

Palo Alto Networks WildFire and Microsoft Defender for Identity compete in the cybersecurity category, focusing on threat prevention and identity protection. Palo Alto Networks WildFire has the upper hand in threat prevention with its robust features, while Microsoft Defender for Identity leads in identity-based threat detection through its integration with Microsoft 365.
Features: Palo Alto Networks WildFire provides advanced firewall features, URL filtering, DNS security, and seamless third-party integration. It also offers cloud-based protection and advanced threat analytics, coupled with machine learning for automating threat responses. Microsoft Defender for Identity excels in integration with Microsoft 365, providing behavioral analytics and advanced identity threat detection. It collaborates well with Azure and Microsoft security solutions to offer comprehensive insights into identity-based threats.
Room for Improvement: Palo Alto Networks WildFire users note its complex setup and limited non-Windows platform support. Users seek better automation and third-party system integration, as well as improved pricing structures. Microsoft Defender for Identity could enhance alert management by reducing false positives and offering more custom detection rules, while better integration with non-Microsoft solutions would be beneficial.
Ease of Deployment and Customer Service: Palo Alto Networks WildFire requires seasoned IT professionals for deployment across various environments, including on-premises and hybrid clouds. Its customer support is mostly responsive, though some users experience challenges with technical assistance. Microsoft Defender for Identity integrates seamlessly within the Microsoft ecosystem, providing straightforward cloud-based deployments. Its customer service is generally supportive, though some users need more detailed documentation for advanced troubleshooting.
Pricing and ROI: Palo Alto Networks WildFire is known for its high pricing, which reflects its comprehensive threat prevention capabilities and integration options. However, this pricing can be complex with separate licensing for additional features, though it offers considerable ROI through threat detection and reduced operational costs. Microsoft Defender for Identity is part of the Microsoft 365 E5 licensing, offering competitive pricing with scalability factors that might increase costs. It promises indirect savings through streamlined identity management and reduced threat management overhead.
The service generates a low rate of false positives, reducing the overhead of managing false positive events.
Generally, the support is more effective than other providers like Oracle.
The quality of support is very good, but troubleshooting can take time due to complex setups and the need to provide many logs.
The people I normally use for support are very knowledgeable, especially when they help remote in and get to where I need to go and show me much faster and help me understand what I should be doing.
There is a lack of SLA adherence, and third-party partners do not provide prompt responses.
We have had some open tickets for months, maybe half a year, and there is no real answer.
The service response times are aligned with standards, responding within a few hours based on the problem's criticality.
In a Microsoft-centric organization, especially with Azure infrastructure and Office 365, Microsoft Defender for Identity is scalable.
Wildfire is highly scalable.
Palo Alto Networks WildFire is scalable, and I give it a nine for scalability.
The on-premises version is expensive to scale as it might need an additional device to be installed in the setup.
Microsoft Defender for Identity is quite robust and built on Azure hyperscale infrastructure, with a 99% availability.
We do not see any issues with the stability of Microsoft Defender for Identity.
Having recently started using it, reliability is affirmed, but manual investigation is often performed to verify if alerts identified by auto-remediation are accurate.
It performs filtering, malware blocking, and scanning.
The solution is scalable and stable.
If Microsoft could develop a feature that indicates when impossible travel is caused by VPN connections, it would prevent unnecessary password resets and session disruptions, especially for VIP users in organizations.
One improvement I would recommend is the integration of an admin application within Teams, allowing easy access to attack information on a mobile platform.
Reducing false positives is something we've been working on with Microsoft.
It should be easier to establish the Palo Alto Networks WildFire cluster between the devices.
The dashboard should provide better visibility, especially in showing how many files are sent to Wildfire and their findings.
It is a very good product.
If they can reduce the costs, organizations will be happy, and it will compensate for using the Azure environment, which is more expensive on the infrastructure as a service side.
Ensuring a fair price according to market standards.
From an organization perspective, using E5 licenses is value for money, especially if Azure and Office 365 are already in use.
I would rate it an eight out of ten in terms of affordability.
We receive an advance report of risky users, allowing us to take preemptive action before an attack causes damage to organization details.
The most valuable feature is its hybrid artificial intelligence, which gathers forensic data to track and counteract security threats, much like the CSI series in effect.
The advanced threat protection is one of the strengths of Microsoft Defender for Identity, as it utilizes user and entity analytics and can detect indicative attacks.
Integrating Palo Alto Networks WildFire with various security protocols similar to a firewall has significantly improved the overall threat detection capabilities in our organization.
The most valuable feature of Wildfire is its sandboxing capability for examining suspicious files or locations.
The integration and working with third-party solutions was very seamless and smooth.
| Product | Mindshare (%) |
|---|---|
| Palo Alto Networks WildFire | 7.3% |
| Microsoft Defender for Identity | 3.6% |
| Other | 89.1% |

| Company Size | Count |
|---|---|
| Small Business | 8 |
| Midsize Enterprise | 5 |
| Large Enterprise | 15 |
| Company Size | Count |
|---|---|
| Small Business | 38 |
| Midsize Enterprise | 15 |
| Large Enterprise | 29 |
Microsoft Defender for Identity offers real-time threat detection and protection for hybrid Active Directory environments. It integrates with Microsoft 365 components for seamless security and monitors advanced behaviors, enhancing identity protection across cloud and on-premises environments.
Microsoft Defender for Identity provides detailed threat insights and user behavior analytics to detect unauthorized access and notify anomalies. It allows setting custom detection rules, enhancing threat response automation. While it needs improvements in cloud security, SIEM integration, and access controls, users leverage its ability to mitigate identity threats like suspicious logins and ransomware. Enhanced integration with Microsoft security products ensures a coordinated threat response for identity control and privilege management.
What are the key features of Microsoft Defender for Identity?In specific industries, organizations implement Microsoft Defender for Identity to secure on-premises and hybrid Active Directory environments through user and entity behavior analytics, malicious activity detection, and integration with Microsoft security tools. This approach enhances security posture assessment and helps mitigate identity threats like identity harvesting and unauthorized access.
Palo Alto Networks WildFire provides robust threat prevention with emphasis on automated malware detection and real-time security updates. Seamless integration and intuitive deployment enhance its ability to protect environments effectively, addressing advanced threat scenarios.
Palo Alto Networks WildFire is recognized for its threat detection capabilities, offering automated analysis of emails and effective malware response. The integration with Palo Alto's ecosystem ensures users benefit from seamless operations while safeguarding on-premise and cloud infrastructures. It supports VPN, URL filtering, and user identification with a focus on reducing manual intervention. Users note its complexity and high pricing but appreciate the efficient deployment once configured. Integration with third-party systems requires attention, but it remains vital for those requiring advanced network security measures.
What are the key features of Palo Alto Networks WildFire?Industries like banking leverage Palo Alto Networks WildFire for securing infrastructure against zero-day threats and cyber-attacks. It is widely used for scanning files and emails, ensuring malicious activity is prevented. Integrated with firewalls, WildFire strengthens cybersecurity frameworks, protecting organizations from evolving security challenges.
We monitor all Advanced Threat Protection (ATP) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.