Try our new research platform with insights from 80,000+ expert users

Microsoft Defender Threat Intelligence vs ThreatQ comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Aug 11, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Microsoft Defender Threat I...
Ranking in Threat Intelligence Platforms
4th
Average Rating
8.4
Reviews Sentiment
7.4
Number of Reviews
31
Ranking in other categories
Advanced Threat Protection (ATP) (11th), Microsoft Security Suite (18th)
ThreatQ
Ranking in Threat Intelligence Platforms
16th
Average Rating
7.0
Reviews Sentiment
6.6
Number of Reviews
2
Ranking in other categories
Security Orchestration Automation and Response (SOAR) (23rd)
 

Mindshare comparison

As of April 2025, in the Threat Intelligence Platforms category, the mindshare of Microsoft Defender Threat Intelligence is 2.7%, up from 2.1% compared to the previous year. The mindshare of ThreatQ is 3.0%, up from 3.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Threat Intelligence Platforms
 

Featured Reviews

Nim Nadarajah - PeerSpot reviewer
A native Microsoft solution the provides great ROI and continuously improves its offering
We have Microsoft bias. We generally don't have any significant negative feedback or improvement points around Defender, EDR and CMDR platforms. It does a good job across the board. The price point is something they can improve slightly for those who don't have an M 365 E5. I believe it's a $2.80 cents add-on. In Canadian, that's expensive. If they can drop it to a dollar, for those who don't have M 365 E5, they're going to open up market share and increase affordability for an entire market segment in the medium business category. Other than that, we have no major negative feedback.
reviewer2384535 - PeerSpot reviewer
Improves the threat intelligence gathering process, but it is not user-friendly
The tool is not user-friendly. It is not beginner-friendly. It would be very difficult for a beginner to learn the tool. It will take at least two months to get familiar with it. Building the playbook is a little difficult for a beginner. The vendor must simplify the tool and make it user-friendly.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It is very scalable. There are approximately 2,000 endpoints and up to 200 servers in our company."
"Microsoft's integration into the security stack works quite well."
"The user interface is pretty user-friendly."
"The tool is managed from the cloud, because of which the maintenance is very low."
"The global review and remediation of malicious code is probably the most valuable feature."
"It just runs in the background. I don't have to worry about, making sure it's Intelligence. So, you know, this kind of makes it very easy, have to worry about installing. It is easy to use."
"They have a very transparent roadmap for the product."
"The most valuable feature of the solution stems from the insight it provides."
"The reporting services are great. With reporting services, if you have customers that just visit a URL you can see the result - including why it's blocked and how and how the URL was first recognized as malicious."
"Integrating the solution with our existing security tools and workflows was easy."
 

Cons

"The product's dashboard and incident reports functionality needs enhancement."
"Microsoft itself is a major target for attacks and threats due to its size and popularity. That could be considered Microsoft's Achilles heel."
"The price point is something they can improve slightly for those who don't have an M 365 E5."
"There could be a better notification system."
"Having up-to-date documentation and real-time reflections in all portals would be beneficial to keep users informed about any changes. Additionally, the frequent changes in Microsoft's UI and the movement of features between different products in the set pose difficulties."
"The tool's onboarding of users that use on-premise or hybrid environments needs to be improved."
"Non-Microsoft products may not integrate as smoothly."
"The price of the solution is an area of concern where improvements are required. In general, the solution's price needs to be reduced."
"The tool is not user-friendly."
"The solution should be simpler for the end-user in terms of reporting and navigating the product."
 

Pricing and Cost Advice

"The solution's pricing is reasonable and not very expensive."
"The product has multiple subscription models."
"On a scale from one to ten, where one is cheap and ten is expensive, I rate the solution's pricing a six or seven out of ten."
"It is an expensive product."
"The product’s pricing is worth it."
"The product is a part of my Microsoft 365 subscription, so there is no additional cost. It is cost-effective."
"Microsoft's pricing structure involves annual fees."
"The solution is relatively expensive; however, our status as a gold partner provides us with several complimentary licenses, which offsets the cost."
Information not available
report
Use our free recommendation engine to learn which Threat Intelligence Platforms solutions are best for your needs.
847,646 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
14%
Financial Services Firm
13%
Educational Organization
11%
Government
11%
Financial Services Firm
19%
Educational Organization
13%
Computer Software Company
13%
Manufacturing Company
10%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What do you like most about Microsoft Defender Threat Intelligence?
It just runs in the background. I don't have to worry about, making sure it's Intelligence. So, you know, this kind of makes it very easy, have to worry about installing. It is easy to use.
What needs improvement with Microsoft Defender Threat Intelligence?
Some of the customization features could be improved by providing a portion of it as open source. This would allow integration with other solutions, enhancing Threat Intelligence. Providing code cu...
What is your primary use case for Microsoft Defender Threat Intelligence?
We are using Microsoft Defender ATP specifically as an email security solution, as well as for our critical servers as a web security solution. We have almost eleven hundred users utilizing it for ...
What do you like most about ThreatQ?
Integrating the solution with our existing security tools and workflows was easy.
What needs improvement with ThreatQ?
The tool is not user-friendly. It is not beginner-friendly. It would be very difficult for a beginner to learn the tool. It will take at least two months to get familiar with it. Building the playb...
What is your primary use case for ThreatQ?
We used the solution for threat mapping and managing IoCs.
 

Overview

 

Sample Customers

Information Not Available
Radar, Bitdefender, Crowdstrike, FireEye, IBM Security
Find out what your peers are saying about Microsoft Defender Threat Intelligence vs. ThreatQ and other solutions. Updated: March 2025.
847,646 professionals have used our research since 2012.