Microsoft Sentinel Reviews
Microsoft Sentinel

Microsoft SentinelFormerly Azure SentinelCompetitors and Alternatives

Most Commonly Comparedto Microsoft Sentinel

Best Microsoft Sentinel Alternatives for Small Businesses

AlienVault USM

Score 8.0 out of 10

AlienVault® Unified Security Management® (USM) delivers threat detection, incident response, and compliance management in one unified platform. It is designed to combine all the essential security capabilities needed for effective security monitoring across cloud and on-premises environments, including SIEM, intrusion detection, vulnerability management, as well as continuous threat intelligence updates. The vendor states that even for resource-limited IT security teams, AlienVault USM can be…

Higher Rated Features

  • Host and network-based intrusion detection
  • Correlation

Popular Integrations

There is not enough information to display integrations.

Best Microsoft Sentinel Alternatives for Medium-sized Companies

Splunk Enterprise

Score 8.4 out of 10

Splunk is software for searching, monitoring, and analyzing machine-generated big data, via a web-style interface. It captures, indexes and correlates real-time data in a searchable repository from which it can generate graphs, reports, alerts, dashboards and visualizations.

Higher Rated Features

  • Custom dashboards and workspaces
  • Incident indexing/searching
  • Data integration/API management

Popular Integrations

There is not enough information to display integrations.

InsightIDR

Score 8.6 out of 10

In addition to their incident response service, Rapid7 offers InsightIDR, a combined XDR and SIEM that provides user behavior and threat analytics.

Higher Rated Features

Customers are more satisfied with the features of Microsoft Sentinel than the InsightIDR

Popular Integrations

There is not enough information to display integrations.

Splunk Enterprise Security (ES)

Score 8.4 out of 10

Splunk Enterprise Security (SIEM) is the company's flagship SIEM product, offered as a premium service to subscribers of Splunk Cloud or Splunk Enterprise.

Higher Rated Features

  • Security Information and Event Management (SIEM)
  • Custom dashboards and workspaces
  • Centralized event and log data collection

Popular Integrations

There is not enough information to display integrations.

Qualys TruRisk Platform

Score 8.3 out of 10

Qualys TruRisk Platform (formerly Qualys Cloud Platform, or Qualysguard), from San Francisco-based Qualys, is network security and vulnerability management software featuring app scanning and security, network device mapping and detection, vulnerability prioritization schedule and remediation, and other features to provide vulnerability management and network attack surface reduction.

Higher Rated Features

Customers are more satisfied with the features of Microsoft Sentinel than the Qualys TruRisk Platform

Popular Integrations

There is not enough information to display integrations.

Splunk Cloud

Score 8.3 out of 10

A data platform service thats help users search, analyze, visualize and act on data. The service can go live in as little as two days, and with an IT backend managed by Splunk experts, users can focus on acting on data. Search any kind of data in real-time to detect and prevent issues before they happen with access to streaming and machine learning capabilities. Search any kind of data in real-time to detect and prevent issues before they happen with access to the latest streaming and machine…

Higher Rated Features

  • Security Information and Event Management (SIEM)
  • Custom dashboards and workspaces
  • Event and log normalization/management

Popular Integrations

There is not enough information to display integrations.

SolarWinds Security Event Manager (SEM)

Score 8.2 out of 10

SolarWinds LEM is security information and event management (SIEM) software.

Higher Rated Features

Customers are more satisfied with the features of Microsoft Sentinel than the SolarWinds Security Event Manager (SEM)

Popular Integrations

There is not enough information to display integrations.

IBM Security QRadar SIEM

Score 8.7 out of 10

IBM Security QRadar is security information and event management (SIEM) Software.

Higher Rated Features

  • Security Information and Event Management (SIEM)
  • Host and network-based intrusion detection
  • Centralized event and log data collection

Popular Integrations

There is not enough information to display integrations.

AlienVault OSSIM

Score 8.6 out of 10

OSSIM leverages the power of the AlienVault Open Threat Exchange by allowing users to both contribute and receive real-time information about malicious hosts. AlienVault OSSIM is an open source Security Information and Event Management (SIEM) product. It is a unified platform providing: Asset discoveryVulnerability assessmentIntrusion detectionBehavioral monitoringSIEMOSSIM provides the basis for AlienVault's proprietary Unified Security Management (USM) product. It also leverages the power of…

Higher Rated Features

  • Custom dashboards and workspaces
  • Host and network-based intrusion detection
  • Integration with Identity and Access Management Tools

Popular Integrations

There is not enough information to display integrations.

Trellix Enterprise Security Manager

Score 7.1 out of 10

Trellix Enterprise Security Manager (formerly McAfee Enterprise Security Manager) is security information and event management (SIEM) software.

Higher Rated Features

  • Security Information and Event Management (SIEM)
  • Custom dashboards and workspaces
  • Integration with Identity and Access Management Tools

Popular Integrations

There is not enough information to display integrations.

LogRhythm NextGen SIEM Platform

Score 7.1 out of 10

The LogRhythm NextGen SIEM Platform, from LogRhythm in Boulder, Colorado, is security information and event management (SIEM) software which includes SOAR functionality via SmartResponse Automation Plugins (a RespondX feature), the DetectX security analytics module, and AnalytiX as a log management solution that centralizes log data, enriches it with contextual details and applies a consistent schema across all data types.

Higher Rated Features

  • Centralized event and log data collection
  • Custom dashboards and workspaces

Popular Integrations

There is not enough information to display integrations.

Best Microsoft Sentinel Alternatives for Enterprises

Splunk Enterprise

Score 8.4 out of 10

Splunk is software for searching, monitoring, and analyzing machine-generated big data, via a web-style interface. It captures, indexes and correlates real-time data in a searchable repository from which it can generate graphs, reports, alerts, dashboards and visualizations.

Higher Rated Features

  • Custom dashboards and workspaces
  • Incident indexing/searching
  • Data integration/API management

Popular Integrations

There is not enough information to display integrations.

InsightIDR

Score 8.6 out of 10

In addition to their incident response service, Rapid7 offers InsightIDR, a combined XDR and SIEM that provides user behavior and threat analytics.

Higher Rated Features

Customers are more satisfied with the features of Microsoft Sentinel than the InsightIDR

Popular Integrations

There is not enough information to display integrations.

Splunk Enterprise Security (ES)

Score 8.4 out of 10

Splunk Enterprise Security (SIEM) is the company's flagship SIEM product, offered as a premium service to subscribers of Splunk Cloud or Splunk Enterprise.

Higher Rated Features

  • Security Information and Event Management (SIEM)
  • Custom dashboards and workspaces
  • Centralized event and log data collection

Popular Integrations

There is not enough information to display integrations.

Qualys TruRisk Platform

Score 8.3 out of 10

Qualys TruRisk Platform (formerly Qualys Cloud Platform, or Qualysguard), from San Francisco-based Qualys, is network security and vulnerability management software featuring app scanning and security, network device mapping and detection, vulnerability prioritization schedule and remediation, and other features to provide vulnerability management and network attack surface reduction.

Higher Rated Features

Customers are more satisfied with the features of Microsoft Sentinel than the Qualys TruRisk Platform

Popular Integrations

There is not enough information to display integrations.

Splunk Cloud

Score 8.3 out of 10

A data platform service thats help users search, analyze, visualize and act on data. The service can go live in as little as two days, and with an IT backend managed by Splunk experts, users can focus on acting on data. Search any kind of data in real-time to detect and prevent issues before they happen with access to streaming and machine learning capabilities. Search any kind of data in real-time to detect and prevent issues before they happen with access to the latest streaming and machine…

Higher Rated Features

  • Security Information and Event Management (SIEM)
  • Custom dashboards and workspaces
  • Event and log normalization/management

Popular Integrations

There is not enough information to display integrations.

SolarWinds Security Event Manager (SEM)

Score 8.2 out of 10

SolarWinds LEM is security information and event management (SIEM) software.

Higher Rated Features

Customers are more satisfied with the features of Microsoft Sentinel than the SolarWinds Security Event Manager (SEM)

Popular Integrations

There is not enough information to display integrations.

IBM Security QRadar SIEM

Score 8.7 out of 10

IBM Security QRadar is security information and event management (SIEM) Software.

Higher Rated Features

  • Security Information and Event Management (SIEM)
  • Host and network-based intrusion detection
  • Centralized event and log data collection

Popular Integrations

There is not enough information to display integrations.

Trellix Enterprise Security Manager

Score 7.1 out of 10

Trellix Enterprise Security Manager (formerly McAfee Enterprise Security Manager) is security information and event management (SIEM) software.

Higher Rated Features

  • Security Information and Event Management (SIEM)
  • Custom dashboards and workspaces
  • Integration with Identity and Access Management Tools

Popular Integrations

There is not enough information to display integrations.

LogRhythm NextGen SIEM Platform

Score 7.1 out of 10

The LogRhythm NextGen SIEM Platform, from LogRhythm in Boulder, Colorado, is security information and event management (SIEM) software which includes SOAR functionality via SmartResponse Automation Plugins (a RespondX feature), the DetectX security analytics module, and AnalytiX as a log management solution that centralizes log data, enriches it with contextual details and applies a consistent schema across all data types.

Higher Rated Features

  • Centralized event and log data collection
  • Custom dashboards and workspaces

Popular Integrations

There is not enough information to display integrations.

Sumo Logic

Score 7.3 out of 10

Sumo Logic is a log management offering from the San Francisco based company of the same name.

Higher Rated Features

Customers are more satisfied with the features of Microsoft Sentinel than the Sumo Logic

Popular Integrations

There is not enough information to display integrations.