Microsoft Sentinel review
Overall Satisfaction with Microsoft Sentinel
Microsoft Sentinel is used both as siem and soar solution in our customer environment . We are also sending logs from Microsoft Sentinel to prisma. We are running kql queries on Microsoft Sentinel to do threat hunting
Pros
- siem solution
- automation with runbooks
- soar solution
- compatible with other vendor solution
- providing compliance
Cons
- ticketing system
- other third party app should also be compatible
- pricing
- better features for hybrid cloud
- reduced cost occured for legacy system and saving 50000 dollar upto 1 year
- reduced false positive incidents up to 90 percent
- faster deployment over 100000 dollar up to 1 year
network devices firewall devices waf devices
we hava data connector , it was seamless process
Microsoft Sentinel’s AI, machine learning, and analytics helped in threat hunting and removing false positives. It helped in having automated runbooks for predefined incidents
They are used for threat hunting and can document investigation. we have specific incident page and overall can create graph and investigate
it is easy to use Microsoft Sentinel and has faster deployment and advanced artificial intelligence than splunk
Do you think Microsoft Sentinel delivers good value for the price?
Yes
Are you happy with Microsoft Sentinel's feature set?
Yes
Did Microsoft Sentinel live up to sales and marketing promises?
I wasn't involved with the selection/purchase process
Did implementation of Microsoft Sentinel go as expected?
Yes
Would you buy Microsoft Sentinel again?
Yes


Comments
Please log in to join the conversation