Likelihood to Recommend Sentinel is the best "cloud-native" in the market yet, so if the organization has a cloud presence (which almost everyone has) then Sentinel is the right choice for having a single pane of glass for all your security monitoring needs. Sentinel is a very good tool for log analysis and event management purposes as well. With KQL and ASIM parsers, organizations can retrieve invaluable insights even from the most complex data. And of course, Sentinel is a great choice for automating the incident response process to a very good extent.
Read full review The best part of Securonix is it's architecture which makes it scalable and allows it to add any new feature to match the requirement. Securonix is well suited for enterprises who are mid to large size and are looking for a quick time to value, do not want to put upfront capex and invest less on the service layer. It becomes little costly for a small sized organisation.
Read full review Pros It has a native integration with all Microsoft products, from Entra to Azure, Microsoft 365 Being built upon native Azure functionality benefits in automation and infrastructual solutions The KQL language is relatively easy to learn and powerful. Microsoft is listening very careful to the customers and develops new functionality at a fast pace Read full review A robust automated response mechanism via Playbooks. Thorough documentation on search query syntax. Built-in Graph/chart creation based on query results. A quick and responsive support team. Read full review Cons It takes some time to learn how to use and install it properly, and it does not connect effectively with external PaaS systems such as Salesforce CRM, Salesforce Commerce Cloud, and so on. Microsoft can simplify the display of the logs to make them easier to study, and the user interface occasionally delays, which can also be enhanced. Read full review There is a steep learning curve for the platform. Developing your own analytics can be challenging due to the depth and complexity of the analytics engine. Read full review Usability The Microsoft Azure Sentinel solution is very good and even better if you use Azure. It's easy to implement and learn how to use the tool with an intuitive and simple interface. New updates are happening to always bring new news and improve the experience and usability. The solution brings reliability as it is from a very reliable manufacturer.
Read full review Securonix Next-Generation SIEM provides loads of features that can be utilized as per business requirements. With the Securonix Jupyter update, the feature set is fine tuned for efficient implementation. The SOAR platform will complete the product for automated response on top of the alerting capabilities. The primary factor for selecting a SIEM will include the support model. While implementing and currently using Securonix Next-Generation SIEM in our environment, we have experienced the best support provided by the SIEM team in all aspects.
Read full review Support Rating Azure Sentinel is very easy to use and configure. If you are stuck somewhere, Microsoft support is excellent in assisting and solving your issue.
Read full review Securonix acts with urgency to support day to day operational issues & queries and shows a real commitment to us as a partner. I rate this an 8 because there are still some bumps in the road, instances where communications can be sparse or unclear.
Read full review Alternatives Considered The key advantage of using Sentinel lies in Microsoft already being a renowned name in cloud services. Hence, the Collection of data at the cloud scale across all users, devices, applications, and infrastructure, both on-premises and especially in the MS Cloud, is super easy. Additionally, leveraging Threat Intel from Microsoft itself gives a sense of security, given their years of experience in the collection of intel. The AI and Machine learning features provided by MS is one of the finest.
Read full review Professional Services Did not use professional services
Read full review I have worked with the Securonix PS team and they have done a good job so far.
Read full review Return on Investment Microsoft Sentinel is a good investment, especially when sided with other solutions such as Microsoft 365 Defender, as it provides 360° protection on every level of the infrastructure. When deployed on infrastructures that have never had an SIEM, Microsoft Sentinel helps to assess vulnerabilities and misconfigurations. As with any other SIEM, Microsoft Sentinel basically eliminates the need to put effort into every single platform (like EDR, NDR, XDR) and converge that effort on a single product that correlates and orchestrates the rest. Read full review Securonix Next-Generation SIEM has reduced the amount of overhead required for environment monitoring by 15%! Read full review ScreenShots Microsoft Sentinel Screenshots