TrustRadius: an HG Insights company

Microsoft Defender for IoT

Score9 out of 10

5 Reviews and Ratings

What is Microsoft Defender for IoT?

Microsoft states users can protect IoT/OT devices and get visibility into risk with Microsoft Defender for IoT (formerly Azure Defender for IoT), boasting agentless network monitoring for asset discovery, vulnerability management, and continuous threat detection across IoT/OT devices whether they’re unmanaged devices or managed devices provisioned via Azure IoT Hub. Features an integration with Azure Sentinel and third-party solutions. Deploy in either on-premises or Azure-connected environments. Agentless monitoring capabilities boltered by Microsoft's acquisition of CyberX in June 2020. CyberX now powers Microsoft Defender for IoT.

Categories & Use Cases

Defender for IoT: A one stop solution for all the IoT security needs

Use Cases and Deployment Scope

I have consulted multiple MNCs, especially home security companies looking to shift to Azure. Microsoft Defender was used for full security layer of a company's IoT environment. Easy and Seamless Azure Integration with IoT devices makes Defender the top choice for companies already using any Azure Services. Having a full security plan and global threat protection without any performance hits also provides a great advantage among its competitors

Pros

  • Easy Integration in the form of multiple deployment options including On Prem, Azure or Hybrid Cloud
  • All round protection/ Real time analytics with absolutely no performance hits
  • Interoperability with Microsoft SIEM/SOAR. This helps in global threat protection with automated and cross domain network security

Cons

  • To use it to it's full potential, multiple Azure services are required including but not limited to Intune, VM etc
  • Due to a heavy focus on UI rather than Code heavy approach, it sometimes limits itself in terms of features and adds additional complexity when looking for niche network security features.
  • Major features like Device inventory and alerting are still in preview mode, which of course can hamper an organisation's trust

Most Important Features

  • We are a Microsoft Gold Partner, hence for my Organisation, Integration with Azure Cloud is extremely useful
  • Ease of setting up. Due to a code less approach of Defender and azure in general, it is super easy to configure and set up
  • The defender dashboards are spot on for Clients. Clients love the at a glance dashboard insights helping them discover issues and probable solutions immediately

Return on Investment

  • Positive: With the influx of IoT device organisations in general, we have seen significant demand of the product and hence a good revenue
  • Negatively, sometimes, some preview features may significantly change or stop working, which causes client frustration
  • Overall, keeping the distrust in preview features aside, 99% of the times, defender hits the right spot!

Other Software Used

Azure Data Factory, Azure Databricks, Azure Synapse Analytics (Azure SQL Data Warehouse)

Excellent Security Control Platform with Functional Threats Management Options.

Use Cases and Deployment Scope

This Microsoft platform is very stable and secure in data handling and the functions are very powerful to easy handling different data with various types and formats. The deployment of the product is also easy for IT users and it allows easy data threats management and monitoring of Cloud services and creating reports is very simple.

Pros

  • Data modeling capability.
  • Easy collecting information from different websites.
  • Effective data integration functions.

Cons

  • The deployment when new to the system is not an easy task.
  • Multiple big project information securing.
  • Migrating large amount of different data.

Most Important Features

  • Data connection functions.
  • Access control capability.
  • Data pulling features.
  • Services monitoring functions.

Return on Investment

  • With this Microsoft software the protection of our project data is excellent and easy data mining solution.
  • Extraction and data analytics generation is very effective.
  • Data modeling and preparation of multiple data reports from various projects.

Alternatives Considered

Blackberry Certicom, Sectrio and Azure Sphere

Other Software Used

Cisco Cyber Vision, McAfee Embedded Control, IBM Informix

Solid Security for a Decent Price

Use Cases and Deployment Scope

Our client needed this for security purposes and since we're running our systems via O365/Azure anyway it made sense to continue using Microsoft products. Needed to improve compliance and risk management without breaking the bank. We already have a pre-existing relationship with Microsoft so this made sense.

Pros

  • Alerting us when issues arise
  • ID of assets
  • Monitors without causing performance issues

Cons

  • It's still growing just like Azure was in the beginning
  • Not great for clients who have very small budgets

Most Important Features

  • Overall Cost
  • Real Time Alerts
  • Product Roadmap looks promising for the future

Return on Investment

  • We're much more secure
  • Threat management is streamlined

Great Tool for securing and maintaining IoT devices

Use Cases and Deployment Scope

We have multiple clients with industrial IoT devices in their manufacturing plants and a vendor who sells smart (IoT) devices to monitor specific machinery. Those IoT needs to be monitored and secured as they collect confidential data and logs which are then used by analysts and engineers for business decisions. And it is my job to provide and equip them with the best security tools present. So, I configured Defender for IoT on them.

Pros

  • Agentless monitoring
  • Integration with Sentinel
  • Multiple protocol support

Cons

  • Greater focus on UI UX which is great but sometimes limits in terms of features
  • Device inventory and alerting

Most Important Features

  • Serverless
  • Active monitoring
  • The consolidated dashboard for incidents
  • Integration with Sentinel.

Return on Investment

  • As we are using other Azure products it has been great to get everything at one stop
  • A nice and comprehensive solution for our security needs.
  • IoT devices are our end devices and an easy entry point for bad actors, configuring defender for IoT has saved us with the time and money which we could lost in a malicious attack

Alternatives Considered

AWS IoT Device Defender

Other Software Used

Azure App Service, Azure Application Gateway, Azure Firewall, Azure Backup