

IRONSCALES and Microsoft Defender for Identity are notable competitors in the email security and identity protection category. IRONSCALES has an advantage in terms of advanced automated detection and response capabilities while Microsoft Defender for Identity excels in threat visibility and integration within the Microsoft ecosystem.
Features: IRONSCALES is known for its automated detection and response, AI capabilities, and community threat-sharing which enhances phishing detection and provides rapid threat mitigation. Microsoft Defender for Identity offers comprehensive threat visibility, real-time analytics, and anomaly detection across both cloud and on-premises environments, integrating seamlessly with other Microsoft tools for cohesive identity protection.
Room for Improvement: Users of IRONSCALES suggest improvements in Google Suite integration, reporting features, and user interface simplification. There is also a call for more security awareness content and improved mobile app notifications. For Microsoft Defender for Identity, reducing false positives, enhancing administrative interfaces, and better on-premises system integration are areas for growth. Users also desire streamlined alert correlations and an improved threat intelligence schema.
Ease of Deployment and Customer Service: IRONSCALES is valued for its versatile deployment options across cloud environments and proactive customer support, often praised for quick issue resolution. Microsoft Defender for Identity supports both cloud and on-premises deployments and is noted for helpful and responsive technical support. Both receive positive feedback, with IRONSCALES notably appreciated for its proactive customer handling.
Pricing and ROI: IRONSCALES is relatively expensive but justified by its effectiveness and substantial ROI in reducing manual intervention and preventing security breaches. Meanwhile, Microsoft Defender for Identity, included in Microsoft 365, is perceived as cost-effective within the ecosystem despite occasional cost concerns compared to standalone alternatives. The different pricing tiers, particularly E5 offering better cost benefits, are highlighted.
Customer support for IRONSCALES is outstanding.
I would rate their technical support as very good, as they respond promptly when my team opens a ticket.
Generally, the support is more effective than other providers like Oracle.
The quality of support is very good, but troubleshooting can take time due to complex setups and the need to provide many logs.
The people I normally use for support are very knowledgeable, especially when they help remote in and get to where I need to go and show me much faster and help me understand what I should be doing.
In a Microsoft-centric organization, especially with Azure infrastructure and Office 365, Microsoft Defender for Identity is scalable.
Microsoft Defender for Identity is quite robust and built on Azure hyperscale infrastructure, with a 99% availability.
We do not see any issues with the stability of Microsoft Defender for Identity.
Having recently started using it, reliability is affirmed, but manual investigation is often performed to verify if alerts identified by auto-remediation are accurate.
If there were clickable drill downs on specific users or specific correspondence to relate them to certain types of mails, that would be beneficial.
Having a more user-friendly UI would make it easier to identify features and options when using the tool.
Though this isn't problematic for our users, the content could be updated more frequently.
If Microsoft could develop a feature that indicates when impossible travel is caused by VPN connections, it would prevent unnecessary password resets and session disruptions, especially for VIP users in organizations.
One improvement I would recommend is the integration of an admin application within Teams, allowing easy access to attack information on a mobile platform.
Reducing false positives is something we've been working on with Microsoft.
While I don't specifically oversee the pricing details, I understand that IRONSCALES is in the range of similar solutions while offering better results.
If they can reduce the costs, organizations will be happy, and it will compensate for using the Azure environment, which is more expensive on the infrastructure as a service side.
Ensuring a fair price according to market standards.
From an organization perspective, using E5 licenses is value for money, especially if Azure and Office 365 are already in use.
IRONSCALES has positively impacted my organization by making email security simple in terms of controlling mails, understanding where the threats are, and protecting the organization itself.
The best features of IRONSCALES are that most alerts are validated through AI, which reduces the fatigue of alerts that need to be worked on by the team handling the alerts investigation part.
IRONSCALES excels at analyzing the intention, not just the content itself, but the sender's attempt to gain user attention.
We receive an advance report of risky users, allowing us to take preemptive action before an attack causes damage to organization details.
The most valuable feature is its hybrid artificial intelligence, which gathers forensic data to track and counteract security threats, much like the CSI series in effect.
The advanced threat protection is one of the strengths of Microsoft Defender for Identity, as it utilizes user and entity analytics and can detect indicative attacks.
| Product | Market Share (%) |
|---|---|
| Microsoft Defender for Identity | 4.3% |
| IRONSCALES | 2.8% |
| Other | 92.9% |
| Company Size | Count |
|---|---|
| Small Business | 7 |
| Midsize Enterprise | 4 |
| Large Enterprise | 4 |
| Company Size | Count |
|---|---|
| Small Business | 8 |
| Midsize Enterprise | 4 |
| Large Enterprise | 14 |
IRONSCALES delivers cutting-edge AI-driven email phishing detection and prevention, seamlessly integrating with Microsoft 365 for enhanced security.
IRONSCALES, with its advanced AI capabilities, focuses on email security by detecting phishing threats, mitigating business email compromises, and preventing impersonation. Its integration with Microsoft 365 strengthens spam filters, automatically responding to suspicious emails. The platform is used globally for threat inspection, quarantine, and end-user incident reporting. Staff training is enhanced through simulated phishing campaigns, offering an extra layer of protection beyond Microsoft's spam filters. Areas for improvement include better Google Suite integration, pricing adjustments, and enhanced reporting features.
What features make IRONSCALES stand out?In finance, IRONSCALES plays an essential role in safeguarding sensitive data from phishing attacks, ensuring compliance with industry standards. Educational institutions use IRONSCALES for training faculty and students on recognizing phishing attempts, thereby enhancing overall cybersecurity awareness. IT sectors leverage its capabilities for managing complex threat landscapes.
Microsoft Defender for Identity offers real-time threat detection and protection for hybrid Active Directory environments. It integrates with Microsoft 365 components for seamless security and monitors advanced behaviors, enhancing identity protection across cloud and on-premises environments.
Microsoft Defender for Identity provides detailed threat insights and user behavior analytics to detect unauthorized access and notify anomalies. It allows setting custom detection rules, enhancing threat response automation. While it needs improvements in cloud security, SIEM integration, and access controls, users leverage its ability to mitigate identity threats like suspicious logins and ransomware. Enhanced integration with Microsoft security products ensures a coordinated threat response for identity control and privilege management.
What are the key features of Microsoft Defender for Identity?In specific industries, organizations implement Microsoft Defender for Identity to secure on-premises and hybrid Active Directory environments through user and entity behavior analytics, malicious activity detection, and integration with Microsoft security tools. This approach enhances security posture assessment and helps mitigate identity threats like identity harvesting and unauthorized access.
We monitor all Advanced Threat Protection (ATP) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.