What is Microsoft Sentinel?
Modernize your security operations center (SOC) with Microsoft Sentinel. Uncover sophisticated threats and respond decisively with an intelligent, comprehensive security information and event management (SIEM) solution for proactive threat detection, investigation, and response. Eliminate security infrastructure setup and maintenance, and elastically scale to meet your security needs—while reducing costs as much as 48 percent compared to legacy SIEM solutions.
Company Details
Need Assistance?
We're here to help you with understanding our reports and the data inside to help you make decisions.
Get AssistanceMicrosoft Sentinel Ratings
Real user data aggregated to summarize the product performance and customer experience.
Download the entire Product Scorecard
to access more information on Microsoft Sentinel.
Product scores listed below represent current data. This may be different from data contained in reports and awards, which express data as of their publication date.
86 Likeliness to Recommend
98 Plan to Renew
75 Satisfaction of Cost Relative to Value
Emotional Footprint Overview
Product scores listed below represent current data. This may be different from data contained in reports and awards, which express data as of their publication date.
+84 Net Emotional Footprint
The emotional sentiment held by end users of the software based on their experience with the vendor. Responses are captured on an eight-point scale.
How much do users love Microsoft Sentinel?
Pros
- Performance Enhancing
- Reliable
- Security Protects
- Enables Productivity
How to read the Emotional Footprint
The Net Emotional Footprint measures high-level user sentiment towards particular product offerings. It aggregates emotional response ratings for various dimensions of the vendor-client relationship and product effectiveness, creating a powerful indicator of overall user feeling toward the vendor and product.
While purchasing decisions shouldn't be based on emotion, it's valuable to know what kind of emotional response the vendor you're considering elicits from their users.
Footprint
Negative
Neutral
Positive
Feature Ratings
Scalability and Network Performance
Security Threat Visibility
Analytics and Reporting
Incident Management and Remediation
Data Security and Retention
Threat Intelligence
Orchestration Automation and Response (NG)
Big Data Analytics
Log Collection
Correlation
Business Intelligence Tools
Vendor Capability Ratings
Breadth of Features
Ease of Implementation
Ease of IT Administration
Quality of Features
Ease of Data Integration
Usability and Intuitiveness
Business Value Created
Product Strategy and Rate of Improvement
Vendor Support
Ease of Customization
Availability and Quality of Training
Microsoft Sentinel Reviews
Atul C.
- Role: Operations
- Industry: Finance
- Involvement: IT Development, Integration, and Administration
Submitted Jun 2023
Sentinel is great tool with very powerful features
Likeliness to Recommend
What differentiates Microsoft Sentinel from other similar products?
Core integration with soar platform and powerful kql queries really differentiate Sentinel with other vendors.
What is your favorite aspect of this product?
Writing powerful kql queries is best I have seen, not so complicated yet very useful.
What do you dislike most about this product?
I think hidden cost for log ingestion, there is not much written about hidden cost when and how they will occur.
What recommendations would you give to someone considering this product?
If you prefer cloud to cloud integration sentinel is for you.
Pros
- Continually Improving Product
- Includes Product Enhancements
- Helps Innovate
- Enables Productivity
Arjan S.
- Role: Information Technology
- Industry: Technology
- Involvement: IT Development, Integration, and Administration
Submitted Jun 2023
A robust and scalable SIEM/SOAR platform
Likeliness to Recommend
What differentiates Microsoft Sentinel from other similar products?
Microsoft delivers a SIEM that has tight integration with the platform and other Microsoft products. This makes initial adoption very smooth. The development listens very carefully to the customers and delivers new functionality at a fast pace. Data ingestion becomes better over time and the KQL language is very flexible and quite easy to learn
What is your favorite aspect of this product?
My favorite aspect must be KQL that is a nice language to learn, has integration troughout Azure and can be used in multiple ways on multiple places. From analytic rules, to monitoring, workbooks or API calls
What do you dislike most about this product?
the cost factor can be tough, hard to predict and in some cases expensive. Long term storage is getting better, but there should be better solutions out of the box for noisy long-term storage logs
What recommendations would you give to someone considering this product?
Start small using cloud workloads that are easily integrated with a few mouse-clicks, start with the standard detections rules and try to build your own with KQL. When confident with the platform build out to other more complex log sources and make sure to get a good understanding of parsing and ingestion rules
Pros
- Continually Improving Product
- Helps Innovate
- Performance Enhancing
- Unique Features
Cons
- Less Transparent
- Under Delivered
- Charges for Enhancements
Harsh G.
- Role: Information Technology
- Industry: Media
- Involvement: End User of Application
Submitted Jun 2023
Azure sentinel is the best SIEM product out there!
Likeliness to Recommend
What differentiates Microsoft Sentinel from other similar products?
Integration with other office apps and easy scalability with a user-friendly interface.
What is your favorite aspect of this product?
Its intelligence security analytics and threat intelligence to detect threats in almost real-time and respond to such threats is the best thing about this tool. It gathers security data across all users, devices, applications and gives best threat detection. It also analyses the user behaviour to look for anomalies.
What do you dislike most about this product?
I feel that here is scope for improvement in the detection of false positives. Besides that it's the best tool.
What recommendations would you give to someone considering this product?
Would definitely recommend this product to anyone who wants to prevent any security incidents. It strengthened an organisation's cyber security and capacity to prevent any cyber-attacks.
Pros
- Continually Improving Product
- Reliable
- Trustworthy
- Efficient Service