Microsoft Defender XDR vs Microsoft Purview Data Governance comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Microsoft Defender XDR
Ranking in Microsoft Security Suite
1st
Average Rating
8.4
Number of Reviews
82
Ranking in other categories
Endpoint Detection and Response (EDR) (7th), Extended Detection and Response (XDR) (5th)
Microsoft Purview Data Gove...
Ranking in Microsoft Security Suite
7th
Average Rating
7.8
Number of Reviews
51
Ranking in other categories
Data Governance (1st)
 

Market share comparison

As of June 2024, in the Microsoft Security Suite category, the market share of Microsoft Defender XDR is 4.9% and it decreased by 53.0% compared to the previous year. The market share of Microsoft Purview Data Governance is 5.3% and it increased by 54.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Microsoft Security Suite
Unique Categories:
Endpoint Detection and Response (EDR)
8.4%
Extended Detection and Response (XDR)
23.3%
Data Governance
24.1%
 

Featured Reviews

David Shlingbaum - PeerSpot reviewer
May 27, 2024
It gives you reports and updates about the latest hotfixes and zero-day vulnerabilities
We're a small business. Defender XDR gives us a centralized security solution for monitoring our servers and some user PCs. We have around 30 machines, 10 of which are servers.  Defender XDR saves the security team time by telling us what patches to apply. We also get preemptive notes about things…
Afeez Olaboye - PeerSpot reviewer
Dec 26, 2023
Helps protect data across multi-platform environments, connects to a wide range of devices, and helps us stay compliant
Ensuring data protection across multi-cloud and multi-platform environments through Purview is crucial for us. Currently operating on Azure and AWS, we plan to migrate a portion of our on-premises workloads to the cloud. To achieve this, we will leverage Purview for data loss prevention on our virtual machines and utilize Azure Arc for centralized management of all our platforms. Purview's ability to connect to a wide range of devices, including iOS, Android, and others, enhances our visibility into BYOD devices deployed across our environments. As a public organization, we are bound by policies and regulations. To ensure compliance across Azure Dynamics 365 and Office 365, both locally and internationally, we leverage the native compliance capabilities of Purview, which integrates seamlessly with both platforms. The DLP for remediating policy violations works well. We can easily view the details and conduct investigations from a single dashboard. We recently started using Purview for DLP on Mac OS devices. Implementing Purview as our primary data loss prevention solution has yielded significant benefits. Our Microsoft E5 license provides enhanced protection across the organization, offering immense value through its comprehensive features. Consequently, we have been able to streamline our security posture by consolidating third-party solutions and focusing on Purview and other robust Microsoft applications. Microsoft Purview has streamlined our workflow by consolidating diverse systems into a single, user-friendly dashboard. This one-stop shop simplifies access and management across our organization. Microsoft Purview enables us to show our compliance in real-time. We are satisfied with the speed at which Purview provides alerts and details to us. Microsoft Purview has significantly shortened the response time to insider threats by almost 70 percent. It can rapidly block unauthorized user access, leading to a reduction in required manpower. Microsoft Purview has helped to save money by preventing the loss of data in our environment as well as around 60 percent of our admin user's time. Purview helps us stay on top of compliance. We no longer have to review incidents manually, improving compliance by 80 percent.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature of the solution stems from the fact that Microsoft Defender XDR is easy to integrate with other Microsoft platforms or products."
"The common and advanced security policies for threat hunting and blocking attacks are valuable."
"We also use Microsoft Sentinel, Defender for Cloud, Defender for Identity, and Microsoft Defender for Cloud Apps. They are all integrated and it was very easy to integrate them. In my experience with the integrations, it was just a click of a button and things were integrated. It's just a button."
"The visibility into threats is also very impressive because Microsoft helps you predict things and provides analytics to help you really improve your security. And all of this technology works across the domain, so it is pretty helpful in terms of threat analytics."
"The product is very easy to use."
"The best feature is probably the alert generation. When I do a security reset, the other session triggers instantly from the Defender console, and I can work on it. The policies are three times, but they are also ready to install it."
"The most valuable aspect is undoubtedly the exploration capability"
"Microsoft 365 Defender is a good solution and easy to use."
"I think Purview does as good a job...I'll say that it is as stable as the data governance maturity that exists within an organization. It can't be more stable than that."
"The documentation is very exhaustive. Anyone can go ahead and try different use cases."
"It starts off with records management, insider risk management, and information protection. And there is the discovery of the clouds, and we can get analytics on that as well, so that we know which user is using which cloud application and for how much time. The Activity explorer tells us which user was transferring out what data at what moment and on which device, including the serial number."
"The product has helped us save both time and money."
"MIP also provides strong information rights management settings, such as the ability to specify who has access to content and at what time."
"The best part is that I can create classifications per my requirements. I use it to classify multiple platforms like AWS, GCP, Azure, and different file sharing systems."
"I like Purview's data discovery features. It automatically scans and identifies all the fields. In the last project, the customer required us to have some of the codes we specified in this, and we had to structure the codes in a specific way. We can define the structure."
"Purview helped us automate and control our data without having to rely on people to manually tag documents with specific retention periods."
 

Cons

"The support from Microsoft could improve. There are times I have to wait for a response from a qualified specialist."
"It would be highly beneficial if CoPilot could identify anomalies within the network and notify the IT team."
"We should be able to use the product on devices like Apple, Linux, etc."
"There are still some components, such as vulnerability management within the vendor product, where improved integration would be beneficial."
"There should be better information for experts on features in the solution. What I see when reading about features in Microsoft 365 Defender is that it is always general information. If Microsoft could go deeper into details for the experts about how to use the tools, usage of it would be more familiar and it would be easier to use."
"The management features could be improved, particularly in terms of better integration with Intune, Microsoft's cloud-based management solution."
"Intrusion detection and prevention would be great to have with 365 Defender."
"Just like in any solution, the price can always be cheaper."
"We've had a few issues with the scanner. It runs perfectly one day, and on another day, it will run the whole night. It's probably related to the rules. If I set some compliance rules and apply the rules to any column, I can't delete it. I have to disable it and reactivate it."
"Reflecting organizational changes within Purview is impractical."
"The custom data classification for the African region needs to be improved."
"One area for improvement is the detection of data types. This is really important. It has some of that functionality, but I consider it very limited. Maybe they can add some custom programming or machine learning could be particularly useful for the detection of the nature of the data."
"I'd like to see them improve the training for implementing this type of solution."
"There is room for improvement when it comes to Purview's data connector platform in supporting ingestion from non-Microsoft data sources."
"Two features are unsupported—custom insights and the DLP component—that would be beneficial to me as a consultant and for the customer in terms of security and monitoring. Regarding security, DLP would provide a more granular level of data masking. Custom insights would offer more detailed monitoring and alerts that can notify customers of failures or anything requiring urgent action."
"If we could have a view something like we have in CrowdStrike—which is, I believe, the biggest competitor to Microsoft when it comes to security—a node nodal view, which we also have in Defender, that would make it a more complete, one-stop solution. That would save a lot of time for the admins and the engineers."
 

Pricing and Cost Advice

"The solutions price is fair for what they offer."
"I find the pricing to be quite competitive, especially considering its inclusion in our E5 subscription, which provides a comprehensive set of functionalities."
"We have a lot of problems in Latin America regarding the price of Microsoft 365 Defender, because the relationship between dollars and the money of the different countries, it's is a lot. Many customers that have small businesses say that they would like the solution but it is too expensive. However, large companies do not find the cost an issue."
"Microsoft Defender XDR is expensive."
"The licensing fee for Microsoft 365 Defender is fair."
"Microsoft Defender XDR is priced high."
"Understanding the subscription model has been a bit challenging, as every feature or requirement comes with an additional cost."
"I believe that the pricing of the licensing is fair."
"The categorization within the licensing could be improved. There are a lot of solutions within Microsoft Purview. If the licensing could be a bit clearer and the solutions could be better categorized according to function and across multiple environments, that would be excellent. The licensing is very confusing."
"While Purview's standard pricing might not be accessible to most small businesses, we were fortunate to benefit from the educational pricing which made it a financially viable option for our needs."
"The price is reasonable because most of our clients already have an E3 license, which makes implementation easy."
"I would rate the cost of Microsoft Purview a six out of ten with ten being the most expensive."
"The price is reasonable considering its value."
"Microsoft Purview has a pay-per-use pricing model, so it's one of the most cost-effective tools, as your cost will be based on your usage. It's a pricing model that Microsoft has nailed down, making it great whether you're a small organization or a multinational, giant organization."
"Some people find the tier licensing system complicated, but it offers a lot of value for money if we use the features."
"The pricing is moderate. It's not too expensive, but it's not the most competitive."
report
Use our free recommendation engine to learn which Microsoft Security Suite solutions are best for your needs.
787,061 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
17%
Financial Services Firm
10%
Government
8%
Manufacturing Company
8%
Computer Software Company
14%
Financial Services Firm
13%
Government
9%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Microsoft 365 Defender?
Microsoft Defender XDR provides strong identity protection with comprehensive insights into risky user behavior and potential indicators of compromise.
What is your experience regarding pricing and costs for Microsoft 365 Defender?
Microsoft Defender XDR is expensive, especially for the full suite functionality. However, when compared to buying multiple-point solutions separately, it may be comparable in price. Overall, it is...
What needs improvement with Microsoft 365 Defender?
Improving scalability, especially for very large tenants, could be beneficial for Microsoft Defender XDR. Additionally, enhancing the privilege access management capability would make it a better s...
What do you like most about Microsoft Azure Purview?
It is designed to seamlessly connect to various data sources, which is particularly beneficial for our customers who primarily use Microsoft technologies.
What is your experience regarding pricing and costs for Microsoft Azure Purview?
Currently, the licensing differs for the governance side compared to the risk and compliance side. On the governance side, the charges are based on the usage of Purview, including the data map, dat...
What needs improvement with Microsoft Azure Purview?
Data quality has been a highly requested feature among customers. While it was initially scheduled for release in December last year, I anticipate that this feature will be available soon this year...
 

Also Known As

Microsoft 365 Defender, Microsoft Threat Protection, MS 365 Defender
Microsoft Purview, MS Azure Purview
 

Learn More

Video not available
 

Overview

 

Sample Customers

Accenture, Deloitte, ExxonMobil, General Electric, IBM, Johnson & Johnson and many others.
Information Not Available
Find out what your peers are saying about Microsoft Defender XDR vs. Microsoft Purview Data Governance and other solutions. Updated: May 2024.
787,061 professionals have used our research since 2012.