Introducing G2.ai, the future of software buying.Try now

Compare Microsoft Sentinel and Splunk Enterprise Security

Save
    Log in to your account
    to save comparisons,
    products and more.
At a Glance
Microsoft Sentinel
Microsoft Sentinel
Star Rating
(289)4.4 out of 5
Market Segments
Enterprise (41.4% of reviews)
Information
Entry-Level Pricing
Pay As You Go
Browse all 11 pricing plans
Splunk Enterprise Security
Splunk Enterprise Security
Star Rating
(224)4.3 out of 5
Market Segments
Enterprise (62.0% of reviews)
Information
Entry-Level Pricing
No pricing available
Learn more about Splunk Enterprise Security
AI Generated Summary
AI-generated. Powered by real user reviews.
  • Users report that Splunk Enterprise Security excels in Log Management with a score of 9.4, which reviewers mention provides comprehensive capabilities for analyzing and managing logs effectively. In contrast, Microsoft Sentinel scores 8.8 in this area, indicating it may not be as robust in handling extensive log data.
  • Reviewers mention that Microsoft Sentinel shines in Product Direction with a high score of 9.5, suggesting a strong commitment to evolving the product based on user feedback. Splunk Enterprise Security, while still positive, has a lower score of 7.8, indicating some users feel it may not be as forward-thinking.
  • Users on G2 highlight that Splunk Enterprise Security offers superior Automated Remediation capabilities, scoring 8.6, which allows for proactive threat management. Microsoft Sentinel, however, matches this with an 8.7 in Automated Response, showing it also has strong features in this area.
  • Reviewers say that Microsoft Sentinel provides a better user experience in terms of Ease of Use, scoring 8.5 compared to Splunk's 8.1. This suggests that users find Microsoft Sentinel more intuitive and easier to navigate.
  • G2 users report that Splunk Enterprise Security has a strong focus on Incident Reporting, scoring 8.8, which users appreciate for its detailed and actionable insights. Microsoft Sentinel, while close with a score of 8.9, may not offer the same depth of reporting features.
  • Users say that both products perform well in Activity Monitoring, with Splunk scoring 8.8 and Microsoft Sentinel at 8.9. However, reviewers mention that Microsoft Sentinel's integration with other Microsoft services enhances its monitoring capabilities, making it a more seamless choice for organizations already using Microsoft products.
Pricing
Entry-Level Pricing
Microsoft Sentinel
Pay-As-You-Go
Pay As You Go
Browse all 11 pricing plans
Splunk Enterprise Security
No pricing available
Free Trial
Microsoft Sentinel
Free Trial is available
Splunk Enterprise Security
No trial information available
Ratings
Meets Requirements
8.6
223
8.8
174
Ease of Use
8.5
229
8.1
178
Ease of Setup
8.3
129
7.7
95
Ease of Admin
8.3
124
8.2
90
Quality of Support
8.5
218
8.6
162
Has the product been a good partner in doing business?
8.7
119
8.9
88
Product Direction (% positive)
9.5
218
7.8
170
Features by Category
Security Information and Event Management (SIEM)Hide 14 FeaturesShow 14 Features
8.6
187
8.5
112
Network Management
8.9
169
8.8
93
|
Verified
8.4
161
8.1
83
|
Verified
8.8
165
9.3
30
|
Verified
Incident Management
8.7
168
8.7
90
|
Verified
8.7
164
8.4
86
|
Verified
8.9
165
8.7
89
|
Verified
Security Intelligence
8.7
167
8.2
81
|
Verified
8.3
160
7.9
81
|
Verified
8.5
161
8.5
87
|
Verified
8.4
161
8.5
88
|
Verified
Agentic AI - Security Information and Event Management (SIEM)
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Security Orchestration, Automation, and Response (SOAR)Hide 11 FeaturesShow 11 Features
8.5
110
Not enough data
Automation
8.2
95
Not enough data
8.4
97
Not enough data
8.6
96
Not enough data
8.8
99
Not enough data
Orchestration
8.8
97
Not enough data
8.6
98
Not enough data
8.6
98
Not enough data
8.4
97
Not enough data
Response
8.6
100
Not enough data
8.1
94
Not enough data
8.5
90
Not enough data
Categories
Categories
Shared Categories
Microsoft Sentinel
Microsoft Sentinel
Splunk Enterprise Security
Splunk Enterprise Security
Microsoft Sentinel and Splunk Enterprise Security are categorized as Security Information and Event Management (SIEM)
Unique Categories
Microsoft Sentinel
Microsoft Sentinel is categorized as Security Orchestration, Automation, and Response (SOAR)
Splunk Enterprise Security
Splunk Enterprise Security has no unique categories
Reviews
Reviewers' Company Size
Microsoft Sentinel
Microsoft Sentinel
Small-Business(50 or fewer emp.)
27.8%
Mid-Market(51-1000 emp.)
30.8%
Enterprise(> 1000 emp.)
41.4%
Splunk Enterprise Security
Splunk Enterprise Security
Small-Business(50 or fewer emp.)
10.0%
Mid-Market(51-1000 emp.)
28.0%
Enterprise(> 1000 emp.)
62.0%
Reviewers' Industry
Microsoft Sentinel
Microsoft Sentinel
Information Technology and Services
25.9%
Computer & Network Security
14.7%
Computer Software
8.3%
Banking
4.1%
Security and Investigations
3.8%
Other
43.2%
Splunk Enterprise Security
Splunk Enterprise Security
Information Technology and Services
23.0%
Computer Software
10.0%
Financial Services
8.0%
Computer & Network Security
6.5%
Banking
5.0%
Other
47.5%
Alternatives
Microsoft Sentinel
Microsoft Sentinel Alternatives
Sumo Logic
Sumo Logic
Add Sumo Logic
Datadog
Datadog
Add Datadog
LogRhythm SIEM
LogRhythm SIEM
Add LogRhythm SIEM
LevelBlue USM Anywhere
LevelBlue USM Anywhere
Add LevelBlue USM Anywhere
Splunk Enterprise Security
Splunk Enterprise Security Alternatives
LogRhythm SIEM
LogRhythm SIEM
Add LogRhythm SIEM
LevelBlue USM Anywhere
LevelBlue USM Anywhere
Add LevelBlue USM Anywhere
FortiSIEM
FortiSIEM
Add FortiSIEM
InsightIDR
InsightIDR
Add InsightIDR
Discussions
Microsoft Sentinel
Microsoft Sentinel Discussions
What is Microsoft Sentinel used for?
3 Comments
Rudhra Sekar S.
RS
It's for SIEM tool for real time incident responder and threat intelligence .Read more
If I had to have a question, I would ask if there were any plans to add linux support to this program.
2 Comments
DHEVAN Y.
DY
need to ask Microsoft, but since dot.net core can be installed in Linux, I believe the agent will work as it uses the .net platform. please experiment Read more
How I able to install /integrated Azure Sentinel agents to collect data on IOT devices/ DLP/ Endpoint devices Computer / Laptops / Printers
1 Comment
DHEVAN Y.
DY
So couple of point for IOT devices. You can leverage with IOT Hub in Azure. Most IOT devices uses C as their programming language you will probaly need to...Read more
Splunk Enterprise Security
Splunk Enterprise Security Discussions
What is the difference between Splunk Enterprise and Splunk Enterprise Security?
1 Comment
AK
Splunk enterprise is a big data analysis platform (basic product needed for splunk enterprise security) that collects, stores and can analyze data (logs)...Read more
Monty the Mongoose crying
Splunk Enterprise Security has no more discussions with answers