Cisco Umbrella vs. Microsoft Sentinel

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Cisco Umbrella
Score 8.7 out of 10
N/A
Cisco now offers OpenDNS Umbrella Web Filtering. Cisco acquired OpenDNS in August 2015, and rebranded the product as Cisco Umbrella.N/A
Microsoft Sentinel
Score 8.2 out of 10
N/A
Microsoft Sentinel (formerly Azure Sentinel) is designed as a birds-eye view across the enterprise. Put the cloud and large-scale intelligence from decades of Microsoft security experience to work. Make threat detection and response smarter and faster with artificial intelligence (AI). Eliminate security infrastructure setup and maintenance, and elastically scale to meet your security needs—while reducing IT costs.
$2.46
per GB ingested
Pricing
Cisco UmbrellaMicrosoft Sentinel
Editions & Modules
No answers on this topic
Azure Sentinel
$2.46
per GB ingested
100 GB per day
$123.00
per day
200 GB per day
$221.40
per day
300 GB per day
$319.80
per day
400 GB per day
$410.00
per day
500 GB per day
$492.00
per day
More than 500 GB per day
$492.00 + $98.40
per day/plus each additional 100 GB increment
Offerings
Pricing Offerings
Cisco UmbrellaMicrosoft Sentinel
Free Trial
YesYes
Free/Freemium Version
YesNo
Premium Consulting/Integration Services
YesNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
Cisco UmbrellaMicrosoft Sentinel
Top Pros
Top Cons
Features
Cisco UmbrellaMicrosoft Sentinel
Security Information and Event Management (SIEM)
Comparison of Security Information and Event Management (SIEM) features of Product A and Product B
Cisco Umbrella
-
Ratings
Microsoft Sentinel
9.4
3 Ratings
18% above category average
Centralized event and log data collection00 Ratings10.03 Ratings
Correlation00 Ratings9.43 Ratings
Event and log normalization/management00 Ratings9.63 Ratings
Deployment flexibility00 Ratings8.23 Ratings
Integration with Identity and Access Management Tools00 Ratings9.73 Ratings
Custom dashboards and workspaces00 Ratings9.33 Ratings
Host and network-based intrusion detection00 Ratings8.93 Ratings
Data integration/API management00 Ratings9.63 Ratings
Behavioral analytics and baselining00 Ratings9.33 Ratings
Rules-based and algorithmic detection thresholds00 Ratings9.63 Ratings
Response orchestration and automation00 Ratings9.63 Ratings
Reporting and compliance management00 Ratings9.63 Ratings
Incident indexing/searching00 Ratings9.33 Ratings
Best Alternatives
Cisco UmbrellaMicrosoft Sentinel
Small Businesses

No answers on this topic

AlienVault USM
AlienVault USM
Score 7.8 out of 10
Medium-sized Companies

No answers on this topic

Splunk Enterprise
Splunk Enterprise
Score 8.7 out of 10
Enterprises

No answers on this topic

Splunk Enterprise
Splunk Enterprise
Score 8.7 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Cisco UmbrellaMicrosoft Sentinel
Likelihood to Recommend
8.6
(68 ratings)
9.6
(3 ratings)
Likelihood to Renew
8.7
(9 ratings)
-
(0 ratings)
Usability
8.4
(5 ratings)
9.3
(3 ratings)
Availability
9.7
(6 ratings)
-
(0 ratings)
Support Rating
7.6
(69 ratings)
8.1
(3 ratings)
Implementation Rating
8.7
(8 ratings)
-
(0 ratings)
Ease of integration
8.2
(11 ratings)
-
(0 ratings)
Professional Services
-
(0 ratings)
5.0
(1 ratings)
User Testimonials
Cisco UmbrellaMicrosoft Sentinel
Likelihood to Recommend
Cisco
Well suited to networks that include Active directory, as you can hook it into the directory to allow you to target specific users and computers. Not particularly well suited to personal users due to the price point, and also not well suited to organisations with disorganised IT, since the system can be bypassed simply by changing the DNS server of the device. You need a dedicated IT department to ensure these sorts of settings are locked down
Read full review
Microsoft
Azure Sentinel is an excellent option like SIEM. It has cool, smart features and functionality, and is quite powerful in terms of processing information in the cloud. I recommend it to colleagues because it is very easy to deploy and configure, and learn to use it on a daily basis. The panel is super intuitive and rich in details. When opening Sentinel, it is already possible to analyze the indices that happened and those that deserve further attention and treatment.
Read full review
Pros
Cisco
  • Cisco Umbrella protects our devices and users from malicious sites of all kinds.
  • Cisco Umbrella allows us to add additional web site types we may want to block for specific users.
  • Cisco Umbrella keeps the list of sites blocked current by utilizing data from their entire security platform.
Read full review
Microsoft
  • Automated detection and response
  • Detailed user/device information
  • Part of the MS cloudsphere, so has a familiar feel.
Read full review
Cons
Cisco
  • Umbrella Virtual Appliances have been buggy in resolving local domain hosts.
  • Integration between other Cisco and Meraki products is complicated.
  • Reporting is not always accurate; for example, if you configure a Meraki access point to use an Umbrella Virtual Appliance, you lose device reporting. All reporting shows up under the AP's IP.
Read full review
Microsoft
  • There's not much that needs improvement, but the on-prem log sources still require a lot of development.
Read full review
Likelihood to Renew
Cisco
First off I never give anything a "10" unless it's perfect. LOL - I grade on the curve. I think OpenDNS/Umbrella is a very good product. I think that fact that Cisco absorbed them is one of the proofs of that. I have used the product back when it was free for companies our size. I have not always appreciated the cost - but in the post pandemic cyber chaos, I believe the cost benefit ratio is still very high. I have honestly not looked at other products because Umbrella continues to work to my satisfaction. I consider Umbrella to be one of the key layers in my cyber security strategy.
Read full review
Microsoft
No answers on this topic
Usability
Cisco
The product was easy to install and get running. To maintain the product is also a simple matter of maintaining lists of wanted and unwanted domains or URLs. The basic and advanced security features all do what they are intended to do with no known erroneous outcomes
Read full review
Microsoft
The Microsoft Azure Sentinel solution is very good and even better if you use Azure. It's easy to implement and learn how to use the tool with an intuitive and simple interface. New updates are happening to always bring new news and improve the experience and usability. The solution brings reliability as it is from a very reliable manufacturer.
Read full review
Reliability and Availability
Cisco
Cisco Umbrella's availability was great, they got back to me in less than an hour to get my problem solved.
We needed to get our Meraki AP's hooked up to Cisco Umbrella to monitor that specific traffic and they got back to me promptly, they guided me and explained every question I had.
Read full review
Microsoft
No answers on this topic
Support Rating
Cisco
Accessibility to support executives those are having great product knowledge and able to resolve most of the issues related to configuration or operation at their level only and in very few cases it need to be escalated to next level and most of the issues were resolved at first level itself.
Read full review
Microsoft
I haven't yet had to use support for Sentinel.
Read full review
Implementation Rating
Cisco
The implementation just required us a bit of study because there are a lot of options and configurations available. I believe that the interface could be a bit better, but it works fine. We did an initial setup and only need to do changes when a new demand appears. Other than that, we just keep it running.
Read full review
Microsoft
No answers on this topic
Alternatives Considered
Cisco
We used a product before this called iPrism by EdgeWave and also briefly tried Barracuda Web Security in the cloud. We were having such a large influx of service desk calls about proxy-based layer 7 web filters that we wanted to step back and pick something more at the DNS level, to protect our employees but not hover over their social media use, etc. Cisco will also employ a layer 7 proxy if a site is suspicious, which does require us to push a certificate out should we want that feature. For most policies we have it enabled.
Read full review
Microsoft
No answers on this topic
Professional Services
Cisco
No answers on this topic
Microsoft
Did not use professional services
Read full review
Return on Investment
Cisco
  • Saved us lots of technician time dealing w/ Malware and virus issues, I don't think we've had a malware incident this year for example. This was the main reason we bought the product in the first place. We've renewed 2 times because we see the value.
  • Umbrella helped us reduce the risk of CryptoLocker variants infecting our clients.
Read full review
Microsoft
  • Cost saving as you don't need to use multiple platforms to monitor your security events.
Read full review
ScreenShots