 30-45 mins in the triaging time for complex incidents due to the intuitive and informational UI of Microsoft 365 Defender.
  • Less hassle of switching to multiple portals to get the relevant information
Score 8 out of 10
Vetted Review
Verified User
Incentivized
  • It offers a complete solution for safeguarding our devices, data and applications from cyber threats, it has assisted me in strengthening the security posture of my company. I no longer have to worry about security, allowing me to concentrate on creating and implementing new software.
  • My productivity has increased due to its automations of numerous security tasks, My time can now be better spent on more crucial projects like creating new software due to it.
  • It has assisted me in lowering the security expenses for my company, this has removed the requirement for costly security hardware and software purchases and upkeep.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
  • Enhanced data security, achieved by fortifying our cyber defenses and safeguarding sensitive financial information.
  • The program helps reach and uphold obedience to security rules and regulations in finance, evading possible fines. Microsoft 365 Defender aids in reducing economic and reputational hazards by actively stopping security violations.
  • Microsoft 365 Defender actively responds to incidents to minimize financial losses and safeguard an organization's reputation.
Abdrhman Arar . | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Incentivized
  • For the Identity Protection, Microsoft 365 Defender helps me to have fewer headaches from resetting passwords and securing the hacked account, it forces the security layers that help to achieve this solution.
  • For the Endpoint, I have bought too many apps to secure endpoints but Microsoft 365 Defender for endpoint helps me to secure all endpoints while I'm sitting in my office with monitoring everything and fixing all issues with it.
  • For the Data Loss Prevention, it helps me to achieve the best practices of securing confidential information and data and emails internal and external the enterprise
  • For Cloud apps and Cloud Integration, I use it to secure all cloud app in Azure and AWS and Gcloud, it makes everything in one platform which make it easy for me to secure and investigete every issue.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
  • Depending on the licensing you pay for, Defender is included and a great ROI cost wise
  • In terms of time spent, Defender can be a large time suck but yield positive results for end users
  • Generally, it pays to learn and train in Defender BEFORE there is a problem and you need to really use it.
Anirudh Srinivas | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User
Incentivized
  • The tool is fully integrated into the windows platform.
  • Its fully integrated part of our office 365 subscription and does not need additional tools
  • The tool has saved a lot f time in terms of pushing updates to different category of machines managed by the organization.
Return to navigation