Microsoft Defender Threat Intelligence
August 30, 2025

Microsoft Defender Threat Intelligence

Anonymous | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User

Overall Satisfaction with Microsoft Defender Threat Intelligence

We use it to get an overview of our overall security posture and for an easy way to apply Microsoft best practices.

The main use of it is also to find and report phishing and bad actor emails that we receive in our organization.

It is very easy to open defender and immediately see if something has been compromised or if a certain user is not up to date with security standards.

Pros

  • Easy interface to immediately look at security posture
  • Many different tools to use and many blades of features
  • Email reporting

Cons

  • There is so many features that sometimes it is hard to find what you need as you need to dig deep and get redirected
  • There could be better training or more intuitive design
  • I do not like how I get redirected sometimes and if there are multiple accounts logged into the browser sometimes it opens the wrong account and I get stuck in a loop that I must sign out of all accounts and try again
  • It allows us to show clients that we are actively reporting and seeing phishing emails, we can show clients the number of phishing emails that we catch and to which users
  • We can show clients that we have a good security posture and easily show them numbers on how we have improved or not
  • Allows us to more easily push security like multifactor authentication by showing the effectiveness
It is very usable and has a lot of features but many features are in places that are hard to find the first time around as there are many blades. It is also difficult when switches between admin portals if there are multiple admin accounts logged in on the same browser as it will repeat asking for credentials to the wrong account.
They are for different use cases, field effect helps us monitor network traffic and decide what to do with it while Microsoft Defender Threat Intelligence allows more robust monitoring and control over 365 variables such as emails that come in and out and Entra ID information.

Do you think Microsoft Sentinel delivers good value for the price?

Yes

Are you happy with Microsoft Sentinel's feature set?

Yes

Did Microsoft Sentinel live up to sales and marketing promises?

Yes

Did implementation of Microsoft Sentinel go as expected?

Yes

Would you buy Microsoft Sentinel again?

Yes

If you are already using Entra ID and the Microsoft Suite is it very easy to use Microsoft Defender Threat Intelligence as it is built-in. For example, when looking at emails that are reported as phish, you can easily open up Defender and report the email to Microsoft with the click of a button with no additional work.

Comments

More Reviews of Microsoft Sentinel