

Microsoft Defender for Identity and Varonis Platform compete in identity security and data governance. Microsoft Defender for Identity appears to have the upper hand due to its integration with Microsoft's ecosystem, which is particularly advantageous for Microsoft-centric organizations, while Varonis Platform is noted for its robust data governance features but is often considered more costly.
Features:Microsoft Defender for Identity is integrated with Microsoft 365, Azure, and other Defender components, providing extensive threat monitoring and identity protection. It utilizes Active Directory Federation and advanced historical logging capabilities to enhance security monitoring. Varonis Platform offers robust data access controls, transparent monitoring, and unified reporting that aid in data classification and compliance.
Room for Improvement:Microsoft Defender for Identity can be complex to set up and may generate frequent false positives. Its Azure integration and API could be improved for better automation. Varonis Platform has a complex interface, high licensing costs, and its transition to cloud needs refinement, especially in data scanning and remediation capabilities for large datasets.
Ease of Deployment and Customer Service:Microsoft Defender for Identity benefits from strong Microsoft cloud integration, supporting hybrid and on-premises models. Customer support varies from excellent to needing improvement. Varonis Platform is primarily on-premises, perceived as complex with a need for improved cloud capabilities. Customer service experiences also vary, with some users satisfied while others see it as an improvement area.
Pricing and ROI:Microsoft Defender for Identity is included in Microsoft E5 licensing, offering cost-effectiveness for companies using Microsoft services, with competitive pricing and ROI through management simplicity and incident prevention. Varonis Platform is seen as expensive but offers significant data governance security benefits, which justifies its cost for enhancing data security and compliance.
I definitely say that we have had time savings by using the DataVantage module and also time savings using the AD module when we are dealing with different incidents.
I have seen a return on investment mainly through time savings and improved security for sensitive data, making it a valuable investment.
Generally, the support is more effective than other providers like Oracle.
The quality of support is very good, but troubleshooting can take time due to complex setups and the need to provide many logs.
The people I normally use for support are very knowledgeable, especially when they help remote in and get to where I need to go and show me much faster and help me understand what I should be doing.
The customer support is above par; it is what I think other organizations should look at to be comparable to.
They respond quickly to anything we need, which is not common among platforms.
I would rate the customer support for Varonis Platform at nine out of ten.
In a Microsoft-centric organization, especially with Azure infrastructure and Office 365, Microsoft Defender for Identity is scalable.
Varonis Platform is highly rated for scalability.
Varonis's scalability as eight to eight point five out of ten.
Microsoft Defender for Identity is quite robust and built on Azure hyperscale infrastructure, with a 99% availability.
We do not see any issues with the stability of Microsoft Defender for Identity.
Having recently started using it, reliability is affirmed, but manual investigation is often performed to verify if alerts identified by auto-remediation are accurate.
If Microsoft could develop a feature that indicates when impossible travel is caused by VPN connections, it would prevent unnecessary password resets and session disruptions, especially for VIP users in organizations.
One improvement I would recommend is the integration of an admin application within Teams, allowing easy access to attack information on a mobile platform.
Reducing false positives is something we've been working on with Microsoft.
Varonis requires more access permissions for its core functions compared to competitors, which can be a concern for companies about data safety.
A phishing email module would be great; I look forward to when that comes out.
Enhancing tighter integration with third-party solutions, such as SIEM or SOAR platforms, for smoother incident response workflows.
If they can reduce the costs, organizations will be happy, and it will compensate for using the Azure environment, which is more expensive on the infrastructure as a service side.
Ensuring a fair price according to market standards.
From an organization perspective, using E5 licenses is value for money, especially if Azure and Office 365 are already in use.
Varonis is known for its high licensing cost, which can include the cost of multiple servers required for its operations, called collectors.
My experience with pricing, setup costs, and licensing for Varonis Platform has been good, with competitive costs.
We receive an advance report of risky users, allowing us to take preemptive action before an attack causes damage to organization details.
The most valuable feature is its hybrid artificial intelligence, which gathers forensic data to track and counteract security threats, much like the CSI series in effect.
The advanced threat protection is one of the strengths of Microsoft Defender for Identity, as it utilizes user and entity analytics and can detect indicative attacks.
Varonis is excellent for scanning unstructured data sources like file shares, OneDrive, SharePoint, Azure Blob Storage, and S3s.
Varonis Platform is agent-based and AI-driven for detection and response, identifying data based on its content and context.
We have created automatic scripts in case there is a chance that it is a ransomware malicious actor, and it will automatically disable the user, log them out, and disable the actual workstation.
| Product | Market Share (%) |
|---|---|
| Microsoft Defender for Identity | 11.1% |
| Varonis Platform | 5.7% |
| Other | 83.2% |

| Company Size | Count |
|---|---|
| Small Business | 8 |
| Midsize Enterprise | 4 |
| Large Enterprise | 14 |
| Company Size | Count |
|---|---|
| Small Business | 3 |
| Midsize Enterprise | 2 |
| Large Enterprise | 12 |
Microsoft Defender for Identity offers real-time threat detection and protection for hybrid Active Directory environments. It integrates with Microsoft 365 components for seamless security and monitors advanced behaviors, enhancing identity protection across cloud and on-premises environments.
Microsoft Defender for Identity provides detailed threat insights and user behavior analytics to detect unauthorized access and notify anomalies. It allows setting custom detection rules, enhancing threat response automation. While it needs improvements in cloud security, SIEM integration, and access controls, users leverage its ability to mitigate identity threats like suspicious logins and ransomware. Enhanced integration with Microsoft security products ensures a coordinated threat response for identity control and privilege management.
What are the key features of Microsoft Defender for Identity?In specific industries, organizations implement Microsoft Defender for Identity to secure on-premises and hybrid Active Directory environments through user and entity behavior analytics, malicious activity detection, and integration with Microsoft security tools. This approach enhances security posture assessment and helps mitigate identity threats like identity harvesting and unauthorized access.
Varonis Platform enhances data security and governance with advanced analytics, identifying unusual access patterns and sensitive areas. Its centralized interface manages permissions across systems, offering essential capabilities for alerting and reporting.
Varonis Platform provides continuous data protection and monitoring by identifying and alerting on unauthorized data access. It offers comprehensive insights into file access and user activities, supporting data classification and simplifying compliance with tracking and monitoring capabilities. Integration with storage systems enables users to manage permissions and access effectively. Room for improvement includes cloud integration and simplifying its interface and calculation engine for ease of use. Challenges include on-premises dependency, licensing costs, and a need for enhanced DLP capabilities.
What are the primary features of Varonis Platform?
What benefits and ROI should users expect?
In finance, Varonis aids in safeguarding sensitive financial data, while in healthcare, it secures patient records. Legal industries utilize it for protecting client information, and retail sectors manage sensitive customer data. These industries benefit from Varonis' ability to prevent unauthorized access and streamline compliance.
We monitor all Identity Threat Detection and Response (ITDR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.