4 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener noreferrer'>trScore algorithm: Learn more.</a>
Score 8.6 out of 100
29 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener noreferrer'>trScore algorithm: Learn more.</a>
Score 7.6 out of 100

Likelihood to Recommend

Azure Sentinel

If you are new to SIEM and have not invested in pre-exiting SIEM solutions, Azure Sentinel is a great way to start your SIEM journey. This is especially true if you are involved in other Microsoft products or are using Office 365 or Azure, it would be very easy to deploy and will have the logs in no time.
Anonymous | TrustRadius Reviewer

McAfee Enterprise Security Manager

McAfee is a good solution if you're in a medium/large company and if you're looking for a solution that can be customized and expanded. I also recommend if you have the most common log sources on your environment, since McAfee supports the major log sources (but lack a lot of small vendors).In my opinion, I wouldn't recommend McAfee for small companies, since it's not that easy to manage and maintain.
Anonymous | TrustRadius Reviewer

Feature Rating Comparison

Security Information and Event Management (SIEM)

Azure Sentinel
7.8
McAfee Enterprise Security Manager
8.7
Centralized event and log data collection
Azure Sentinel
9.0
McAfee Enterprise Security Manager
8.6
Correlation
Azure Sentinel
9.0
McAfee Enterprise Security Manager
7.7
Deployment flexibility
Azure Sentinel
6.0
McAfee Enterprise Security Manager
8.0
Integration with Identity and Access Management Tools
Azure Sentinel
8.0
McAfee Enterprise Security Manager
10.0
Custom dashboards and views
Azure Sentinel
7.0
McAfee Enterprise Security Manager
7.5
Event and log normalization
Azure Sentinel
McAfee Enterprise Security Manager
9.0
Host and network-based intrusion detection
Azure Sentinel
McAfee Enterprise Security Manager
9.8

Pros

Azure Sentinel

  • Very easy to setup
  • Pay as you use--month-to-month subscription--no lengthily contracts
  • Works very well with other Microsoft tools as it has native integration
  • Cheaper then other SIEM products
  • No need to deploy any infrastructure on-premises to manage it
  • Very fast deployment
Anonymous | TrustRadius Reviewer

McAfee Enterprise Security Manager

  • McAfee Enterprise Security Manager has a large library of pre-made correlations that reduces the amount of work needed to make it functional.
  • This is a core McAfee product that is still getting support.
  • It has a substantial amount of compatibility and integration with other products.
Anonymous | TrustRadius Reviewer

Cons

Azure Sentinel

  • Better integration with third-party tools
  • More connectors for third-party tools
  • Better online training available
  • More built-in queries
Anonymous | TrustRadius Reviewer

McAfee Enterprise Security Manager

  • If there is a requirement to integrate into other vendor products i.e. (log sharing) then this was very cumbersome.
  • Integration of vulnerability scanning that is available in other vendor products would be a good addition.
  • When integrating all of Intel's products a third party consultancy is usually required, where other vendor products can be configured without this additional cost.
Philip Clarke | TrustRadius Reviewer

Usability

Azure Sentinel

Azure Sentinel 9.0
Based on 1 answer
I think the solution is robust, very usable, and user friendly. Overall it is very solid product that might not have all the functionality that Splunk has, but considering the time it has been on the market, I think it's really good. Having in mind how much Microsoft has invested in Cloud (i.e., Azure), this product will only grow stronger and better. I have been using it for a year, and since we started using it, there have been a lot of improvements and the number of connectors has increased.
Anonymous | TrustRadius Reviewer

McAfee Enterprise Security Manager

No score
No answers yet
No answers on this topic

Support Rating

Azure Sentinel

Azure Sentinel 6.0
Based on 1 answer
The support is standard Microsoft support. It's not bad, but far from best in the industry. Compared to not having too many online courses/training available, this can be a roadblock, but in all honesty, deployment and day-to-day operations are easy and the product is intuitive. If you know how to read and understand Windows logs and have basic knowledge in any query language, you won't have much difficulty getting around. If you have some urgent investigation to do and you are stuck in understanding what happened and have difficulty correlating logs from different systems, other products probably will have better support where you can call someone and have screen sharing session/assistance in finding what's going on, but you pay premium for that, so at the end it all depends on your budget, technical skills, and comfort level.
Anonymous | TrustRadius Reviewer

McAfee Enterprise Security Manager

McAfee Enterprise Security Manager 6.7
Based on 2 answers
McAfee Enterprise Security Manager overall is a great tool. It is effective in today's setting, wherein lots of potential threats are lurking. Its operations within the network are seamless. Users won't even notice that a SIEM is working in the background. But in today's trend, most of the businesses is heading towards the migration to cloud, which McAfee should improve its integration with.
Brandon Macapelit, CISA | TrustRadius Reviewer

Alternatives Considered

Azure Sentinel

Azure Sentinel is much more cost effective and affordable than FortiSIEM and especially compared to Splunk Enterprise. Azure Sentinel is easier and faster to implement and does not require having any on-premises setup. It's purely software. There is no need to install any hardware on your network and you do not need to tap into the network and sniff all the traffic. All the software components of the solutions reside in Azure. You need to send the logs to Azure. The only thing that needs to be done on the servers where you want to monitor logs is install a small, small agent that will have the info of your Log Anaytics and a key to be able to connect and upload the logs. If you are versed in Microsoft technology, there is not much training required to get it going. There is the KQL language for writing queries that might be kind of new but then, on the other hand, any SIEM product has its own subscription language and syntax that needs to be learned, so Azure Sentinel is no different.
Anonymous | TrustRadius Reviewer

McAfee Enterprise Security Manager

We selected McAfee Enterprise Security Manager because the pricing is competitive in the industry. It is very reliable. The vendor offers good support in real time. Offers the results that we have been looking for. The ability to get the logs may be of last 2 years in a matter of seconds. The ability to retain logs for a very long time.
Neil Johnson | TrustRadius Reviewer

Return on Investment

Azure Sentinel

  • It provide us with visibility in what's going on in our Azure deployments, Office 365 and on-premises servers
  • Allows us to investigate incidents
  • Allows to detect suspicious behavior
  • Fulfills the requirement to have SIEM/centralized log system that is required by security standards and certifications
Anonymous | TrustRadius Reviewer

McAfee Enterprise Security Manager

  • McAfee Antivirus is not a leader in the field and I don't recommend this product.
  • HIPS and Encryption are easy to manage.
  • Great tool for enterprise deployments.
Alex Waitkus, CISSP-ISSAP, OSCP | TrustRadius Reviewer

Pricing Details

Azure Sentinel

General

Free Trial
Yes
Free/Freemium Version
Premium Consulting/Integration Services
Entry-level set up fee?
No

Azure Sentinel Editions & Modules

Edition
Azure Sentinel$2.461
100 GB per day$123.002
200 GB per day$221.402
300 GB per day$319.802
400 GB per day$410.002
500 GB per day$492.002
More than 500 GB per day$492.00 + $98.403
  1. per GB ingested
  2. per day
  3. per day/plus each additional 100 GB increment
Additional Pricing Details

McAfee Enterprise Security Manager

General

Free Trial
Free/Freemium Version
Premium Consulting/Integration Services
Entry-level set up fee?
No

McAfee Enterprise Security Manager Editions & Modules

Additional Pricing Details

Rating Summary

Likelihood to Recommend

Azure Sentinel
10.0
McAfee Enterprise Security Manager
8.0

Usability

Azure Sentinel
9.0
McAfee Enterprise Security Manager

Support Rating

Azure Sentinel
6.0
McAfee Enterprise Security Manager
6.7

Add comparison