TrustRadius: an HG Insights company

Save this comparison

Save this comparison

Add Product

Recommended Comparisons

    Overview
    ProductRatingMost Used ByProduct SummaryStarting Price

    Cybereason Defense Platform

    Score9.1 out of 10
    N/ACybereason EDR consolidates intelligence about each attack into a Malop (malicious operation), a contextualized view of the full narrative of an attack. Each Malop organizes the relevant attack data into an easy-to-read, interactive graphical interface, providing a complete timeline, the flow of the attack in the network, and any malicious communications. Remediation actions can be automated or accomplished remotely with a click. The Cybereason Defense Platform empowers analysts of all…N/A

    Microsoft Sentinel

    Score8.6 out of 10
    N/AMicrosoft Sentinel (formerly Azure Sentinel) is designed as a birds-eye view across the enterprise. It is presented as a security information and event management (SIEM) solution for proactive threat detection, investigation, and response.

    $2.46

    per GB ingested

    Pricing
    Cybereason Defense PlatformMicrosoft Sentinel
    Editions & Modules
    No answers on this topic
    Azure Sentinel
    $2.46
    per GB ingested
    100 GB per day
    $123.00
    per day
    200 GB per day
    $221.40
    per day
    300 GB per day
    $319.80
    per day
    400 GB per day
    $410.00
    per day
    500 GB per day
    $492.00
    per day
    More than 500 GB per day
    $492.00 + $98.40
    per day/plus each additional 100 GB increment
    Offerings
    Pricing Offerings
    Cybereason Defense PlatformMicrosoft Sentinel
    Free Trial
    NoYes
    Free/Freemium Version
    NoNo
    Premium Consulting/Integration Services
    NoNo
    Entry-level Setup FeeNo setup feeNo setup fee
    Additional Details
    More Pricing Information
    Community Pulse
    Cybereason Defense PlatformMicrosoft Sentinel
    Considered Both Products
    LevelBlue
    No answer on this topic
    Microsoft
    No answer on this topic
    Key User Insights
    Would buy again
    No answers on this topic
    99%
    Would buy again
    73 Answers
    Delivers good value for the price
    No answers on this topic
    94%
    Delivers good value for the price
    59 Answers
    Happy with the feature set
    No answers on this topic
    96%
    Happy with the feature set
    71 Answers
    Lived up to sales and marketing promises
    No answers on this topic
    93%
    Lived up to sales and marketing promises
    52 Answers
    Implementation went as expected
    No answers on this topic
    97%
    Implementation went as expected
    66 Answers
    Features
    Cybereason Defense PlatformMicrosoft Sentinel
    Endpoint Security
    Comparison of Endpoint Security features of Cybereason Defense Platform and Microsoft Sentinel
    Feature
    Cybereason Defense Platform
    9.1
    2 Ratings
    7% above category average
    Microsoft Sentinel
    -
    Ratings
    Anti-Exploit Technology8.32 Ratings00 Ratings
    Endpoint Detection and Response (EDR)9.62 Ratings00 Ratings
    Centralized Management9.62 Ratings00 Ratings
    Hybrid Deployment Support6.01 Ratings00 Ratings
    Infection Remediation10.02 Ratings00 Ratings
    Vulnerability Management10.01 Ratings00 Ratings
    Malware Detection10.02 Ratings00 Ratings
    Security Information and Event Management (SIEM)
    Comparison of Security Information and Event Management (SIEM) features of Cybereason Defense Platform and Microsoft Sentinel
    Feature
    Cybereason Defense Platform
    -
    Ratings
    Microsoft Sentinel
    8.5
    34 Ratings
    7% above category average
    Centralized event and log data collection00 Ratings9.134 Ratings
    Correlation00 Ratings8.835 Ratings
    Event and log normalization/management00 Ratings8.435 Ratings
    Deployment flexibility00 Ratings8.333 Ratings
    Integration with Identity and Access Management Tools00 Ratings8.933 Ratings
    Custom dashboards and workspaces00 Ratings8.435 Ratings
    Host and network-based intrusion detection00 Ratings8.030 Ratings
    Data integration/API management00 Ratings8.433 Ratings
    Behavioral analytics and baselining00 Ratings9.031 Ratings
    Rules-based and algorithmic detection thresholds00 Ratings8.733 Ratings
    Response orchestration and automation00 Ratings8.232 Ratings
    Reporting and compliance management00 Ratings7.35 Ratings
    Incident indexing/searching00 Ratings8.733 Ratings
    Best Alternatives
    Cybereason Defense PlatformMicrosoft Sentinel
    Small Businesses
    SentinelOne Singularity
    Score9 out of 10
    No answers on this topic
    Medium-sized Companies
    BlackBerry Protect (CylancePROTECT)
    Score9.1 out of 10
    IBM Security QRadar SIEM
    Score8.9 out of 10
    Enterprises
    ESET PROTECT
    Score8.8 out of 10
    SolarWinds Security Event Manager (SEM)
    Score8 out of 10
    All AlternativesView all alternativesView all alternatives
    User Ratings
    Cybereason Defense PlatformMicrosoft Sentinel
    Likelihood to Recommend
    8.7
    (2 ratings)
    8.5
    (74 ratings)
    Likelihood to Renew
    -
    (0 ratings)
    6.5
    (2 ratings)
    Usability
    -
    (0 ratings)
    8.2
    (27 ratings)
    Support Rating
    -
    (0 ratings)
    8.0
    (3 ratings)
    Professional Services
    -
    (0 ratings)
    5.0
    (1 ratings)
    User Testimonials
    Cybereason Defense PlatformMicrosoft Sentinel
    Likelihood to Recommend
    LevelBlue
    I'd recommend Cybereason due to it's efficacy, low TCO, low false/positive rate. The product was easy to implement and maintain. One of the major advantages of using Cybereason is that it requires minimal training for level 1 users to use the tool.
    Incentivized
    Read full review
    Microsoft
    What has really impressed me is how Microsoft Sentinel delivers centralised security monitoring across multiple data sources in our enterprise. It has reduced cost of handling large security logs by collecting and analyzing data without friction of managing traditional SIEM infrastructure. It is easy to work to integrate with Azure logs for quick data analysis.
    Incentivized
    Read full review
    Pros
    LevelBlue
    • EDR
    • Forensics
    • Mitigation
    • Response
    Incentivized
    Read full review
    Microsoft
    • The visual presentation of data is terrific, so including what we had prior to Microsoft Sentinel, it presents data in a much more usable way, so that's been quite refreshing. It's not quite as complex to understand what you're looking at.
    Incentivized
    Read full review
    Cons
    LevelBlue
    • Slow support
    • Bugs on their interface
    • Log extraction
    Incentivized
    Read full review
    Microsoft
    • One feature that I would like to see improved is probably the log parsing. I think one of the big things that Splunk does better than Microsoft Sentinel is that it makes it easy to bring in new log streams of arbitrary formats and parse them out into columns and tables. Microsoft Sentinel is a lot more involved, though. It takes a lot more manual work to bring in different log sources and parse them out.
    Incentivized
    Read full review
    Likelihood to Renew
    LevelBlue
    No answers on this topic
    Microsoft
    it does the job reasonably well
    Incentivized
    Read full review
    Usability
    LevelBlue
    No answers on this topic
    Microsoft
    Mirosoft sentinel is easy to use once the inital setup is completed.The dashboard and centralized alerts make it simple to monitor security events and investigate incidents.Integration with other microsoft security tool is also helpful.Some advanced features and configurations can take time to understand, but overall it provides good, user-friendly security monitoring.
    Incentivized
    Read full review
    Support Rating
    LevelBlue
    No answers on this topic
    Microsoft
    Microsoft support is one of the highest rated on the market. It has global and multilingual support. Calls can be made over the phone and the solution is virtually instantaneous with the help of Microsoft engineers. It's great!
    Incentivized
    Read full review
    Alternatives Considered
    LevelBlue
    Cybereason provides superior protection than either Microsoft or CrowdStrike and a better TCO. We receive less false positives than with Microsoft Defender and Cybereason is easier for level 1 users to use.
    Incentivized
    Read full review
    Microsoft
    Compared to platforms such as Splunk, LogRhythm, and Devo, Microsoft Sentinel’s cloud‑native, consumption‑based pricing model and reduced infrastructure overhead tend to offer better overall cost efficiency. This is especially true for organizations already invested in the Microsoft ecosystem, where Sentinel can deliver strong capabilities with a lower total cost of ownership.
    Incentivized
    Read full review
    Professional Services
    LevelBlue
    No answers on this topic
    Microsoft
    Did not use professional services
    Incentivized
    Read full review
    Return on Investment
    LevelBlue
    • Helps on threat hunting
    • MalOps is very good
    • When we face a bug, it takes too much time for them to respond
    Incentivized
    Read full review
    Microsoft
    • It's probably neutral. We see value, but it's, again, tick that kind of expense stuff. We're getting more insight and value into what is going on in that cloud workspace, but just noting the cost. So it's probably neutral. I'm not directly responsible, so the full kind of return on investment kind of cycle, that's someone else's problem. I'm like the end user. It's my team that will look at the data and look at the output of Microsoft Sentinel. So the ROI, someone else can worry about that.
    Incentivized
    Read full review
    ScreenShots

    Microsoft Sentinel Screenshots

    Product screenshotProduct screenshotScreenshot of Microsoft Sentinel Capabilities