A good value when bundled with Defender, but lacking overall
Updated December 15, 2021

A good value when bundled with Defender, but lacking overall

Brian Coyne | TrustRadius Reviewer
Score 5 out of 10
Vetted Review
Verified User

Overall Satisfaction with Microsoft Cloud App Security

We utilize Microsoft Cloud App Security (MCAS) in conjunction with the Defender ATP and Office ATP suite to protect our environment. We utilize it globally for all users to provide insight into cloud activities and abnormalities or user activity as well as to provide insight around in-use cloud applications.
  • Easy automation
  • straight forward dashboard
  • integration with other Microsoft security tools
  • Massive delays between the time an activity occurs and when MCAS alerts, up to 24 hours sometimes
  • Many false negatives due to the way it tracks IP addresses and things like impossible travel
  • Some of the default alerts dont trigger emails or dont even support email
  • Cloud insight into systems we dont control ( dropbox, google drive etc)
  • close integration with other MS solutions
  • Positive: more insight into what our users are doing
  • Positive: bundled with other MS tools we utilize heavily, so no extra cost
We did not evaluate other tools, as our main driver was Defender ATP and MCAS came included

Do you think Microsoft Defender for Cloud Apps delivers good value for the price?

Yes

Are you happy with Microsoft Defender for Cloud Apps's feature set?

Yes

Did Microsoft Defender for Cloud Apps live up to sales and marketing promises?

Yes

Did implementation of Microsoft Defender for Cloud Apps go as expected?

Yes

Would you buy Microsoft Defender for Cloud Apps again?

Yes

Microsoft Defender for Endpoint (formerly Microsoft Defender ATP), Microsoft Defender for Identity (formerly Azure ATP), Microsoft Azure Active Directory
It's great because it's included with other Microsoft tools like Defender, but it's not worth it on its own. It lacks the speed of alerting, and in the world of security 24 hours for an alert to trigger is simply not acceptable. There is some very nice built-in automation around cloud apps with low scores and the ability to outright block these that is really nice.