Microsoft Defender XDR, the ultimate solution, if you have a windows ecosystem.
December 19, 2024

Microsoft Defender XDR, the ultimate solution, if you have a windows ecosystem.

Anonymous | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User

Overall Satisfaction with Microsoft Defender XDR

Microsoft Defender XDR is one of the best protection solution in market right now. Microsoft Defender XDR is a complete package for protection including endpoints, cloud apps, office 365, identity, Vulnerability managment solution, entra ID or even Data loss prevention solution. It actually covers all the towers and provide a unified solution. The incidents created by Microsoft Defender XDR actually get unified in single dashboard.

Pros

  • The UI is very intuative and you find most of the options
  • The incidents created from defender are very high quality, it can be used to investigate it deeper.
  • The dashboard is unified and it collect all the incidents from endpoints, server, network devices into one.

Cons

  • The cost to deploy the defender is very high.
  • Defender doesn't work well with Linux systems.
  • Defender feels slow to use, as compared to other company XDR. Microsoft Defender XDR is slow.
  • Microsoft Defender XDR have overall made my company secure in terms of mitigating threat
  • Overall, Microsoft Defender XDR has drastically reduced the time to respond to any threat found.
Before Microsoft Defender XDR, we didn't have a dedicated dashboard to see and manage all the threat across the organisation.
Even after we detected any threat, it was quite hard to manage and mitigate.
After Microsoft Defender XDR, we have a dedicated dashboard to see and manage all the threat across the organisation. we can start mitigation as soon as we observe any threat, we exactly know where it is, and what needs to be done.
NO
We are planning to use automated responses, but for now, it's in pipeline. we will use it with audit mode and try to dig around it and then only we can automate it.
Connecting Microsoft Sentinel and Microsoft Defender XDR is a breeze, You can just connect using the detected option in defender settings, which will sync all the settings and option in Microsoft Defender XDR
We have already implemented the unified SOC platform
We have a microsoft ecosystem and we can easily implement Microsoft Defender XDR in a breeze. Using few option, we can actually start logging and managing all the data.

Do you think Microsoft Defender XDR delivers good value for the price?

Yes

Are you happy with Microsoft Defender XDR's feature set?

Yes

Did Microsoft Defender XDR live up to sales and marketing promises?

I wasn't involved with the selection/purchase process

Did implementation of Microsoft Defender XDR go as expected?

Yes

Would you buy Microsoft Defender XDR again?

Yes

For Infra with Windows only system. Microsoft Defender XDR is good. But For Infra with Linux only system. It's not that good.

Comments

More Reviews of Microsoft Defender XDR