Try our new research platform with insights from 80,000+ expert users

Microsoft Entra ID vs Microsoft Entra ID Governance comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 2, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Microsoft Entra ID
Ranking in Identity and Access Management as a Service (IDaaS) (IAMaaS)
1st
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
219
Ranking in other categories
Single Sign-On (SSO) (1st), Authentication Systems (1st), Identity Management (IM) (1st), Access Management (1st), Microsoft Security Suite (2nd)
Microsoft Entra ID Governance
Ranking in Identity and Access Management as a Service (IDaaS) (IAMaaS)
15th
Average Rating
7.4
Reviews Sentiment
7.0
Number of Reviews
8
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of April 2025, in the Identity and Access Management as a Service (IDaaS) (IAMaaS) category, the mindshare of Microsoft Entra ID is 28.4%, down from 29.0% compared to the previous year. The mindshare of Microsoft Entra ID Governance is 1.3%, up from 0.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Identity and Access Management as a Service (IDaaS) (IAMaaS)
 

Featured Reviews

Aaron Liang - PeerSpot reviewer
Has significantly improved secure access to applications and resources in our environment
Microsoft Entra ID has helped by simplifying our management of permissions for APIs. We are not directly exposing credentials, as we use tokens instead. It has made management easier and more secure, especially in a multi-user environment. The implementation of Microsoft Entra ID significantly improved secure access to applications and resources in our environment, primarily through the widespread use of single-sign-on. Managing API permissions became much easier, as application registration often involves calling an API to utilize services without directly exposing credentials, relying instead on token-based authentication. This streamlined approach benefits end-users by simplifying access while remaining transparent to them. Ultimately, my role focuses on ensuring a smooth and user-friendly experience, even if the underlying technology remains unseen by the end-users. Our company strongly emphasizes passwordless authentication, primarily through device-bound passkeys in Microsoft Authenticator. While administrators with high-privileged accounts utilize YubiKeys and passwords for tasks like accessing Microsoft Graph, we are actively transitioning all other users towards passwordless methods such as Windows Hello biometrics. This approach streamlines authentication and enhances security. Though initial deployment in 2022 presented challenges due to hardware limitations and the lingering effects of the COVID-19 pandemic, the technology has significantly improved and provides a simple and effective user experience.
William Kox - PeerSpot reviewer
Great policies and timelines for streamlined compliance
There are some areas where improvements are necessary. Even though we have almost the full package, there are some bugs. I cannot directly perform some tasks from the portal. First, I have to go to the policy, change it, and then return to the package to add it. I cannot do it directly from the package. Workarounds are needed, so that can be improved. At the moment, that is the only issue we are facing that needs enhancement.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Conditional access and Privileged Identity Management (PIM) are the most valuable features from a security perspective."
"It's not intuitive and we use it mainly for our Office 365 files. The integration between the two is interesting. However, the learning curve is high."
"Configuring the domain and setting it up in the Azure portal is just three clicks to be honest."
"As an end-user, the access to shared resources that I get from using this product is very helpful."
"We need something that makes an attacker's life harder."
"It helps us with maintaining enterprise identities."
"Delegated permissions and federated credentials are valuable features of Entra ID."
"Let's say we decide that our users need to have MFA, multi-factor authentication. It is very easy to implement that with Azure Active Directory."
"The solution gives me the capability to automatically move guest accounts from the tenant without any manual intervention."
"The platform's most valuable feature is the single sign-on service."
"The most valuable feature of Microsoft Entra ID Governance for identity management is multi-factor authentication."
"The most valuable features are multifactor authentication and account creation for the Exchange environment in Office 365."
"It is compliant with our RVRT and CSV guidelines."
"The product's most valuable features are the robust audit trail capabilities."
"The most valuable feature of Microsoft Entra ID Governance is access reviews."
"Access reviews are an essential feature of Entra Governance. Additionally, privileged identity management is one of its most valuable features. Just-in-time access, or Jet GIT, is integral to this system. Moreover, user behavior analytics stands out as one of its top features."
 

Cons

"Our users sometimes experience issues from having multiple Microsoft accounts, which can cause some confusion and hassle."
"A recent incident we dealt with took four months to resolve with a seven-day deadline, which was quite frustrating."
"Compared to what we can do on-prem, Azure AD lacks a feature for multiple hierarchical groups. For example, Group A is part of group B. Group B is part of group C. Then, if I put someone into group A, which is part of already B, they get access to any system that group B has access to, and that provisioning is automatically there."
"The solution has certain limitations. For example, it has very little governance functionality."
"I would like to be able to authenticate Wi-Fi users using the Azure ID"
"The thing that is a bit annoying is the inability to nest groups. Because we run an Azure hybrid model, we have nested groups on-premise which does not translate well. So, we have written some scripts to kind of work around that. This is a feature request that we have put in previously to be able to use a group that is nested in Active Directory on-premise and have it handled the same way in Azure."
"The product needs to improve its support."
"My understanding is, in the future, they will be able to bring everything into one single platform and they are not there yet."
"The platform's configuration process needs improvement."
"The product's workflow approval process needs improvement."
"Bridging between on-premises and cloud services has the potential for improvement. For instance, it would be beneficial to be able to synchronize traditional directory schemas with Azure. I need to maintain an on-premises Active Directory server for certain required services."
"Even though we have almost the full package, there are some bugs."
"One area for improvement in Microsoft Entra ID Governance could be providing more granular control over security policies."
"There are some areas where improvements are necessary. Even though we have almost the full package, there are some bugs."
"The solution lacks the feature to work well with third-party applications."
"Microsoft has done a commendable job with RPAX. However, Microsoft should prioritize enhancing its ABAC (Attribute-Based Access Control) capabilities. Currently, Microsoft's ABAC offering falls behind AWS in comparison."
 

Pricing and Cost Advice

"Expensive solution, but if you look at the technical benefits it provides, the price for it is decent."
"Microsoft has a free version of Azure AD. So, if you don't do a lot of advanced features, then you can use the free version, which is no cost at all because it is underpinning Office 365. Because Microsoft gives it to you as a SaaS, so there are no infrastructure costs whatsoever that you need to incur. If you use the free version, then it is free. If you use the advanced features (that we use), it is a license fee per user."
"I'd recommend Azure Active Directory if you are a big company. For small or medium companies, it's probably not the best idea in the world because of the pricing. If you are a small company, you can probably deploy your own solutions because you're not handling a website with tons of traffic. If you are not like Adidas, Nike, or Walmart, you can do it in a way that is more localized than handling everything through a big price solution. However, Azure tends to provide you with solutions that are easier to use. If it was cheaper, I'd definitely recommend going for it."
"We have a yearly license."
"I think the pricing is efficient, but the licensing is overly complicated and difficult to understand. There are many tricks in the licensing that weigh against us."
"The cost of Entra ID depends entirely on our organization's specific needs and use cases."
"It is not too expensive."
"Licensing is easy."
"In the education sector where I work, the annual cost for my Google and Microsoft environments is approximately $35,000. This covers the needs of 3,400 students and 800 faculty and staff members."
"There are no additional costs besides the standard licensing fees."
"While other products give the pricing for their application, Microsoft Entra ID Governance has a per-user-based license model."
"The solution's pricing is not low but reasonable."
report
Use our free recommendation engine to learn which Identity and Access Management as a Service (IDaaS) (IAMaaS) solutions are best for your needs.
845,406 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
33%
Computer Software Company
10%
Financial Services Firm
8%
Manufacturing Company
6%
Computer Software Company
22%
Manufacturing Company
10%
Financial Services Firm
8%
Comms Service Provider
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

How does Duo Security compare with Microsoft Authenticator?
We switched to Duo Security for identity verification. We’d been using a competitor but got the chance to evaluate Duo for 30 days, and we could not be happier. Duo Security is easy to configure a...
What do you like most about Azure Active Directory?
It is very simple. The Active Directory functions are very easy for us. Its integration with anything is very easy. We can easily do third-party multifactor authentication.
What is your experience regarding pricing and costs for Azure Active Directory?
Microsoft Entra ID is reportedly quite expensive for each user regarding security features. The renewal cost is particularly high according to the teams managing purchases.
What do you like most about Microsoft Entra ID Governance?
The most valuable feature of Microsoft Entra ID Governance is access reviews.
What needs improvement with Microsoft Entra ID Governance?
There are some areas where improvements are necessary. Even though we have almost the full package, there are some bugs. I cannot directly perform some tasks from the portal. First, I have to go to...
What is your primary use case for Microsoft Entra ID Governance?
We use it throughout the company. My colleagues and I are utilizing it, and we are creating access packages and so forth. We are using it for the entire company to manage access.
 

Also Known As

Azure AD, Azure Active Directory, Azure Active Directory, Microsoft Authenticator
No data available
 

Interactive Demo

Demo not available
 

Overview

 

Sample Customers

Microsoft Entre ID is trusted by companies of all sizes and industries including Walmart, Zscaler, Uniper, Amtrak, monday.com, and more.
Information Not Available
Find out what your peers are saying about Microsoft Entra ID vs. Microsoft Entra ID Governance and other solutions. Updated: March 2025.
845,406 professionals have used our research since 2012.