Security Measures
September 22, 2023

Security Measures

Anonymous | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User

Overall Satisfaction with Microsoft 365 Defender

Microsoft 365 Defender is utilized in multiple purposes in our organization. It's a Unified solution for Email, Vulnerability management or DLP solutions and many other features.
Our organization mostly uses it as a defender for Office 365 to keep emails safe from unwanted spam, malicious attachments or malicious links composed in emails, a great tool to detect phishing attacks and safeguarding the attachments on OneDrive and Teams.
Our other major purpose of Microsoft 365 Defender is for DLP solutions. With the DLP policy defined, the IT is at ease that no sensitive information is being leaked out from the organization by means of email/attachment.
  • Advanced threats in emails, OneDrive and Teams
  • Prevention of malware attacks, phishing and spam emails
  • A detailed reporting feature on advance threats
  • User interface for the product needs to be improved and reduce the complications of usage.
  • Needs to be a single tool for both O365 products and Windows architecture. Currently, Microsoft 365 Defender is for O365 products.
  • Important factor for any organization is pricing and Microsoft 365 Defender pricing is a bit expensive compared to other similar products.
  • Implementation can cost nearly 35%-45% less compared to on premises solutions
  • Migration have a bit higher cost during initial period which needs to be considered
  • For large organizations with users on remote sites, Microsoft 365 Defender provides a great value
One of the most challenging security features before Microsoft 365 Defender is the protection of the SMTP server against external threats and issues of compromises. Secondly, management of third-party applications for Antispam solutions, and yet the advanced level of threats cannot be optimized Microsoft 365 Defender have provided a Unified solution for all of the security needs. Microsoft Office 365 Defender provides all in one solution for email systems to get rid of all the hassles and maintenance headaches for different vendors to meet compliance.
Microsoft 365 Defender changed to a great extent for the team with tracking on the latest threats, exploring the real-time detection along with training users on attack simulation. The best team finds is the time saving with automated investigation on threats and the automated response upon investigation.
Microsoft 365 Defender includes an automated response where the dedicated team receives an alert within the portal upon detection of any suspicious activity or malicious content a self healing feature of Microsoft 365 Defender helps to resolve the issues which eases the responsible security team. Manual intervention option is also available to remediate the action for any malicious or suspicious identified depending upon the configuration of the automated feature.
There is no reason not to use the automated response feature in Microsoft 365 Defender. When the system can take care of your threats to a great extent then we are not obliged to say no to it.
Currently, we do not connect Microsoft 365 Defender data to Microsoft Sentinel or any other SIEM platform, the security team monitors the activity using the Microsoft Office 365 dashboard and also the alerting emails, which provides the intimation of any suspicious activity going further we have plans to integrate the Microsoft 365 Defender with Solarwinds SEM solution.
Firstly Microsoft 365 Defender offers effortless integration with other Microsoft solutions over the products evaluated. Compared to Microsoft 365 Defender the evaluated products should improve the integration and its web interfaces.
Few challenges were encountered when contacting support during the evaluation and service or support is considered to be the most important factor for any product to be procured.
Pricings of Kaspersky and ESET XDR solutions were much more higher compared to Microsoft 365 Defender.
One point where Microsoft needs to be improved is to improve their system learning capabilities, interface and support documentation.

Do you think Microsoft Defender XDR delivers good value for the price?

Not sure

Are you happy with Microsoft Defender XDR's feature set?

Yes

Did Microsoft Defender XDR live up to sales and marketing promises?

Yes

Did implementation of Microsoft Defender XDR go as expected?

Yes

Would you buy Microsoft Defender XDR again?

Yes

Detection, Prevention and Reporting features are at a great level including integrations with other security products. DLP policies are one of the best with the feature, worry free on any external links composed in email and any attachment along with the email but whereas the use of User Interface and product pricing is not up to the mark, which needs to be improved a lot.

Using Microsoft 365 Defender

  • Email Protection
  • DLP solution
  • File protection on Onedrive and Teams