• HOME
  • CATEGORIES

    • CATEGORIES

    • Browse All Categories
  • FOR VENDORS

    • FOR VENDORS

    • Log In to Vendor Portal
    • Get Started
  • REVIEWS

    • REVIEWS

    • Write a Review
    • Product Reviews
    • Vendor Directory
    • Product Comparisons
  • GARTNER PEER COMMUNITY™
  • GARTNER.COM
  • Community GuidelinesListing GuidelinesBrowse VendorsRules of EngagementFAQPrivacyTerms of Service
    ©2026 Gartner, Inc. and/or its affiliates.
    All rights reserved.
  • Categories

    • Loading categories...

      Browse All Categories

      Loading markets...

  • For Vendors

    • Log In to Vendor Portal 

    • Get Started 

  • Write a Review

Join / Sign In
  1. Home
  2. /
  3. Microsoft Defender for Cloud Apps
Logo of Microsoft Defender for Cloud Apps

Microsoft Defender for Cloud Apps

byMicrosoft
in Security Service Edge
4.3

Overview

Product Information on Microsoft Defender for Cloud Apps

Updated 14th October 2025

What is Microsoft Defender for Cloud Apps?

Microsoft Defender for Cloud Apps is a software designed to provide visibility and control over cloud applications within an organization’s IT environment. It helps monitor user activities, detect abnormal behavior, and safeguard sensitive information across cloud platforms. The software enables policy enforcement for data sharing and access, integrates with other security solutions, and offers threat detection and automated response capabilities. It supports compliance efforts by providing audit trails and alerting on potential policy violations. By delivering insights into app usage and risks, it aids organizations in managing cloud app security and protecting business-critical data against unauthorized access and external threats.

Microsoft Defender for Cloud Apps Pricing

Microsoft Defender for Cloud Apps software utilizes a subscription-based pricing model. The software is typically licensed on a per user, per month basis, with different tiers available depending on the required features and level of protection. Pricing may vary according to the number of users and the chosen plan, with integration into broader Microsoft security and compliance packages possible.

Overall experience with Microsoft Defender for Cloud Apps

MANAGER, IT SECURITY AND RISK MANAGEMENT
250M - 500M USD, Manufacturing
FAVORABLE

“Challenges Found in User Search, Automation, and Alerts in Cloud App Governance”

5.0
Nov 25, 2025
Defender for Cloud Apps is a great addition to lock down unsanctioned apps by blocking access altogether. It is also a good way to track through all of the user consent that users in your organization have handed out that might need to be revoked.
IT Security & Risk Management Associate
<50M USD, Energy and Utilities
CRITICAL

“A good security solution in its early phase”

3.0
Jan 23, 2026
My overall experience has been generally positive, especially with how it brings together visibility, governance and security controls across an extremely chaotic SaaS landscape. There are still some moments of immaturity within Defender for Cloud Apps, where the navigation feels fragmented and certain settings you would expect to be available are not quite there yet.

About Company

Company Description

Updated 25th March 2024

Microsoft enables digital transformation for the era of an intelligent cloud and an intelligent edge. Its mission is to empower every person and every organization on the planet to achieve more. Microsoft is dedicated to advancing human and organizational achievement. Microsoft Security helps protect people and data against cyberthreats to give peace of mind.

Company Details

Updated 25th March 2024
Company type
Public
Year Founded
1975
Head office location
Redmond, Washington, United States
Number of employees
10000+
Annual Revenue
30B+ USD
Website
https://microsoft.com

Do You Manage Peer Insights at Microsoft?

Access Vendor Portal to update and manage your profile.

Key Insights

A Snapshot of What Matters - Based on Validated User Reviews

User Sentiment About Microsoft Defender for Cloud Apps
Reviewer Insights for: Microsoft Defender for Cloud Apps
Deciding Factors: Microsoft Defender for Cloud Apps Vs. Market Average
Performance of Microsoft Defender for Cloud Apps Across Market Features

Microsoft Defender for Cloud Apps Likes & Dislikes

Like

Being able to search for a particular application and simply just unsanction an application, knowing that it will block the IPs and hostnames associated with the service so that I don't have to manage a blocklist for these.

Like

What I like most about Defender for Cloud Apps is how it brings all the elements of cloud security together into one place to make sense of them all. The visibility it provides into our company's SaaS usage, Shadow IT and risky OAuth applications is incredibly useful and the suggested insights are usually actionable immediately. Another great element is the integrations with EntraID, conditional access, Defender XDR and DLP modules. The policies work seamlessly across the board rather than the increasingly common disjointed feeling of working with multiple products in isolation. Features like real-time session control, user activity monitoring and automated app governance paired with Defender for Endpoint filtering make our day-to-day security tasks much easier, highlighting issues in our IT ecosystem we may have otherwise missed.

Like

Conditional Access (CA) policy engine integration. This is a huge benefit as it helps to cover some gaps in CA (e.g. Some apps are not supported by CA, but supported by MDCA). It can also help to address separate needs for more granular controls which are not possible in CA.

Dislike

On the side of App Governance, I do wish that they would allow for better tools to search for users. Every now and again, I will see a user that gave consent to an application and I will have to clear it out and disable the app, and it can be difficult to just simply search for a user alone. It will show the top 100 users, but I would like a better search method for these. Also, many times, the Disable App button simply doesn't load and I will always have to open in a new browser. I have scripts to revoke all permissions and remove users from an application, but there currently doesn't seem to be a way to call on the API to disable the app as well, which would help with automation. The one other thing that is just slightly annoying is that when you unsanction an application, it sends the IPs and domains to your Indicator list. My worry in the future is that since this list is capped at 15k indicators, it might fill up. Even more importantly, if moving to Global Secure Access (Zero Trust), the indicator list becomes your main org blocklist on devices, which makes this 15k limit even more limited. I would love to see these applications fall into their own indicator list, or open it up to have more than 15k in your indicator list. Lastly, the alerts/incidents that we get from Defender for Cloud apps on the Defender portal are often lacking information and requires you to dig around to find the app that is part of the incident. I wish there was a way that I was able to see what the analytic rule was set up like on the backend, since it seems that it is just not bringing in the entities in a way that displays all of the information that one might need.

Dislike

What I dislike the most about Defender for Cloud Apps is that the experience can feel quite fragmented at times, especially when switching between portals to configure policies, review alerts or investigate activity. Some features live in Defender XDR, others in EntraID, and a few still remain in the classic portal, which can make tasks feel like they take longer than they need to. The UI can often feel slow or inconsistent when working with large datasets, particularly in activity logs or governance actions. Whilst the platform is certainly powerful, some of the policy types could be more intuitive and easier to customise.

Dislike

1) Integration has a lot of room for improvement. Initially, MDCA was a 3rd party product that was acquired by Microsoft some years ago, and unfortunately, it seems that integration is still not fully done. Good example here - Entra ID groups cannot be used directly, but must be synced into MDCA. This makes policy configuration very difficult, because you cannot rely on user group membership as it can be out of sync. 2) MDCA uses connectors to get insights and be able to take actions in other SaaS applications. Problem here is that some very popular SaaS applications still don't have connectors. There is no clear road-map - what is planned, which connectors are on the way, which will be improved, which are not planned. It is difficult to make long-term plans. 3) Integration with Microsoft Purview solution could be improved. Purview is a main data protection solution from Microsoft, it uses sensitivity labels to provide data protection (including encryption) capabilities. Support for such labelling in MDCA policy is limited. For example, it is not possible to make some simple policies that can track actions users do against labelled content (those could be done in a different way, but it is expected to see more things like that in MDCA).

Top Microsoft Defender for Cloud Apps Alternatives

Logo of Zscaler Zero Trust Exchange
1. Zscaler Zero Trust Exchange
4.6
(1108 Ratings)
Logo of Cisco Secure Client
2. Cisco Secure Client
4.3
(794 Ratings)
Logo of Netskope One SSE
3. Netskope One SSE
4.5
(580 Ratings)
View All Alternatives

Peer Discussions

Microsoft Defender for Cloud Apps Reviews and Ratings

4.3

(374 Ratings)

Rating Distribution

5 Star
47%
4 Star
46%
3 Star
6%
2 Star
0%
1 Star
0%
Why ratings and reviews count differ?

Customer Experience

Evaluation & Contracting

4.4

Integration & Deployment

4.5

Service & Support

4.4

Product Capabilities

4.5

Filter Reviews
Sort By:
Most helpful
Last 12 Months
Star Rating
Reviewer Type
Reviewer's Company Size
Reviewer's Industry
Reviewer's Region
Reviewer's Job Function
  • MANAGER, IT SECURITY AND RISK MANAGEMENT
    50M-1B USD
    Manufacturing
    Review Source

    Challenges Found in User Search, Automation, and Alerts in Cloud App Governance

    5.0
    Nov 25, 2025
    Defender for Cloud Apps is a great addition to lock down unsanctioned apps by blocking access altogether. It is also a good way to track through all of the user consent that users in your organization have handed out that might need to be revoked.
  • IT Security & Risk Management Associate
    <50M USD
    Energy and Utilities
    Review Source

    A good security solution in its early phase

    3.0
    Jan 23, 2026
    My overall experience has been generally positive, especially with how it brings together visibility, governance and security controls across an extremely chaotic SaaS landscape. There are still some moments of immaturity within Defender for Cloud Apps, where the navigation feels fragmented and certain settings you would expect to be available are not quite there yet.
  • IT ASSOCIATE
    50M-1B USD
    IT Services
    Review Source

    Great Solution with Room For Improvement in Connector Availability and Data Protection Labelling Features

    4.0
    Aug 26, 2025
    Overall the experience is quite good, but there is room for improvement. Solution is quite large and covers multiple areas including CASB, Cloud Discovery and Session Policies. So, it could be used for some very separate tasks that usually sit in different departments.
  • Web Manager
    Gov't/PS/Ed
    Education
    Review Source

    Microsoft Defender Enhances Cloud App Security But Dashboard Usability Is Lacking

    4.0
    Jul 27, 2025
    Microsoft Defender makes sure that we must align with company policies regarding privacy and any kind of data sharing and I can create our custom policies such as Flagging, Sensitive files or Blocking any certain actions. However, its dashboard is not very friendly and not easy to understand.
  • INFORMATION TECHNOLOGY SUPPORT SPECIALIS
    50M-1B USD
    Healthcare and Biotech
    Review Source

    Cloud Monitoring Tool Simplifies Data Leak Detection and Unauthorized Access Prevention

    4.0
    Sep 11, 2025
    The experience has been great for our team since it provides us with a strong visibility of our cloud usage. I have found it vital in helping me detect data leaks and mitigate them. With this software it also becomes easy to stop unauthorized access which is critical in the industry.
...
Showing Result 1-5 of 435

Recommended Gartner Research

  • Critical Capabilities for Security Service Edge
  • Magic Quadrant for Security Service Edge

Gartner Peer Insights content consists of the opinions of individual end users based on their own experiences, and should not be construed as statements of fact, nor do they represent the views of Gartner or its affiliates. Gartner does not endorse any vendor, product or service depicted in this content nor makes any warranties, expressed or implied, with respect to this content, about its accuracy or completeness, including any warranties of merchantability or fitness for a particular purpose.

This site is protected by hCaptcha and its Privacy Policy and Terms of Use apply.


Software reviews and ratings for EMMS, BI, CRM, MDM, analytics, security and other platforms - Peer Insights by Gartner
Community GuidelinesListing GuidelinesBrowse VendorsRules of EngagementFAQsPrivacyTerms of Use

©2026 Gartner, Inc. and/or its affiliates.

All rights reserved.