Works at a consumer goods company with 10,001+ employees
Prioritize security by managing vulnerabilities and improving attack surface protection
Pros and Cons
- "I have not experienced any difficulties or issues with the stability of Microsoft Defender for Cloud."
- "There needs to be improvement in the security recommendations, particularly in attack path mapping. Sometimes, it misleads users about the real exposure of external-facing assets."
What is our primary use case?
We use Microsoft Defender for Cloud primarily for security reasons, particularly focusing on cyber threats. It is utilized in the manufacturing industry.
What is most valuable?
The most valuable features of Microsoft Defender for Cloud include vulnerability management and threat intelligence. Additionally, security recommendations and attack surface reduction (ASR) rules are significant. ASR rules play a crucial role in attack surface reduction, where they ensure that asset devices are well-protected and streamlined for enhanced security.
What needs improvement?
There needs to be improvement in the security recommendations, particularly in attack path mapping. Sometimes, it misleads users about the real exposure of external-facing assets. It would be beneficial to streamline recommendations to avoid unnecessary alerts and to refine the severity of alerts based on specific environments or environmental attributes.
For how long have I used the solution?
I have been using the solution for three years.
Buyer's Guide
Microsoft Defender for Cloud
January 2026
Learn what your peers think about Microsoft Defender for Cloud. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
881,082 professionals have used our research since 2012.
What do I think about the stability of the solution?
I have not experienced any difficulties or issues with the stability of Microsoft Defender for Cloud.
What do I think about the scalability of the solution?
I would rate the scalability of Microsoft Defender for Cloud between eight and nine out of ten for our company.
How are customer service and support?
I would rate Microsoft's technical support around seven to eight out of ten. They are supportive but sometimes slow, especially regarding new feature additions and managing their backlog.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I have not evaluated other solutions in this company before using Microsoft Defender for Cloud.
How was the initial setup?
The setup is generally easy, particularly for Windows native operating systems. On a scale of one to ten, I would rate the setup an eight for Windows and a seven to eight for Linux devices.
What's my experience with pricing, setup cost, and licensing?
Initially, the cost was reasonable, but additional services from Microsoft sometimes incur extra expenses that seem higher than expected.
What other advice do I have?
Microsoft Defender for Cloud is compatible with the Microsoft ecosystem and provides decent integration with third-party tools. Overall, I would rate the solution an eight out of ten for its effectiveness and support.
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Systems & Software Engineer at a financial services firm with 10,001+ employees
Lacks granular control and causes interference but supports basic scanning needs
Pros and Cons
- "Our main use cases for Microsoft Defender for Cloud involve scanning PCs."
- "I don't appreciate Microsoft Defender for Cloud because it seems to interfere with many things. That's the problem I've been experiencing with it."
What is our primary use case?
Our main use cases for Microsoft Defender for Cloud involve scanning PCs.
What is most valuable?
I doubt that we are using the unified AI-powered security feature offered by Microsoft Defender for Cloud.
Microsoft Defender for Cloud's integrated XDR feature is not being used.
The GenAI threat protection features for Microsoft Defender for Cloud are not being utilized.
What needs improvement?
I don't appreciate Microsoft Defender for Cloud because it seems to interfere with many things. That's the problem I've been experiencing with it. Before Defender, we had McAfee, which was much better at granular exceptions and changing what it does. Microsoft Defender for Cloud doesn't have that granularity. I can't tell it to leave certain items alone while scanning others. Microsoft Defender for Cloud doesn't really provide that capability, which is a significant problem. It's been causing far more issues than McAfee did.
I think it's too new to have major concerns regarding security when deploying AI applications, at least from my perspective. Regarding scanning a PC, I'm uncertain about the concerns. The actions it takes on those scans might be part of it, but they already have defined policies. For example, if Microsoft Defender for Cloud thinks a piece of software is malicious, it deletes it. I don't believe that's necessarily the best approach. I would prefer it to quarantine the software instead. I think the option for quarantine might exist, but I'm uncertain if it could be modified for that. It probably depends on the threat level or what Microsoft Defender for Cloud perceives as a threat level.
Microsoft Defender for Cloud can be improved with more granular control. They need to examine what McAfee can do.
For how long have I used the solution?
I think we've been using Microsoft Defender for Cloud for about four years now.
What do I think about the stability of the solution?
I've experienced performance issues with Microsoft Defender for Cloud.
What do I think about the scalability of the solution?
In my opinion, Microsoft Defender for Cloud doesn't scale well with the growing needs of the organization. But again, it's just my experience.
How are customer service and support?
Since I don't talk directly to Microsoft support for Defender, we just talk to our internal people who are supposedly the experts in it at the bank. I couldn't give an opinion on Microsoft's support.
I would prefer to bypass our internal people and actually go to Microsoft to get answers, but they won't allow us to do that.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
Prior to adopting Microsoft Defender for Cloud, we were using McAfee. Money is always a factor.
How was the initial setup?
I didn't deploy Microsoft Defender for Cloud.
What about the implementation team?
Agentless scanning for the cloud environment has not been enabled with Microsoft Defender for Cloud.
What was our ROI?
I don't know if I've seen a return on investment with Microsoft Defender for Cloud.
What's my experience with pricing, setup cost, and licensing?
I have no idea about the pricing, setup cost, and licensing because I don't handle that.
Which other solutions did I evaluate?
I don't think anything else was considered before choosing Microsoft Defender for Cloud.
What other advice do I have?
I would advise another organization that's considering Microsoft Defender for Cloud to shop around and make sure it's the best solution. This review has a rating of 5.
Which deployment model are you using for this solution?
Information regarding the deployment model is not provided in the review.
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Information regarding the cloud provider is not provided in the review.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: Nov 20, 2025
Flag as inappropriateBuyer's Guide
Microsoft Defender for Cloud
January 2026
Learn what your peers think about Microsoft Defender for Cloud. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
881,082 professionals have used our research since 2012.
System Administrator at a engineering company with 201-500 employees
Switching to a lighter agent has improved visibility and reduced client-side impact
Pros and Cons
- "The feature of Microsoft Defender for Cloud that I appreciate most is the ability to view logs of applications, as I find it much clearer to understand what is running."
- "Microsoft Defender for Cloud can be improved because many of the functions involve multiple places to accomplish the same task, which can make it convoluted."
What is our primary use case?
My main use cases for Microsoft Defender for Cloud are client-end, as we are replacing our Sophos agents on our client computers with Microsoft Defender.
What is most valuable?
The feature of Microsoft Defender for Cloud that I appreciate most is the ability to view logs of applications, as I find it much clearer to understand what is running.
That feature benefits my company because we are a small company. Previously, we were running a Sophos agent that ran heavily on our computers, and switching over to Defender has made it lighter for us.
Microsoft Defender for Cloud has helped me manage and secure my multi-cloud environments, as we are hybrid-joined, and the insights it has provided are significant. For instance, we were able to identify sub-hosted IPs that were not even part of our segment from another client that our managed service provider was handling.
What needs improvement?
Microsoft Defender for Cloud can be improved because many of the functions involve multiple places to accomplish the same task, which can make it convoluted. It performs the same functions, but you have to navigate to different areas for different tasks, making it confusing at times.
For how long have I used the solution?
I have been using Microsoft Defender for Cloud for approximately one year.
What do I think about the stability of the solution?
As for the stability and reliability of the platform, everything has been going well. I have no complaints and would rate it about an eight.
What do I think about the scalability of the solution?
I would rate Microsoft Defender for Cloud's scalability with the growing needs of my company as approximately an eight.
How are customer service and support?
I have not had to reach out much regarding customer service and technical support, so my thoughts are limited.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
The main differences between Microsoft Defender for Cloud and the other platform I was using involve deployment. Microsoft Defender for Cloud is not on the client-end, so it is not noticeable and not as taxing on system performance.
How was the initial setup?
My experience with the deployment of Microsoft Defender for Cloud has been straightforward, as it went smoothly.
What was our ROI?
The biggest return on investment for me when using Microsoft Defender for Cloud is seen with end-users, as they do not reach out to us regarding issues where the underlying cause was our Sophos agent.
What's my experience with pricing, setup cost, and licensing?
Regarding the pricing, setup cost, and licensing of the platform, what we have paid for is still to be determined, as we are about to renew our licensing at the end of this year.
So far, it has been affordable. In comparison to Sophos that we were running, we have found that it will wind up being approximately the same amount of cost.
Which other solutions did I evaluate?
I am currently considering Windows Defender.
What other advice do I have?
I am not using the unified AI-powered security feature offered by Microsoft Defender for Cloud at this time.
I am not using Microsoft Defender for Cloud's integrated XDR features at this time.
I am not utilizing the enhanced AI threat protection features of Microsoft Defender for Cloud, as there are many AI features we have not explored yet.
I have enabled agentless scanning in my cloud environment.
It has been with Microsoft Defender for Cloud.
I assess the impact on my workload protection without the need for installing agents as really good, considering that it is running smoothly on the client machines without lag or any performance impact.
My advice to other companies considering Microsoft Defender for Cloud is to be aware that there is a lot involved and a lot of what it can do, meaning that you will need to conduct a lot of research and study training material. I rate my overall experience with Microsoft Defender for Cloud an eight.
Which deployment model are you using for this solution?
Hybrid Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: Nov 19, 2025
Flag as inappropriateEnterprise Deployments Lead at a tech services company with 1,001-5,000 employees
Improves multi-cloud security and reduces operational concerns during off-hours
Pros and Cons
- "Microsoft Defender for Cloud has benefited my organization by reducing the overall cost of the Azure package and providing greater peace of mind during off-hours to prevent problems."
- "Comparing Microsoft Defender for Cloud to other solutions on the market, Microsoft needs to push a little bit to improve it."
What is our primary use case?
My main use cases for Microsoft Defender for Cloud cover several Azure solutions.
What is most valuable?
Microsoft Defender for Cloud is integrated with the entire Microsoft suite and does not require purchasing extra add-ons or additional applications.
Microsoft Defender for Cloud has benefited my organization by reducing the overall cost of the Azure package and providing greater peace of mind during off-hours to prevent problems.
Microsoft Defender for Cloud has helped me manage and secure my multi-cloud environment.
Microsoft Defender for Cloud has helped keep our environment secure.
What needs improvement?
Comparing Microsoft Defender for Cloud to other solutions on the market, Microsoft needs to push a little bit to improve it. It works and does what it needs to do, but other companies are offering more.
For how long have I used the solution?
I have been using Microsoft Defender for Cloud for approximately two and a half years.
What do I think about the stability of the solution?
Microsoft Defender for Cloud is reliable and stable.
I have not experienced any malfunctions with Microsoft Defender for Cloud. We have never had issues. At the beginning, about three years ago, there were several issues, but currently we do not have any.
Which solution did I use previously and why did I switch?
Before we started using Microsoft Defender for Cloud, we had been using other applications from third-party companies.
How was the initial setup?
The experience of deploying Microsoft Defender for Cloud is very easy. It is basically only a matter of enabling it and specifying where you want to apply it. There is a basic customization option on the left side for focusing on what you want.
What other advice do I have?
We are not using the unified AI-powered security posture feature.
We are using the XDR, but only for a specific solution due to the cost. If it is needed, we evaluate whether the cost benefits justify enabling and using the XDR.
When we enable the feature, we enable it to perform an analysis. It can provide you with a background check.
We are concerned about the information that the application can provide when deploying AI applications. We worry about any information the solution may give that it cannot usually provide in a correct way.
I would rate this product an 8 overall.
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Last updated: Nov 19, 2025
Flag as inappropriateCEO at a tech vendor with 1-10 employees
Alerts provide value for security-conscious customers while menu overlap requires refinement
Pros and Cons
- "The UX and UI are very good. Users have more of a taste for Microsoft UI."
- "The feature of Microsoft Defender for Cloud that I have found most valuable is the alerts, which are pretty standard for security."
- "An area where Microsoft Defender for Cloud could be improved is in getting away from having multiple menus that do the same thing, which seems imposing when looking at it."
- "An area where Microsoft Defender for Cloud could be improved is in getting away from having multiple menus that do the same thing, which seems imposing when looking at it."
What is our primary use case?
My current use case for Microsoft Defender for Cloud is that we use it primarily for policy. In terms of migrating to Azure, our organization hasn't migrated fully. It has increased the attack surface, so our main use for Microsoft Defender for Cloud is specifically for policy.
What is most valuable?
The feature of Microsoft Defender for Cloud that I have found most valuable is the alerts, which are pretty standard for security. Microsoft Defender has this built in, so more people are coming to it. It's a very recognized brand and more people are coming through it.
We have a large number of customers in Azure, and using Defender means having less variable solutions.
It helps manage attack surface and security posture.
The UX and UI leave something to be desired. Users have more of a taste for Microsoft UI.
The value of Microsoft Defender for Cloud for our organization is notable, especially for our customers that are very security-conscious, as it's beneficial to have it there.
Microsoft Defender for Cloud's CSPM capability has helped our organization assess and manage security posture. The UX and UI is typical Microsoft, the access control takes some time getting used to, and now we just use it on those platforms.
What needs improvement?
An area where Microsoft Defender for Cloud could be improved is in getting away from having multiple menus that do the same thing, which seems imposing when looking at it. It has its upsides and downsides.
For how long have I used the solution?
I have been using Microsoft Defender for Cloud for just over a year.
How are customer service and support?
I've never directly dealt with technical support.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
We did not use other solutions.
How was the initial setup?
The setup is okay. In terms of ease, it's maybe the best out of the major three.
What was our ROI?
I have seen a return on investment with Microsoft Defender for Cloud, as our posture is intact. While it may be somewhat confusing, it has decent feature parity among the major three providers, and businesses have been gradually discovering its potential.
What's my experience with pricing, setup cost, and licensing?
The pricing is pretty standard.
Which other solutions did I evaluate?
We use the stock option on a given cloud platform.
What other advice do I have?
We use it just for customers on Azure.
On a scale of one to ten, I rate Microsoft Defender for Cloud a seven.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: May 5, 2025
Flag as inappropriateSenior Technical Consultant at a computer software company with 501-1,000 employees
Enhanced our security process by providing insights and critical alerts
Pros and Cons
- "Defender for Cloud provides a complete DevOps security package for cloud services."
- "The scalability of Microsoft Defender for Cloud is very good."
- "While we are satisfied with Defender for Cloud's features, an AI enhancement could potentially provide better advice and adapt more effectively to our environment."
What is our primary use case?
We are a managed service provider. We use Microsoft Defender for Cloud to provide services to our customers.
What is most valuable?
Defender for Cloud provides a complete DevOps security package for cloud services. Defender covers a broad range of workloads. It helps us prioritize because it identifies critical alerts that we work to resolve.
Microsoft Defender for Cloud has enhanced our security process by providing insights and critical alerts. We use it on our own managed platform. It has helped us gain some insights and realize areas for improvement. We have worked to resolve the issues highlighted by the alerts, improving our overall security posture.
What needs improvement?
While we are satisfied with Defender for Cloud's features, an AI enhancement could potentially provide better advice and adapt more effectively to our environment.
For how long have I used the solution?
I have been using Defender for Cloud for about three or four months.
What do I think about the stability of the solution?
I haven't observed any outages with Microsoft Defender for Cloud. The stability is excellent.
What do I think about the scalability of the solution?
The scalability of Microsoft Defender for Cloud is very good. I haven't experienced any issues.
How are customer service and support?
I rate Microsoft support eight out of 10. Technical support is generally satisfactory, though call response times can occasionally be slow.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup was straightforward and easy.
What about the implementation team?
We acted as the integrator, being a managed service provider. We haven't yet developed a strategy for implementing it in other companies.
What was our ROI?
Defender for Cloud provides an invaluable return on investment by preventing potential security breaches. The peace of mind it offers is difficult to quantify.
What's my experience with pricing, setup cost, and licensing?
Pricing is a consideration, but we strive to keep costs low by enabling only necessary services.
Which other solutions did I evaluate?
We evaluated other products but focused on adopting a more cloud-native approach with Microsoft's platform.
What other advice do I have?
I rate Microsoft Defender for Cloud nine out of 10. It's progressing well, although perfection takes time.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer. Csp
Infrastructure engineer at a insurance company with 10,001+ employees
The most valuable feature is the regulatory compliance aspect that utilizes predefined frameworks like NIST
Pros and Cons
- "The most valuable feature is the regulatory compliance aspect, where we utilize predefined initiatives like NIST. Alert management is another useful feature. Alerts are directly integrated with our email or DevOps board for easy viewing, allowing us to identify problem areas efficiently."
- "The most valuable feature is the regulatory compliance aspect, where we utilize predefined initiatives like NIST."
- "Defender could improve how data is represented. It can be unstructured or slow to load. The recent update allowing policy grouping into control groups is beneficial, but further enhancements for speed and clarity are needed."
- "Defender could improve how data is represented. It can be unstructured or slow to load."
What is our primary use case?
We primarily use Defender for policies, such as compliance checks and vulnerability management. We have introduced a new system for rolling out policies across the organization, monitoring compliance closely.
How has it helped my organization?
Microsoft Defender for Cloud has significantly improved vulnerability management by tracking compliance, networking issues, storage accounts that shouldn't be public, etc.
What is most valuable?
The most valuable feature is the regulatory compliance aspect, where we utilize predefined initiatives like NIST. Alert management is another useful feature. Alerts are directly integrated with our email or DevOps board for easy viewing, allowing us to identify problem areas efficiently.
Two or three months ago, they released an update that we liked. Now, you can set up control groups based on policies, giving you a clear overview of where you're lacking. Defender covers almost all our workloads. We don't use a multi-cloud environment, but it covers Azure and AWS well.
What needs improvement?
Defender could improve how data is represented. It can be unstructured or slow to load. The recent update allowing policy grouping into control groups is beneficial, but further enhancements for speed and clarity are needed. It would be nice if Defender prioritized vulnerabilities more. It provides an overview of what needs improvement, but I don't know if it's correctly prioritized.
For how long have I used the solution?
I have used Microsoft Defender for Cloud for about two years.
What do I think about the stability of the solution?
The stability could be improved, as it can be slow to load at times, but overall it provides the expected recommendations.
What do I think about the scalability of the solution?
It is very scalable, especially in a cloud environment, allowing for extensive resource coverage for vulnerability management.
How are customer service and support?
I have not used customer service for Defender for Cloud, but generally, I am satisfied with Microsoft's support. They are quick to respond and effectively resolve issues.
How would you rate customer service and support?
Positive
What other advice do I have?
I rate Microsoft Defender for Cloud eight out of 10.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Product Marketing at a tech services company with 10,001+ employees
It offers a comprehensive overview across different workloads
Pros and Cons
- "The most valuable feature is the comprehensive overview across different workloads. It allows us to see protection not just across one workload, such as virtual machines, containers, infrastructure, or data, but across all our workloads. This overall visibility is really helpful."
- "I would rate Microsoft Defender for Cloud a nine out of 10."
- "The range of workloads is broad, but we'd love to add more workloads and make it a single security solution that covers all those workloads. Covering more would allow us to see and protect more workloads from a single pane of glass. Additional features should include protection for more AI workloads as it currently focuses primarily on OpenAI."
- "The range of workloads is broad, but we'd love to add more workloads and make it a single security solution that covers all those workloads."
What is our primary use case?
Our primary use case for Microsoft Defender for Cloud is mostly security posture management.
How has it helped my organization?
Defender for Cloud has improved our security posture. Defender provides us with a prioritized list of security issues to remedy, which improves our security operations because we know what to tackle first.
What is most valuable?
The most valuable feature is the comprehensive overview across different workloads. It allows us to see protection not just across one workload, such as virtual machines, containers, infrastructure, or data, but across all our workloads. This overall visibility is really helpful. The recommendations and prioritizations help us understand what to address first.
I use the free CSPM functionality. I don't always use the recommendations because I'm sometimes scared to implement those immediately.
What needs improvement?
The range of workloads is broad, but we'd love to add more workloads and make it a single security solution that covers all those workloads. Covering more would allow us to see and protect more workloads from a single pane of glass. Additional features should include protection for more AI workloads as it currently focuses primarily on OpenAI.
For how long have I used the solution?
We have been using Microsoft Defender for Cloud for two years.
What do I think about the stability of the solution?
The sustainability of Microsoft Defender for Cloud is quite stable, especially with the free tier we're using. It provides a lot of value for being free.
What do I think about the scalability of the solution?
Scalability is still to be determined. We have deployed it across several workloads, but we'll need to see how it performs as we expand to more resources and workloads.
How are customer service and support?
We haven't had to reach out to customer service or technical support yet. Therefore, I can't rate it at this moment.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I didn't use any different solutions previously. We opted for Microsoft Defender for Cloud due to easy integration with our other Microsoft products.
How was the initial setup?
It was easy to set up as we enabled it across our workloads in Azure.
What about the implementation team?
We handled the deployment ourselves without any integrator, reseller, or consultant.
What was our ROI?
Being a free tool, it provides visibility and insights into workloads that we wouldn't have had otherwise. This is definitely a good return on investment.
What's my experience with pricing, setup cost, and licensing?
We only use the free tier, so we haven't faced any pricing, setup costs, or licensing challenges.
Which other solutions did I evaluate?
We didn't evaluate any other solutions as Microsoft Defender for Cloud integrated easily with our existing Microsoft products.
What other advice do I have?
I would rate Microsoft Defender for Cloud a nine out of 10. It offers free insights and extensive visibility into workloads for a free product, which is great for us.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: My company has a business relationship with this vendor other than being a customer. Interact
Buyer's Guide
Download our free Microsoft Defender for Cloud Report and get advice and tips from experienced pros
sharing their opinions.
Updated: January 2026
Product Categories
Cloud Workload Protection Platforms (CWPP) Vulnerability Management Container Management Container Security Cloud Security Posture Management (CSPM) Cloud-Native Application Protection Platforms (CNAPP) Data Security Posture Management (DSPM) Microsoft Security Suite Compliance Management Cloud Detection and Response (CDR)Popular Comparisons
Microsoft Intune
Microsoft Defender for Endpoint
SentinelOne Singularity Cloud Security
Prisma Cloud by Palo Alto Networks
Microsoft Defender for Office 365
Checkmarx One
Microsoft Sentinel
Qualys VMDR
Microsoft Defender XDR
Buyer's Guide
Download our free Microsoft Defender for Cloud Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- How is Prisma Cloud vs Azure Security Center for security?
- What tools provide the best container environment security?
- When evaluating Cloud Workload Security, what aspect do you think is the most important to look for?
- Can we customize the dashboard in Threat Stack Cloud Security Platform? Any recommendations for an alternative solution supporting dashboards?
- What are the best cloud workload security software solutions?
- Why use cloud workload security software?
- Why are Cloud Workload Protection Platforms (CWPP) important for companies?
- Why is CWPP (Cloud Workload Protection Platforms) important for companies?















