Microsoft Sentinel Logo Award Winner Product Badge
Microsoft Sentinel Logo Award Winner Product Badge
Microsoft Corporation

Microsoft Sentinel

8.4 /10
Category
Microsoft Sentinel
8.4 /10

What is Microsoft Sentinel?

Modernize your security operations center (SOC) with Microsoft Sentinel. Uncover sophisticated threats and respond decisively with an intelligent, comprehensive security information and event management (SIEM) solution for proactive threat detection, investigation, and response. Eliminate security infrastructure setup and maintenance, and elastically scale to meet your security needs—while reducing costs as much as 48 percent compared to legacy SIEM solutions.

Company Details


Need Assistance?

We're here to help you with understanding our reports and the data inside to help you make decisions.

Get Assistance

Awards & Recognition

Microsoft Sentinel won the following awards in the Security Information and Event Management category

Filter By

Microsoft Sentinel Ratings

Real user data aggregated to summarize the product performance and customer experience.
Download the entire Product Scorecard to access more information on Microsoft Sentinel.

87 Likeliness to Recommend

98 Plan to Renew

75 Satisfaction of Cost Relative to Value


{y}
{name}

Emotional Footprint Overview

+88 Net Emotional Footprint

The emotional sentiment held by end users of the software based on their experience with the vendor. Responses are captured on an eight-point scale.

How much do users love Microsoft Sentinel?

2% Negative
4% Neutral
94% Positive

Pros

  • Performance Enhancing
  • Security Protects
  • Reliable
  • Enables Productivity

Feature Ratings

Average 77

Scalability and Network Performance

82

Security Threat Visibility

82

Data Security and Retention

80

Analytics and Reporting

80

Incident Management and Remediation

80

Big Data Analytics

78

Threat Intelligence

78

Orchestration Automation and Response (NG)

78

Log Collection

77

Correlation

75

Data Enrichment

74

Vendor Capability Ratings

Average 76

Ease of Implementation

80

Ease of IT Administration

80

Breadth of Features

79

Ease of Data Integration

79

Quality of Features

78

Usability and Intuitiveness

78

Business Value Created

77

Product Strategy and Rate of Improvement

76

Vendor Support

73

Ease of Customization

69

Availability and Quality of Training

69

Microsoft Sentinel Reviews

Rohit J.

  • Role: Information Technology
  • Industry: Technology
  • Involvement: IT Leader or Manager
Validated Review
Verified Reviewer

Submitted Jan 2022

Great way to integrate all the microsoft apps

Likeliness to Recommend

10 /10

What differentiates Microsoft Sentinel from other similar products?

Greater integration available with MS products

What is your favorite aspect of this product?

Centralized information for all the various apps data

What do you dislike most about this product?

Too much information

What recommendations would you give to someone considering this product?

If you use any microsoft products at scale this is a must for you.

Pros

  • Helps Innovate
  • Continually Improving Product
  • Reliable
  • Performance Enhancing
  • Role: Information Technology
  • Industry: Technology
  • Involvement: IT Leader or Manager
Validated Review
Anonymous Reviewer

Submitted Oct 2020

Combat virtual threats automatically.

Likeliness to Recommend

9 /10

Pros

  • Helps Innovate
  • Reliable
  • Performance Enhancing
  • Enables Productivity

Alexander A.

  • Role: Information Technology
  • Industry: Healthcare
  • Involvement: Business Leader or Manager
Validated Review
Verified Reviewer

Submitted Aug 2020

Azure Sentinel soars above other SIEMs!!!

Likeliness to Recommend

10 /10

What differentiates Microsoft Sentinel from other similar products?

Unlike similar products, Azure Sentinel essentially is a central place to analyze your security data, across all parts of your environment. With Sentinel you can consume security related data from almost any source – not just sources inside your Microsoft tenant. Some of its most advanced features include: Ingesting security data from multi-cloud and on-premise environments Analyzing large data volumes Alert triage Log management and storage Threat hunting

What is your favorite aspect of this product?

Azure Sentinel integrates with many other Azure services providing enhanced capabilities for Security Information and Event Management and Security Orchestration and Automation and Response. Also once Azure Sentinel is enabled on your Azure Monitor Log Analytics workspace, every GB of data ingested into the workspace can be retained at no charge for the first 90 days.

What do you dislike most about this product?

Currently there is no trigger in the Azure Sentinel connector when a new Azure Sentinel incident is created. It would be good to have it. This way we could integrate and automate with the other Microsoft security products (MCAS, WDATP, Azure ATP, etc.) and also with an ITSM tool like Service Now. The idea is to have a playbook run automatically whenever a new incident is created in Sentinel to: - create an incident in Service Now - send an email notification

What recommendations would you give to someone considering this product?

If you think about trying this product, it is very simple to unable it on your environment. All you need is the following: An active Azure subscription. A Log Analytics workspace. Contributor or reader permission turned on in the resource group that the workspace belongs to. Once you have that, you can browse to Sentinel within the Azure portal to deploy – then you are ready to begin adding your data connectors.

Pros

  • Continually Improving Product
  • Performance Enhancing
  • Enables Productivity
  • Unique Features

Most Popular Microsoft Sentinel Comparisons