Try our new research platform with insights from 80,000+ expert users

Azure Bastion vs Microsoft Defender for Cloud Apps comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Azure Bastion
Ranking in Microsoft Security Suite
17th
Average Rating
8.6
Reviews Sentiment
7.3
Number of Reviews
9
Ranking in other categories
Network Monitoring Software (28th), Remote Monitoring and Management (RMM) (7th)
Microsoft Defender for Clou...
Ranking in Microsoft Security Suite
11th
Average Rating
8.4
Reviews Sentiment
7.4
Number of Reviews
33
Ranking in other categories
Cloud Access Security Brokers (CASB) (4th), Advanced Threat Protection (ATP) (13th)
 

Mindshare comparison

As of December 2024, in the Microsoft Security Suite category, the mindshare of Azure Bastion is 1.6%, up from 1.5% compared to the previous year. The mindshare of Microsoft Defender for Cloud Apps is 2.2%, up from 1.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Microsoft Security Suite
 

Featured Reviews

Aladin Steiner - PeerSpot reviewer
Has good scalability and provides secure access to the virtual machines
The product improved the security posture of our organization. We don’t have open ports and connect them to servers using it. We can carry out two-factor authentication to protect the devices with conditional access features. It would be nice to have a feature to copy and paste the files into servers. I rate the product a nine out of ten.
Anthony Alvarico - PeerSpot reviewer
Provides discovery, data exfiltration, and sensitive data exposure at low cost
The deployment process is quick, taking two to three days. The implementation and customization require more time. We need to adjust the setup to fit the client's needs, which involves fine-tuning notifications and alerts to avoid overwhelming them. First, you need the appropriate licensing. Once you have that, go to security.microsoft.com and integrate with Defender for Endpoints to receive information. While you can ingest logs from different firewalls, such as Palo Alto or Cisco, we usually implement them with Defender for Endpoints. Once a laptop or desktop is set up in Defender for Endpoints, integrating Cloud Apps with the endpoints allows us to collect the data easily. I rate the initial setup a nine out of ten, where one is difficult and ten is easy.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most significant advantage lies in its runbook features, particularly beneficial for our infrastructure team."
"The solution's most valuable feature is that it is easy to use...It is modernized, so I can create complex infrastructures."
"The product's setup is easy."
"It provides all the security to us. Without getting on the internet, we can access our servers. We can access our desktop through our web browser. We don't need to run the mstsc command and login to the VM. All those things are not required."
"The interface is available in the edit portal."
"The ability to operate the product with scripting is excellent."
"Azure Bastion makes it easy to provide quick virtual machine access to our customers."
"The connection to virtual machines is very useful."
"There are a lot of features with benefits, including discovery, investigation, and putting controls around things. You can't say that you like the investigation part but not the discovery. Everything is correlated; that's how the tool works."
"The most valuable feature is the seamless integration across different clouds."
"All of the features are valuable because all of the features are related."
"It does a great job of monitoring and maintaining a security baseline. For us, that is a key element. The notifications are pretty good."
"The most valuable feature is its policy implementation."
"It is very easy to use, which is what we look for in these types of solutions."
"The solution does not affect a user's workflow."
"The most valuable feature of this solution is its monitoring."
 

Cons

"We are not able to copy and paste files directly into the server over the patch host. We have to transfer files over to Azure Storage."
"The protocol speed could be faster."
"While general support is valuable, having a detailed breakdown of the specific issues would contribute to a more streamlined and efficient resolution process."
"When you have a boot issue on Windows, you cannot use Azure Bastion to fix it. You have to use the Azure console or the VM console, and it is very limited."
"Speaking of AI, having Microsoft Copilot in Azure Bastion would be good."
"There are some challenges because Bastion is more compatible with Edge but not with the other browsers. As an organization, it doesn't make sense that we have to use only Edge. We should be able to access Bastion over Chrome, Mozilla, or Opera. It should be our choice."
"The solution breaks down sometimes."
"You are charged for retrieving your own data."
"It doesn't actually decrease the time to respond. This has been an issue with Microsoft recently. Sometimes, there is a delay when it comes to getting an alert policy email... Sometimes it takes two or three hours for that email to be sent."
"I want them to enhance in-session policy."
"There are challenges with detection and there are challenges with false-positive rates."
"Defender for Cloud apps is primarily useful for Azure apps. It has limited capabilities for applications based on other cloud platforms."
"The integration with macOS operating systems needs to be better."
"We sometimes get errors when we create policies, which is somewhat annoying because some policies stop working due to misconfigurations. We find this challenging because it limits our options for troubleshooting an issue."
"They need to improve the attack surface reduction (ASR) rules. In the latest version, you can implement ASR rules, which are quite useful, but you have to enable those because if they're not enabled, they flag false positives. In the Defender portal, it logs a block for WMI processes and PowerShell. Apparently, it's because ASR rules are not configured. So, you generally have to enable them to exclude, for example, WMI queries or PowerShell because they have a habit of blocking your security scanners. It's a bit weird that they have to be enabled to be configured, and it's not the other way around."
"This service would be better if it had a separate license, only for this service, that could be used to track usage."
 

Pricing and Cost Advice

"The tool is cheaply priced. I would say that the product is free to use."
"It does not save money for us."
"Azure Bastion's pricing is good."
"The pricing is a lower decision point than high-quality security for our organization. Better security comes at a cost, but it's worth it, and that's what we tell our customers."
"I'm not totally involved in the pricing part, but I think its pricing is quite aggressive, and its price is quite similar to Netskope. Netskope has separate licensing fees or additional charges if you want to monitor certain SaaS services, whereas, with MCAS, you get 5,000 applications with their Office 365. It is all bundled, and there's no cost for using that. You only have the operational costs. In the country I am in, it is a bit difficult to get people with the required skill sets."
"The pricing is a little bit high but right now, we are okay with it because of the compatibility with Office 365, Teams, and Azure AD."
"The price could be better and should be reconsidered."
"Its pricing is on the higher side. Its price is definitely very high for a small-scale company. As an enterprise client, we do get benefits from Microsoft. We get a discounted price because of the number of users we have in our company. We have a premier package, and with that, we do get a lot of discounts. There are no additional costs. It only comes in the top-tier packages. Generally, the top-tier license is the best license that you can get for your organization. If you want, you can buy it separately, but that's not a good idea."
"We have an educational licensing agreement. It's a customer agreement for multiple years."
"Our clients normally use the Microsoft E1 licensing, which is renewed yearly."
"It has fair pricing. You pay for what you get. As far as I know, there are no costs in addition to the standard licensing fee."
"Microsoft offers bundle discounts and a pay-as-you-go option."
report
Use our free recommendation engine to learn which Microsoft Security Suite solutions are best for your needs.
824,067 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
19%
Manufacturing Company
10%
Government
8%
Financial Services Firm
7%
Computer Software Company
16%
Financial Services Firm
12%
Manufacturing Company
9%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Azure Bastion?
Azure Bastion makes it easy to provide quick virtual machine access to our customers.
What is your experience regarding pricing and costs for Azure Bastion?
The tool is cheaply priced. I would say that the product is free to use.
What needs improvement with Azure Bastion?
I think the tool is pretty good. It is like having a tool that just works. If there are better tools that Azure comes up with, then that is a separate thing. In the current scenario, Azure Bastion ...
Which is the better security solution - Cisco Umbrella or Microsoft Cloud App Security?
Cisco Umbrella is an integral component of the Cisco SASE architecture. It integrates security in a single, cloud-native solution, unifying multiple features like DNS-layer security, threat intelli...
What do you like most about Microsoft Cloud App Security?
It does a great job of monitoring and maintaining a security baseline. For us, that is a key element. The notifications are pretty good.
What is your experience regarding pricing and costs for Microsoft Cloud App Security?
Honestly, it is expensive. I would rate the price as eight out of ten.
 

Also Known As

No data available
MS Cloud App Security, Microsoft Cloud App Security
 

Overview

 

Sample Customers

Information Not Available
Customers for Microsoft Defender for Cloud Apps include Accenture, St. Luke’s University Health Network, Ansell, and Nakilat.
Find out what your peers are saying about Azure Bastion vs. Microsoft Defender for Cloud Apps and other solutions. Updated: December 2024.
824,067 professionals have used our research since 2012.