---
title: Microsoft Sentinel Reviews
meta_title: 'Microsoft Sentinel Reviews 2026: Details, Pricing, & Features | G2'
meta_description: Filter 298 reviews by the users' company size, role or industry
  to find out how Microsoft Sentinel works for a business like yours.
aggregate_rating:
  rating_value: 4.4
  review_count: 298
  scale: '5'
date_modified: '2026-08-13'
parent_category:
  name: System Security
  url: https://www.g2.com/categories/system-security
---


# Microsoft Sentinel Reviews
**Vendor:** Microsoft  
**Category:** [Security Orchestration, Automation, and Response (SOAR) Software](https://www.g2.com/categories/security-orchestration-automation-and-response-soar)  
**Average Rating:** 4.4/5.0  
**Total Reviews:** 298
## About Microsoft Sentinel
Microsoft Sentinel lets you see and stop threats before they cause harm, with SIEM reinvented for a modern world. Microsoft Sentinel is your birds-eye view across the enterprise. Put the cloud and large-scale intelligence from decades of Microsoft security experience to work. Make your threat detection and response smarter and faster with artificial intelligence (AI). Eliminate security infrastructure setup and maintenance, and elastically scale to meet your security needs—while reducing IT costs. With Microsoft Sentinel, you can: - Collect data at cloud scale—across all users, devices, applications, and infrastructure, both on-premises and in multiple clouds - Detect previously uncovered threats and minimize false positives using analytics and unparalleled threat intelligence from Microsoft - Investigate threats with AI and hunt suspicious activities at scale, tapping into decades of cybersecurity work at Microsoft -Respond to incidents rapidly with built-in orchestration and automation of common tasks



## Microsoft Sentinel Pros & Cons
**What users like:**

- Users value the **real-time monitoring** of Microsoft Sentinel, enhancing their ability to quickly respond to security threats. (27 reviews)
- Users value the **automated alert response** of Microsoft Sentinel, providing peace of mind with centralized security monitoring. (23 reviews)
- Users value the **seamless dashboard usability** of Microsoft Sentinel, facilitating intuitive security management and comprehensive monitoring. (21 reviews)
- Users value the **fast and secure threat response** of Microsoft Sentinel, enhancing overall security and risk management. (16 reviews)
- Users benefit from the **seamless data management** of Microsoft Sentinel, enhancing workflow and ensuring comprehensive security analytics. (15 reviews)
- Alerting System (14 reviews)
- Monitoring (14 reviews)
- Data Analysis (12 reviews)
- Centralized Management (11 reviews)
- Setup Ease (11 reviews)

**What users dislike:**

- Users express concerns about **cloud dependency** , particularly regarding connectivity issues with low-speed internet and commercial reliance. (12 reviews)
- Users find the **complex configuration** of Microsoft Sentinel challenging, requiring advanced technical skills for effective setup and use. (12 reviews)
- Users face **configuration issues** with Microsoft Sentinel, requiring technical expertise and time for effective setup. (11 reviews)
- Users find the **difficult setup** of Microsoft Sentinel challenging without dedicated security experts and proper training. (10 reviews)
- Users struggle with the **poor interface design** of Microsoft Sentinel, making navigation and understanding features difficult. (9 reviews)
- False Positives (7 reviews)
- UX Improvement (7 reviews)
- Poor Customer Support (6 reviews)
- Slow Performance (6 reviews)
- Time-Consumption (6 reviews)

## Microsoft Sentinel Reviews
  ### 1. Microsoft Sentinel is a Cloud-native security intelligence platform for Microsoft Azure.

**Rating:** 5.0/5.0 stars

**Reviewed by:** Shashank G. | Cyber Security Architecture, Enterprise (> 1000 emp.)

**Reviewed Date:** July 30, 2024

**What do you like best about Microsoft Sentinel?**

Microsoft Sentinel seamlessly integrates with Azure security services, capturing data from different sources like VMs using the Azure monitor agent, Azure Activity log, and Azure event hub. Its built on cloud native architecture. Its a centralized monitoring system. Azure sentinel uses playbooks for automated threat response, streamlining incident handeling.

**What do you dislike about Microsoft Sentinel?**

Some users find the user interface challenging to navigate, understanding its features may take time. This conprehensive soltuin comes with a price tag.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

Microsoft sentinel provides bird's-eye view across enterprise, ingesting security data from all the workloads.It is AI-powered threat intelligence and a rules engine help detects and investigate incidents. MS Sentinel uses playbooks for automated threat response, streamlining incident handling.

  ### 2. Microsoft Sentinel: A Comprehensive SIEM & SOAR

**Rating:** 4.5/5.0 stars

**Reviewed by:** Mohammad Riyaz S. | Mid-Market (51-1000 emp.)

**Reviewed Date:** April 04, 2024

**What do you like best about Microsoft Sentinel?**

Microsoft Sentinel is a cloud-native platform so the scalability is easy. As it's a Microsoft product the integration with Sentinel is easy, while integrating Active Directory and other Microsoft-made products. With Sentinel, we can achieve centralized monitoring which gives us great visibility over IT Infrastructure. Comes with built-in SOAR and threat intel feeds which help in automation and up to date on the latest threats. Finally, it has good customer support and a friendly interface.

**What do you dislike about Microsoft Sentinel?**

Sentinel comes with a free tire but the cost will be added if we integrate with soar, Customization of rules can be complex to beginners and moderate false positive rate.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

Microsoft Sentinel gives good visibility over the IT Infra which will help in detecting and Responding to threats made easy. Threat intel feeds give the latest threat feeds so we can find the latest threats.

  ### 3. Securing the Future with Microsoft Sentinel

**Rating:** 4.5/5.0 stars

**Reviewed by:** AK M. | Lead Engineer, Enterprise (> 1000 emp.)

**Reviewed Date:** March 13, 2024

**What do you like best about Microsoft Sentinel?**

It provides seamless integration with other security services and products. It can handle large amount of security data and provides organizations to customize and help their security analytics. It can detect real time alerts and threats.

**What do you dislike about Microsoft Sentinel?**

It integrates well with other microsoft products but users find challenges when they have to integrate with non-microsoft products. Users with non technical background finds it difficult to use Microsoft Sentinel. Also, cost is also a concerning point for the business.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

With its capabilities related to automated incident response, the organizations can streamline the responses to security incidents.
Sentinel provides alert data and helps in solving problems related to threats.
It helps organizations meet compliance requirements and maintain cybersecurity posture.
Sentinel offers orchestration and automation which manages security operations.

  ### 4. Sentinel: The Data Breach Detection Specialist

**Rating:** 4.0/5.0 stars

**Reviewed by:** Akshata D. | HR - Associate, Small-Business (50 or fewer emp.)

**Reviewed Date:** November 15, 2023

**What do you like best about Microsoft Sentinel?**

When there is a suspected data breach, Sentinel can quickly collect and analyze security data from a variety of sources to identify the source of the breach and the extent of the damage. This information can then be used to notify affected employees and take steps to remediate the breach. Sentinel can monitor employee data access logs to identify unauthorized access attempts. This information can be used to investigate potential security incidents and take steps to prevent future unauthorized access.

**What do you dislike about Microsoft Sentinel?**

Microsoft Sentinel primarily focuses on security data collection and analysis, which may not provide HR associates with a comprehensive understanding of employee behavior and potential security risks related to their data access patterns. Microsoft Sentinel's sensitivity to potential security threats may result in an overwhelming number of alerts, making it difficult for HR associates to prioritize and address critical incidents effectively.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

By providing a comprehensive view of employee data security, Sentinel can help HR associates to make informed decisions about employee data security policies and procedures.
By streamlining the incident response process, Sentinel can help HR associates to respond to incidents quickly and effectively, minimizing the impact of breaches and protecting employee data

  ### 5. Gurdian's Gaze : A Sentinal Review

**Rating:** 3.5/5.0 stars

**Reviewed by:** Saurabh K. | Cyber Security Consultant, Enterprise (> 1000 emp.)

**Reviewed Date:** March 05, 2024

**What do you like best about Microsoft Sentinel?**

Best feature of Microsoft Sentinal is its advanced Security Analytics. It can detect and respond the security alerts in real time which helps the organisation to identify and mitigate the security risk more effectively.

**What do you dislike about Microsoft Sentinel?**

Least helpful features of Microsoft Sentinal is its complexity in setup and configuration.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

Microsoft Sentinal is very effective in finding out the security alerts in real time and with most precision. This makes the organisation to find most of the security breaches and mitigated it effectively.

  ### 6. Microsoft Sentinel Review

**Rating:** 4.5/5.0 stars

**Reviewed by:** Prashant K. | Security Researcher 3, Small-Business (50 or fewer emp.)

**Reviewed Date:** January 09, 2024

**What do you like best about Microsoft Sentinel?**

Microsoft Sentinel known as Azure Sentinel previously is among one of the best siem platform which have upsides like easy integrationwith azure services, based on fully cloud native architecture, supports centralized monitoring, automated incident responses and real time advanced threat detection.

**What do you dislike about Microsoft Sentinel?**

As every software cannot be totally precise, it has some downsides as well. One of the downside is difficutly in data ingestion and parsing logs. Also, complex in fine-tuning analytics and cost in-efficient.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

Microsoft Sentinel is one of the leading SIEM solution which provides easy integration with Azure services, supports centralized monitoring, is highly customizable, and one of the best feature is real-time advanced threat detection.

  ### 7. Sentinel Review

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Computer Networking | Mid-Market (51-1000 emp.)

**Reviewed Date:** January 09, 2023

**What do you like best about Microsoft Sentinel?**

The best part of using sentinel is the ease of integration with multiple log sources and querying data using custom KQL language . This help to have strong monitoring capabilities

**What do you dislike about Microsoft Sentinel?**

Sometimes sentinel platforms gives multiple errors while loading the dashboard and also running the searches . Need to refresh it multiple times to work . Apart from this it's a great soar platform

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

Detecting attackers , Monitoring the whole environment , building automation using playbooks which is helping buisness to stay safe from theat actors.  In this way it is helping.

  ### 8. Microsoft Sentinel review

**Rating:** 4.5/5.0 stars

**Reviewed by:** Krishna J. | Modern Workplace Engineer - Level 2, Mid-Market (51-1000 emp.)

**Reviewed Date:** January 22, 2024

**What do you like best about Microsoft Sentinel?**

Microsoft Sentinel is best tool that can be integrated easliy with many azure services. I like its centralised monitoring for all services and its automated alert response.

**What do you dislike about Microsoft Sentinel?**

There is nothing much to dislike about the product but one thing is it's cost which should be consnsidered.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

It is best solution for all threats and cyber attacks. It has automation for basic security tasks which helps our team in incident mamangement.

  ### 9. Fetures of Microsoft Sentinel

**Rating:** 5.0/5.0 stars

**Reviewed by:** MRIDUL P. | Intern, Small-Business (50 or fewer emp.)

**Reviewed Date:** June 16, 2023

**What do you like best about Microsoft Sentinel?**

I like most about  Microsoft Sentinel is its ability to help protect your computer system and data from cyber threats; it uses advanced technology to detect and respond to potential security issues. It basically monitors your system in real-time, looking for suspicious activities and critical breaches, and also, if it detects any threates, it sends alerts to notify you, which is very important and allows us to take immediate action.

**What do you dislike about Microsoft Sentinel?**

I feel Microsoft Sentinel could focus on simplifying the interface, such as streamlining the dashboard and organizing information more precisely, making it easier for users to find and understand the relevant security insights and alerts.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

Microsoft Sentinel is solving many critical problems, such as helping organizations detect and investigate cybersecurity threats , real-time monitoring, simple integration, powerful visualization and reports that help us understand our organization's security landscape.It provides valuable insights and offers scalable flexibility to adapt to our organization's needs.

  ### 10. Sentinel is best & secured cloud tool

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Research | Mid-Market (51-1000 emp.)

**Reviewed Date:** March 20, 2024

**What do you like best about Microsoft Sentinel?**

It is best tool for secured transmission of the data to server, and have ability to actively monitoring of activity logs.

**What do you dislike about Microsoft Sentinel?**

sentinel tool is bit costly for MSME companies.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

It helps to log security information and helps secure from viruses. It also helps to automate process which decrease human efforts.

  ### 11. Microsoft Sentinel Features and Capabilities

**Rating:** 4.0/5.0 stars

**Reviewed by:** Mansi S. | Software Engineer TDP-ll, Small-Business (50 or fewer emp.)

**Reviewed Date:** June 10, 2023

**What do you like best about Microsoft Sentinel?**

I like Microsoft sentinel because it provides centralized security Monitoring it really helps our organization collect data from different sources like cloud environment, on-premises systems and etc apart from that it gives advanced threat detection technique which really help to detect  vulnerablities thats why i really like microsoft sentinel

**What do you dislike about Microsoft Sentinel?**

Microsoft sentinel provides several advantages but there are some disadvantages which i don't like is sometimes like any security monitoring system, Microsoft Sentinel may generate false positives or produce a high volume of noise in terms of security alerts. This can overwhelm security teams and make it challenging to identify genuine threats

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

Microsoft sentinel helps my organization in terms of incident response it helps us if any incident happen in our organization it alerts us through, we respond quickly and solved our problem. it also offers customize dashboards for visible and reporting which gives grahphical representation. and provide security metrics.

  ### 12. Protect your businesses with Microsoft Sentinel

**Rating:** 4.0/5.0 stars

**Reviewed by:** Faizan S. | Software Engineer, Small-Business (50 or fewer emp.)

**Reviewed Date:** October 18, 2023

**What do you like best about Microsoft Sentinel?**

The best about Microsoft Sentinel having exhaustive security and real time threads detection, which uses Ai and machine learning for detection etc, also event management is a great feature.

**What do you dislike about Microsoft Sentinel?**

I didn't want to describe but some of the users find the configuration of Microsoft Sentinel to be complex.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

Microsoft's Sentinel has its improved security that enhanced organizations to detect and respond quickly to the risks thread and reduces cyberattacks, also it is beneficial for small companies.

  ### 13. Intelligent and Effective

**Rating:** 5.0/5.0 stars

**Reviewed by:** Trisha G. | Growth - Data Analyst, Mid-Market (51-1000 emp.)

**Reviewed Date:** May 04, 2023

**What do you like best about Microsoft Sentinel?**

Microsoft Sentinel is an excellent Cloud Security Posture Management Tool. The best thing about Microsoft Sentinel is its centralized dashboard which helps us to know about our current cloud security posture. Being a cloud-native solution, It integrates well with other cloud platforms such as AWS and Google Cloud, which is why the tool is highly scalable to meet your cloud infra needs. Its AI and Machine learning capabilities effectively detect potential threats and provide real-time end-point protection.

**What do you dislike about Microsoft Sentinel?**

Nothing specific to complain about. It always does the job with excellent efficiency. The only thing is its steep learning curve, as the tool is a little complex to get started with. Once you get hold of it, you will love Microsoft Sentinel.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

Microsoft Sentinel delivers the best performance in terms of security analytics, detecting potential threats, and protecting endpoints in real-time. It offers robust security solutions for organizations of any size. The automated incident response system significantly reduces our team's time and effort in maintaining cloud security posture and standards.

  ### 14. The Ultimate  Efficiency Accelerator!It's a Beast when it comes to Intelligent Security Performance

**Rating:** 5.0/5.0 stars

**Reviewed by:** Mikiben D. | Senior Software Engineer, Enterprise (> 1000 emp.)

**Reviewed Date:** April 04, 2023

**What do you like best about Microsoft Sentinel?**

Altogether  ,I can't  picture my work environment  without the presence of Microsoft Sentinel. I get my thoughts are laid out and sleep  well at night since am sure of a very secure environment against  threats attack as well as monitors  servers, network  and apps. Having the ability to clean up data ,sort  out unnecessary  log data and also fixing log data is a big plus.Recognize risks quickly and assist in handling them while doing analysation in real time.I can testify that it provides modern and advanced filters ,threat protection and many other security  features that offer powerful  shield of our company data to prevent any attack from various threats.Integrate well with other Microsoft  security  app and 3rd party SIEM.I was amazed  how it effectively removes malicious activities  that have been made without even the end user knowing they ever recieved  such an attack .It is painless to set up since the interface is stable,intuitive and documentation  is straightforward.

**What do you dislike about Microsoft Sentinel?**

Since the latest upgrade nothing that stick out .Everything I need is available  in Microsoft  Sentinel.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

Love Microsoft  Sentinel and how it's  improved  our organisation response to network challenges. Provides robust security alerts that stimulate quick actions to be taken before attacks and offer intelligence reports that help to trace any challenge affecting our performance.

  ### 15. Easy to set up and can detect Real time threats

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Accounting | Enterprise (> 1000 emp.)

**Reviewed Date:** December 12, 2023

**What do you like best about Microsoft Sentinel?**

It can detect real-time threats and provides highly responsive threat detection by running its query just within few  minutes. This feature is further augmented with support for advanced multistage attack detection using Fusion. With Microsoft Sentinel we can easily get a single solution for all attacks.

**What do you dislike about Microsoft Sentinel?**

Dependency on Microsoft software and cloud.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

analyze large volumes of data across an enterprise and it's quick

  ### 16. Enhancing Security Operations With Microsoft Sentinel

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Computer & Network Security | Enterprise (> 1000 emp.)

**Reviewed Date:** November 08, 2023

**What do you like best about Microsoft Sentinel?**

It provides centralized, real time threat detection and response, streamlining security operations. It's AI driven insights and integration with azure services offer unparalleled visibility and proactive protection against cyber threats.

**What do you dislike about Microsoft Sentinel?**

Complexity of setting up and configuring Sentinel may pose a challenge for some organisations without dedicated security experts.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

It addressed the challenge of centeralizing and streamlining security operations, providing real-time threat detection and response l, ultimately overall cybersecurity posture and response capability. That's how it helped our organisation.

  ### 17. Come find out!Extremely  Brilliant  SIEM with easy Onboarding  and Powerful Incident Response.

**Rating:** 5.0/5.0 stars

**Reviewed by:** Festus M. | DevOps Engineer, Mid-Market (51-1000 emp.)

**Reviewed Date:** March 29, 2023

**What do you like best about Microsoft Sentinel?**

The experience  one gains while using Microsoft  Sentinel in incidents  responses, automation and connectinf data sources is much more fantastic  and worthy. Dashboards  are impressive ,simple to use and provide  all information  that one require.it's not only tool that is standalone out from its competitors  and with greatest  security capabilities  but also with high valuable for preventative and reactive security. Large amount of data is loaded quickly and allow comprehensive  analysis  of data that play a role when generating  reports.Good thing is since it allow data collection  from various sources, one is able to store tha data in format  of the choice that favour easy analysis .The powerful alerting feature is valuable  since with it you can set up automatic notifications ,link,generate  visual  with dashboard and have the security  set up the way the company want.The details it provides when  there is a threat allow one to go  deep into details of that threats  and know exactly  what is happening and its  prevention.

**What do you dislike about Microsoft Sentinel?**

Am sure I will  use Microsoft  Sentinel  for long time since it performance  is exceptional and so far have not experienced  any challenge.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

Microsoft  Sentinel  is helpful  as it automatically  detect,respond  and investigate  threats as well as provide solution thus boost the security  of our applications. The threat intelligent  feature allow us to stay informed  and on track about any coming threat. Also the automation capabilities  help us to save our resources and time.

  ### 18. This is the Tool everyone should go with!Phenomenal, Future Giant SIEM for Threat Hunters.

**Rating:** 5.0/5.0 stars

**Reviewed by:** Rose O. | Senior Software Engineer, Enterprise (> 1000 emp.)

**Reviewed Date:** March 29, 2023

**What do you like best about Microsoft Sentinel?**

Since day one I started  using Microsoft  Sentinel ,the experience  have been  completely  productive, positive  and exceptional. Full of features that are mind blowing and powerful  to handle  security  threats  and monitoring  servers, network  and security  appliances. Provide a very robust environment  for interacting data from different  sources that in turn helps in easy and detailed data analysis as well  as monitoring  the data by viewing the records in the most professional  categories form.I like how it provide ability to create custom dashboards  that we mainly use for tracking. The user interface is easy to understand and any person without prior knowledge  can operate it smoothly  and efficiently. There is automated alerts as well as one can easily  create new alerts  for hunting  any suspicious  activity. This Tool generates  accurate and alot of data that aid us boost our overall  security. The functionality  of analysing  and correlating real time data from network entries,viruses ,and endpoints that are used to deliver alerts  using  specified and built in rules is a huge plus .

**What do you dislike about Microsoft Sentinel?**

So far there is nothing  that is lacking,everything  performs perfectly and is full of infrastructure  that provide best security.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

In our organisation  we enjoy most and appreciate it's  advance threats response and detection. It's  results are precise, features are unlimited  ,security  is modern and excellent  ,stability  and performance  is very high and all these combination  gives us a smooth experience  and better productivity.

  ### 19. Excellent Threat intelligent Security Product in Cloud

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Construction | Enterprise (> 1000 emp.)

**Reviewed Date:** March 14, 2023

**What do you like best about Microsoft Sentinel?**

Microsoft Sentinel is one of the excellent Data protection cloud solutions in Microsoft. It provides real-time endpoint protection from your devices, cloud applications, and data from a data attack detection, malware threat, proactive hunting, and supporting running on-premises servers or cloud solutions as well.

**What do you dislike about Microsoft Sentinel?**

Microsoft Sentinel, we don't have any issues or dislike with this product. In our experience, valuable security features are included for the Cloud and on-premises endpoint devices. The only thing little to consider is the support structure from OEM.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

Microsoft sentinel solving and protection especially attack deduction, threat intelligence visibility, and  24/7 complete monitoring threat alerts. this product is budget one compared to other products in the market. it is secure your company's internal and external data from outside malware attacks. I have highly recommended this product to companies.

  ### 20. Unarguably the best SIEM tool currently though pricing is a bit on the higher side

**Rating:** 4.5/5.0 stars

**Reviewed by:** Aditya V. | Data Scientist II, Enterprise (> 1000 emp.)

**Reviewed Date:** April 06, 2023

**What do you like best about Microsoft Sentinel?**

Microsoft Sentinel is probably the best enterprise-level security information event management (SIEM)  tool comapred to legacy SIEM providers as it analyses and prevents threats in near real-time. It is easy to scale it to a larger workforce with minimal security infrastructure setup and maintenance.

**What do you dislike about Microsoft Sentinel?**

Apart from being a bit costly, I would like to see improved and easy integration with third-party solutions. Network detection and response (NDR) is currently far behind compared to some of the leading SIEM providers

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

Next generation of cloud-native SIEM that is highly scalable and protects you from a wide range of threats on a near real-time basis resulting in fewer security breaches. Detailed analysis reports post-threat identification further safeguards you from avoiding similar security threts

  ### 21. Microsoft Sentinel

**Rating:** 4.0/5.0 stars

**Reviewed by:** Sahil G. | QA Cybersecurity Engineer, Mid-Market (51-1000 emp.)

**Reviewed Date:** July 25, 2022

**What do you like best about Microsoft Sentinel?**

Microsoft Sentinel is a great SIEM and SOAR solution and it is easy to use because of its nice and clean dashboard plus easy to monitor data and incidents, AI enables the Microsoft Sentinel results more accurate and Sentinal allows for integration with Multi-cloud, on-prem  or hybrid environment to provide the maximum coverage of environment by single solutions, it collects data from Azure, defender, office 365 and other microsoft services

**What do you dislike about Microsoft Sentinel?**

Microsoft Sentinel works with various cloud platforms and on-prem solutions but it is very easy to set up Sentinel for Azure and other Microsoft services work very effective as compared to other cloud services and on-prem solutions, threat databases are also not updated as compared to other solutions

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

Sentinel is very easy to set-up and integrates with Azure and other Microsoft services plus sentinel collects data from many sources like Azure AD, VMs, Vaults, office 365, Defender and so on.. this will provide maximum coverage of the infrastructure and resources with minimal effort

  ### 22. One of the best apps to give a birds eye view of entire data security.

**Rating:** 4.5/5.0 stars

**Reviewed by:** Aayush P. | BOJA, Mid-Market (51-1000 emp.)

**Reviewed Date:** April 27, 2023

**What do you like best about Microsoft Sentinel?**

The best part about using it is that it connects across various apps without any issues. During my project, it helped me a lot by providing real-time integration using different connectors for Office 365 and Azure AD.

**What do you dislike about Microsoft Sentinel?**

Poor availability of non-MS log connectors makes it difficult and time consuming to parse logs; the additional work to do on KQL for the same is a kind of duplication of efforts and resource-consuming in terms of both human and IT

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

Gaining overall insights for smart security analytics and intelligence in threat for entire project across different data sources.

  ### 23. Excellent tool for network monitoring

**Rating:** 4.5/5.0 stars

**Reviewed by:** Rohit M. | Data Scientist III, Enterprise (> 1000 emp.)

**Reviewed Date:** April 20, 2023

**What do you like best about Microsoft Sentinel?**

Microsoft Sentinel is easy to integrate with other Microsoft products and third-party solutions. It has all the capabilities to detect, monitor and counter cyber threats in real-time. It also provides analytical support to organizations to prepare better for future problems.

**What do you dislike about Microsoft Sentinel?**

Now this software needs to include new features to compete with competitors. Microsoft sentinel team should also work on cost optimization and reduce costs slightly.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

Microsoft Sentinel is highly recommended for organizations as it is helping my company in security monitoring and on-time solution for cyber threats. It helps in protecting all digital assets.

  ### 24. Microsoft Sentinel is Best SIEM and SOAR cloud-native solution

**Rating:** 4.5/5.0 stars

**Reviewed by:** Pravin M. | Lead Software Engineer -Azure Devops, Enterprise (> 1000 emp.)

**Reviewed Date:** January 06, 2023

**What do you like best about Microsoft Sentinel?**

Microsoft Sentinel is the best tool for security information and event management (SIEM). Sentinel helps us to deliver intelligent security analytics and threat intelligence across the enterprise. It is a complete solution to defend against security attacks. It also enabled us to increase the project monitoring tasks with remarkable results.

**What do you dislike about Microsoft Sentinel?**

The user interface doesn't work correctly using a normal pixels monitor. Microsoft should work more deeply on pixels monitor. We have to get a big monitor to see all the details, which is not ideal.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

Sentinels enable us to collect all data by using azure data connections that are available out of the box and provide real-time integration. We use Azure Active Directory, Azure Activity, Azure Storage, Azure Key Vault, and Azure Kubernetes service. It greatly helps us collect in real-time the data of those services.

  ### 25. Impressive customizable and scalable SIEM solution

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Construction | Enterprise (> 1000 emp.)

**Reviewed Date:** March 13, 2023

**What do you like best about Microsoft Sentinel?**

This solution provides attack detection, threat visibility, and response. It monitors all the IT infrastructure that includes applications, endpoints, multi-cloud, etc., and gives alerts whenever there is any threat or security breach. The solution helps you to also be a step ahead and proactive when it comes to any security compromisation.

**What do you dislike about Microsoft Sentinel?**

The solution covers most of the security aspects, and it's hard to find any drawbacks in it.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

Its continuous monitoring features which cover all the IT infrastructure devices like the cloud, servers, endpoints applications, etc. help us to keep the IT environment secure from threats.

  ### 26. Seamless threat detection application

**Rating:** 4.5/5.0 stars

**Reviewed by:** Daniel N. | Python Developer, Electrical/Electronic Manufacturing, Enterprise (> 1000 emp.)

**Reviewed Date:** March 15, 2023

**What do you like best about Microsoft Sentinel?**

The powerful product helps us to monitor the performance of the computing devices in the organization. The Microsoft analytics provides real-time insights on security situation across the enterprise. It unearths suspicious activities  that may lead to ransomware invasion into the company systems.

**What do you dislike about Microsoft Sentinel?**

The overall performance has been good. It has helped us to stop many threats and I like how it performs.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

Microsoft Sentinel provides reliable threat automation responses that stops cyber attacks in advance. It provides efficient data analytics for investigating threats and suspicious activities.

  ### 27. Real-time response to security threat

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Computer Software | Enterprise (> 1000 emp.)

**Reviewed Date:** April 20, 2023

**What do you like best about Microsoft Sentinel?**

Microsoft Sentinel offers advanced security analytics and threat intelligence. It allows security teams to detect and respond to threats in real-time, automate security workflows, and investigate incidents with rich contextual data.

**What do you dislike about Microsoft Sentinel?**

Not suitable for all organizations. Some organizations may find it too complex or require additional customisation to make it work for their environment. But no other major concerns.

**What problems is Microsoft Sentinel solving and how is that benefiting you?**

With the increasing complexity of security threats, we needed a solution that evolves and adapts. Microsoft Sentinel helps to address this issue by leveraging machine learning and AI to identify potential threats and anomalies in real-time, enabling security teams to respond quickly and effectively.


## Microsoft Sentinel Discussions
  - [What is Microsoft Sentinel used for?](https://www.g2.com/discussions/what-is-microsoft-sentinel-used-for) - 3 comments, 2 upvotes
  - [Is sentinel a free service provided by Microsoft azure ?](https://www.g2.com/discussions/is-sentinel-a-free-service-provided-by-microsoft-azure) - 1 comment, 1 upvote
  - [If I had to have a question, I would ask if there were any plans to add linux support to this program.](https://www.g2.com/discussions/31827-if-i-had-to-have-a-question-i-would-ask-if-there-were-any-plans-to-add-linux-support-to-this-program) - 2 comments, 1 upvote
  - [How I  able to install /integrated Azure Sentinel agents to collect data on IOT devices/ DLP/ Endpoint devices Computer / Laptops / Printers](https://www.g2.com/discussions/31797-how-i-able-to-install-integrated-azure-sentinel-agents-to-collect-data-on-iot-devices-dlp-endpoint-devices-computer-laptops-printers) - 1 comment, 1 upvote
  - [Why should I use Azure Sentinel?](https://www.g2.com/discussions/why-should-i-use-azure-sentinel) - 1 comment

- [View Microsoft Sentinel pricing details and edition comparison](https://www.g2.com/products/microsoft-sentinel/reviews?filters%5Bsentiment_snippet%5D=2507314&qs=pros-and-cons&section=pricing&secure%5Bexpires_at%5D=2026-08-14+18%3A24%3A25+-0500&secure%5Bsession_id%5D=48d512b1-0330-4bf6-83aa-9cf93066a4b0&secure%5Btoken%5D=1fa6c76d36d4c44ff022bf4e940450c0670d83c5bca2a28fe2ae9a99a40d5234&format=llm_user)
## Microsoft Sentinel Integrations
  - [Check Point Email Security](https://www.g2.com/products/check-point-email-security/reviews)
  - [ESET PROTECT](https://www.g2.com/products/eset-protect/reviews)
  - [FortiAnalyzer](https://www.g2.com/products/fortianalyzer/reviews)
  - [Grip Security](https://www.g2.com/products/grip-security/reviews)
  - [Microsoft Defender for Cloud](https://www.g2.com/products/microsoft-defender-for-cloud/reviews)
  - [Microsoft Defender for Endpoint](https://www.g2.com/products/microsoft-defender-for-endpoint/reviews)
  - [Microsoft Defender XDR](https://www.g2.com/products/microsoft-defender-xdr/reviews)

## Microsoft Sentinel Features
**Response**
- Resolution Automation
- Resolution Guidance
- System Isolation
- Threat Intelligence
- Incident Investigation

**Network Management**
- Activity Monitoring
- Asset Management
- Log Management
- Network Monitoring
- Server Monitoring
- File Integrity Monitoring
- Real-Time Monitoring
- User Management
- Endpoint Management
- Compliance Management
- Incident Management
- Vulnerability Management
- Policy Management
- Event Logs

**Automation**
- Workflow Mapping
- Workflow Automation
- Automated Remediation
- Log Monitoring

**Records**
- Incident Logs
- Incident Reports

**Incident Management**
- Event Management
- Automated Response
- Incident Reporting
- Real-Time Reporting

**Orchestration**
- Security Orchestration
- Data Collection
- Threat Intelligence
- Data Visualization

**Management**
- Incident Alerts
- Incident Case Management
- Workflow Management

**Security Intelligence**
- Threat Intelligence
- Vulnerability Assessment
- Behavioral Analytics
- Data Examination
- Real-Time Data

**Response**
- Alerting
- Performance Baselin
- High Availability/Disaster Recovery

**Agentic AI - Security Information and Event Management (SIEM)**
- Autonomous Task Execution
- Multi-step Planning
- Proactive Assistance
- Decision Making

**Additional Functionality**
- Real-Time Notifications
- Audit Trail
- Application Security
- Risk Analysis
- AI Copilot
- Data Import/Export
- Alerts/Notifications
- Prioritization
- Security Auditing
- Search/Filter
- Compliance Tracking
- Generative AI
- API
- Third-Party Integrations
- Activity Dashboard
- Data Visualization

**Additional Functionality**
- Generative AI
- Collaboration Tools
- Incident Management
- AI Copilot
- Reporting/Analytics
- Threat Response
- Key Performance Indicators
- Risk Alerts
- Performance Metrics
- Third-Party Integrations

**Generative AI**
- AI Text Generation
- AI Text Summarization
- Generative AI

**Additional Functionality**
- SSL Security
- HIPAA Compliant
- API
- Threat Response
- Endpoint Protection
- Maintenance Scheduling
- Third-Party Integrations
- Security Auditing
- Application Security
- Encryption
- Network Security
- Real-Time Reporting
- AI Copilot
- Reporting/Analytics
- Authentication
- Financial Data Protection
- Anti Virus
- Secure Data Storage
- Virus Definition Update
- Activity Dashboard
- VPN
- Audit Trail
- Anti Spam
- Access Controls/Permissions
- Data Visualization
- Alerts/Escalation
- Data Security

## Top Microsoft Sentinel Alternatives
  - [Sumo Logic](https://www.g2.com/products/sumo-logic/reviews) - 4.3/5.0 (392 reviews)
  - [IBM QRadar SIEM](https://www.g2.com/products/ibm-ibm-qradar-siem/reviews) - 4.4/5.0 (283 reviews)
  - [Splunk Enterprise Security](https://www.g2.com/products/splunk-enterprise-security/reviews) - 4.3/5.0 (224 reviews)

