Try our new research platform with insights from 80,000+ expert users

Microsoft Entra ID vs One Identity Defender comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Aug 11, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Microsoft Entra ID
Ranking in Authentication Systems
1st
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
224
Ranking in other categories
Single Sign-On (SSO) (1st), Identity Management (IM) (1st), Identity and Access Management as a Service (IDaaS) (IAMaaS) (1st), Access Management (1st), Microsoft Security Suite (2nd)
One Identity Defender
Ranking in Authentication Systems
14th
Average Rating
8.6
Reviews Sentiment
7.8
Number of Reviews
3
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of April 2025, in the Authentication Systems category, the mindshare of Microsoft Entra ID is 16.2%, down from 22.3% compared to the previous year. The mindshare of One Identity Defender is 0.7%, up from 0.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Authentication Systems
 

Featured Reviews

Aaron Liang - PeerSpot reviewer
Has significantly improved secure access to applications and resources in our environment
Microsoft Entra ID has helped by simplifying our management of permissions for APIs. We are not directly exposing credentials, as we use tokens instead. It has made management easier and more secure, especially in a multi-user environment. The implementation of Microsoft Entra ID significantly improved secure access to applications and resources in our environment, primarily through the widespread use of single-sign-on. Managing API permissions became much easier, as application registration often involves calling an API to utilize services without directly exposing credentials, relying instead on token-based authentication. This streamlined approach benefits end-users by simplifying access while remaining transparent to them. Ultimately, my role focuses on ensuring a smooth and user-friendly experience, even if the underlying technology remains unseen by the end-users. Our company strongly emphasizes passwordless authentication, primarily through device-bound passkeys in Microsoft Authenticator. While administrators with high-privileged accounts utilize YubiKeys and passwords for tasks like accessing Microsoft Graph, we are actively transitioning all other users towards passwordless methods such as Windows Hello biometrics. This approach streamlines authentication and enhances security. Though initial deployment in 2022 presented challenges due to hardware limitations and the lingering effects of the COVID-19 pandemic, the technology has significantly improved and provides a simple and effective user experience.
Maksym Tkachenko - PeerSpot reviewer
Good compatibility, responsive support, and a nice interface
The solution works very well. The initial setup is pretty easy. It is stable and pretty reliable in general. We find that the product scales very well.  Technical support is responsive. The interface is good.  It is compatible with other products.  It has everything we need right now. The login…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Very stable and scalable IAM service with good SSO and authentication features."
"Entra has made it easy to manage identity and access by integrating with all Microsoft services."
"The most valuable features of this solution are definitely the authorization and authentication, and the rule-based user validation."
"We're using the whole suite: device management, user credentials, everything that's possible."
"We have about 80 users in the Azure Active Directory right now, however, we know that if it was necessary to scale it for hundreds or thousands of users, it wouldn't be a problem."
"Our most valuable features are conditional access and Azure application proxy."
"The most valuable feature is the authentication platform."
"The most valuable feature of Entra ID is having a cloud-based identity, similar to Google's single sign-on."
"It's very fast, and it's easy to use because it's integrated with Active Directory."
"We find that the product scales very well."
"One Identity Defender has good network protection."
 

Cons

"Its integration with open-source applications can be improved. I know that they are working on open-source authentication methods for integration with open-source applications, but they can make it more open."
"If Microsoft can give us a way to see where this product is running, from a backend perspective, then it would be great."
"If somebody is using an IdP or an identity solution other than Active Directory, that's where you have to start jumping through some hoops... I don't think the solution is quite as third-party-centric as Okta or Auth0."
"I rate Microsoft support four out of 10. Tier 1 and Tier 2 support could be better. It's not timely or professional."
"An area where there is room for improvement is the ease of use of the dashboards."
"I want to be able to identify the audiences effectively and manage them."
"There is a lot of room for improvement in terms of its integration with the local Active Directory. There are some gaps in terms of the local Active Directory through which Microsoft is syncing our environment from our data center. There should be the availability of custom attributes on Azure Active Directory. In addition, there should be the availability of security groups and distribution groups that are residing on the local Active Directory. Currently, they are not replicated on Azure Active Directory by default."
"When you fix the rules and permissions, working directly on the manifest, you really need to have in-depth knowledge. If there were a graphical user interface to update the manifest, that would be good."
"Maybe it could provide support for more web applications. It seems more focused on IIS web applications."
"We have some clients that are wanting to protect their Apache web servers with One Identity Defender but all the research I have done says cannot be done. It can only be oriented to an IIS server. One Identity Defender should have more integration with more types of web servers."
"The login capabilities could be better."
 

Pricing and Cost Advice

"I am not involved in the pricing or licensing, so I can't speak to that."
"I do not have experience with pricing."
"The price is good, and we have no complaints."
"If you are dealing with one supplier with an out-of-the-box solution, which provides you end-to-end capabilities, then it is naturally cheaper and less of a headache to manage and operate."
"Previously, only building and global administrators could purchase subscriptions or licenses. Mid-last year, Microsoft made it so users can purchase the license online. Microsoft business subscription is for 200 to 300 users. If you have more than 300 users, you can't purchase the business plan. You have to purchase the enterprise plan. The enterprise plan is for 301 users and above. Pay as you go is also available. If you pay as you go in Azure, you will be billed for whatever you use."
"The licensing cost is a bit prohibitive."
"Microsoft Azure AD has P1 or P2 licensing options, and it depends on the customer's needs. To use Conditional Access, you need to have the P1 license, and to use the PIN features, you need the P2 license."
"We are currently on the education plan, so the price is slightly better than the development plan."
Information not available
report
Use our free recommendation engine to learn which Authentication Systems solutions are best for your needs.
848,253 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
32%
Computer Software Company
10%
Financial Services Firm
9%
Manufacturing Company
6%
Financial Services Firm
15%
Non Profit
15%
Retailer
12%
Government
12%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

How does Duo Security compare with Microsoft Authenticator?
We switched to Duo Security for identity verification. We’d been using a competitor but got the chance to evaluate Duo for 30 days, and we could not be happier. Duo Security is easy to configure a...
What do you like most about Azure Active Directory?
It is very simple. The Active Directory functions are very easy for us. Its integration with anything is very easy. We can easily do third-party multifactor authentication.
What is your experience regarding pricing and costs for Azure Active Directory?
Microsoft Entra ID is reportedly quite expensive for each user regarding security features. The renewal cost is particularly high according to the teams managing purchases.
What do you like most about One Identity Defender?
It's very fast, and it's easy to use because it's integrated with Active Directory.
What needs improvement with One Identity Defender?
Maybe it could provide support for more web applications. It would be useful to focus on other web applications. For example, if an application needs to be installed on an iOS server and it's not, ...
What is your primary use case for One Identity Defender?
Our primary use cases include functions such as role-based access control, user registration, and integration with other systems. We use it to improve the security of our web applications. Addition...
 

Also Known As

Azure AD, Azure Active Directory, Azure Active Directory, Microsoft Authenticator
No data available
 

Interactive Demo

Demo not available
 

Overview

 

Sample Customers

Microsoft Entre ID is trusted by companies of all sizes and industries including Walmart, Zscaler, Uniper, Amtrak, monday.com, and more.
Bakersfield Police Department, Village of Westmont, Illinois
Find out what your peers are saying about Microsoft Entra ID vs. One Identity Defender and other solutions. Updated: April 2025.
848,253 professionals have used our research since 2012.