McAfee ePolicy Orchestrator vs Symantec Data Loss Prevention comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Microsoft Sentinel
Sponsored
Average Rating
8.2
Number of Reviews
86
Ranking in other categories
Security Information and Event Management (SIEM) (2nd), Security Orchestration Automation and Response (SOAR) (1st), Microsoft Security Suite (5th)
McAfee ePolicy Orchestrator
Average Rating
8.0
Number of Reviews
40
Ranking in other categories
Security Orchestration Automation and Response (SOAR) (9th)
Symantec Data Loss Prevention
Average Rating
8.0
Number of Reviews
54
Ranking in other categories
Data Loss Prevention (DLP) (3rd)
 

Mindshare comparison

As of June 2024, in the Security Orchestration Automation and Response (SOAR) category, the mindshare of Microsoft Sentinel is 20.2%, up from 17.6% compared to the previous year. The mindshare of McAfee ePolicy Orchestrator is 0.3%, down from 0.7% compared to the previous year. The mindshare of Symantec Data Loss Prevention is 0.1%, down from 0.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Security Orchestration Automation and Response (SOAR)
Unique Categories:
Security Information and Event Management (SIEM)
13.7%
Microsoft Security Suite
5.3%
No other categories found
Data Loss Prevention (DLP)
11.3%
 

Featured Reviews

Sachin Paul - PeerSpot reviewer
Dec 11, 2023
Makes data integration very easy for our SOC
It enables data integration within our hybrid, multi-cloud environment, and it makes this data integration very easy for our security operations center. Sentinel has helped improve our visibility into user and network behavior. It helps in identifying risky users, creating a watch list for specific users and their activities, which is very important. It has also been saving us time. It's a complete cloud-based solution, so there is no time wasted on setting up servers, infrastructure, et cetera. It also reduces the work involved in event investigation because it puts together detection logic through detection rules. That helps in automating incident identification.
OR
Sep 3, 2019
A good interface that provides centralized control over our endpoints
We have been using this solution for almost seven years The primary use case for this solution is to protect our endpoints. We are using an on-premises deployment model. This is a centralized solution, and we have very good control over the endpoints when using this product. The most valuable…
TN
Aug 28, 2019
Enables us to see people who are accessing or try to access information they are not supposed to be accessing based on their level of classification
We primarily use the solution for the endpoint machines within the environment I'm able to track everyone who is trying to send information outside the environment and to know if they are not supposed to be sending it. I'm also able to see the people who are accessing or maybe try to access the…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The analytics has a lot of advantages because there are 300 default use cases for rules and we can modify them per our environment. We can create other rules as well. Analytics is a useful feature."
"The UI of Sentinel is very good and easy to use, even for beginners."
"Sentinel's most important feature is the ability to centralize all the logs in one place. There's no need to search multiple systems for information."
"It is always correlating to IOCs for normal attacks, using Azure-related resources. For example, if any illegitimate IP starts unusual activity on our Azure firewall, then it automatically generates an alarm for us."
"It is quite efficient. It helps our clients in identifying their security issues and respond quickly. Our clients want to automate incident response and all those things."
"We’ve got process improvement that's happened across multiple different fronts within the organization, within our IT organization based on this tool being in place."
"The ability of all these solutions to work together natively is essential. We have an Azure subscription, including Log Analytics. This feature automatically acts as one of the security baselines and detects recommendations because it also integrates with Defender. We can pull the sysadmin logs from Azure. It's all seamless and native."
"Sentinel has an intuitive, user-friendly way to visualize the data properly. It gives me a solid overview of all the logs. We get a more detailed view that I can't get from the other SIEM tools. It has some IP and URL-specific allow listing"
"What I like the most is the ability to manage centrally, to manage the various devices, the platform, and the endpoint, all from one console."
"The central management console is the solution's most valuable aspect."
"The most valuable feature of the solution is the central management console, which is used for DLP, endpoint security, drive encryption, and application control."
"The best part is management in McAfee ePolicy Orchestrator."
"McAfee ePolicy Orchestrator's performance is good."
"We get fewer false positives than with other solutions."
"The general endpoint protection is valuable, and it is easy to manage."
"The initial setup is very easy."
"Among the many features, I like the comprehensive support for features across network stages and email. Customers are very happy with its prevention capabilities, as there is no delay in action when new policies are applied. Regarding incident response abilities, it is helpful, although we receive about 10%-20% false positives."
"One of the most valuable features is that you can check attachments."
"The most valuable aspect of Symantec DLP is its broad coverage. Symantec DLP covers USB, Outlook email clients, and web traffic. If we install the endpoint DLP, we can cover multiple channels, including the clipboard and printer."
"The synchronize application detection policies have been very good."
"We can integrate with some other tools such as Splunk, which is very useful."
"What we like about Symantec Data Loss Prevention is that it's a very good product. We never faced any problems with its performance. It has very good performance. There was this RAM issue, but it was an internal issue which we've sorted out. Apart from the RAM issue, there are no other issues with Symantec Data Loss Prevention."
"The solution is simple to use with good administrative controls and a console that is easy to understand."
"The product is very stable."
 

Cons

"We're satisfied with the comprehensiveness of the security protection. That said, we do have issues sometimes where there have been global outages and we need to raise a ticket with Microsoft."
"I can't think of anything other than just getting the name out there. I think a lot of customers don't fully understand the full capabilities of Azure Sentinel yet. It is kind of like when they're first starting to use Azure, it might not be something they first think about. So, they should just kind of get to the point where it is more widely used."
"Add more out-of-the-box connectors with other SaaS platforms/applications."
"Sentinel's reporting is complex and can be more user-friendly."
"The product can be improved by reducing the cost to use AI machine learning."
"Multi-tenancy, in my opinion, needs to be improved. I believe it can do better as a managed service provider."
"The learning curve could be improved. I am still learning it. We were able to implement the basic features to get them up and running, but there are still so many things that I don't know about all its features. They have a lot of features that we have not been able to use or apply. If they could work on reducing the solution's learning curve, that would be good. While there is a training course held by Microsoft to learn more about this solution, there is a cost associated with it."
"The following would be a challenge for any product in the market, but we have some in-house apps in our environment... our apps were built with different parameters and the APIs for them are not present in Sentinel. We are working with Microsoft to build those custom APIs that we require. That is currently in progress."
"The installation process is quite difficult and requires technical support."
"One thing that I don't like is that McAfee products change very often and upgrade very often."
"While there are bugs and a few functionality issues, it is just a matter of raising them with the support team. However, support is part of the problem as well. You want everything to be seamless in a perfect world, but the support is spread across different countries. They have Level 1, 2, and 3. Level 1 is most likely in a developing country. They don't provide the best service."
"McAfee ePolicy Orchestrator needs to upgrade its technology since the solution's EDR function is not good compared to other vendors in the market."
"McAfee ePolicy Orchestrator should improve its integration with other tools."
"The rollout to cover the online resources, such as SharePoint, One Drive, and Office 365 doesn't seem to have a very clear path."
"McAfee ePolicy Orchestrator support has been helpful. However, sometimes when I raise the case they take a while to answer. For example, the last time I used them it took them two weeks to reply back by email. No one has contacted me back since. They should improve their service."
"The issues with the integration capabilities of the product, specifically the ones that are deployed on an on-premises model, need to be improved."
"From a management perspective, it takes a lot of time to manage the infrastructure."
"Since being acquired by Broadcom, the support has really degraded for small and medium enterprises."
"I would like for the administrator management interface to improve. It's kind of old and slow. Updating it would make this solution better."
"The deployment is complex."
"Symantec DLP doesn't provide complete cloud coverage. We need another DLP solution to monitor our cloud applications."
"Where things could be improved is that product engineering takes time to respond when we make a request. They get on a call for troubleshooting, but fixing the issue takes time."
"Sometimes setting up the solution can get a little tricky because it would depend on your internal infrastructure. For example, you have to connect the Symantec Data Loss Prevention platform and you need to integrate it, so that could make the process somewhat difficult."
"The one downside for Symantec is that, due to its transition from Symantec to Broadcom, there's been a lot of changes. I am based in the Philippines and we don't have a contact person locally for any Symantec."
 

Pricing and Cost Advice

"The pricing isn't very high. It depends on the number of logs you have. If you're expecting to ingest 50 to 60G in a day, but you're only ingesting 20 to 25G per day at first and you have a good team to analyze the logs, then you can segregate the ingestion at under 15G."
"Pricing is pay-as-you-go with Sentinel, which is good because it all depends on the number of users and the number of devices to which you connect."
"Sentinel is pretty competitive. The pricing is at the level of other SIEM solutions."
"Currently, given our use case, the cost of Sentinel is justified, but it is expensive."
"Sentinel is costly."
"It is certainly the most expensive solution. The cost is very high. We need to do an assessment using the one-month trial so that we can study the cost side. Before implementing it, we must do a careful calculation."
"Microsoft Sentinel's pricing is relatively expensive and extremely confusing."
"The product is costly compared to Splunk."
"$The price of McAfee ePolicy Orchestrator is expensive, it is approximately $6,000 to $9,000 per license annually."
"For large enterprise companies, the price should be alright, but for small businesses, the uptake might be slow because, for these clients, the price doesn't look very attractive."
"Compared to other Antivirus products, the cost of this solution is a bit high."
"McAfee ePolicy Orchestrator is a cheaply priced product, meaning it is not expensive since McAfee provides a free version of ePO, which includes phone support as well."
"This solution is priced in the mid-range."
"It is attractively priced. It is a fraction of what we're going to pay for CrowdStrike or SentinelOne, but it only has a fraction of the capabilities as well."
"On a scale from one to ten, where one is cheap, and ten is expensive, I rate the solution's pricing a three out of ten."
"McAfee tries to package different things into different products, then sell them as different products with different licenses. They just split everything up into multiple things. That's just their sales pitch and how they do it."
"Pricing is above average."
"The pricing is reasonable."
"The price of the solution is expensive."
"I think that it's an expensive product, even as an enterprise-suite product."
"The price of Symantec Data Loss Prevention could be reduced."
"The price is competitive."
"The platform is expensive."
"Pricing is reasonable."
report
Use our free recommendation engine to learn which Security Orchestration Automation and Response (SOAR) solutions are best for your needs.
789,135 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Financial Services Firm
10%
Government
9%
Manufacturing Company
7%
Computer Software Company
14%
Government
12%
Financial Services Firm
10%
Manufacturing Company
9%
Financial Services Firm
23%
Computer Software Company
13%
Manufacturing Company
8%
Comms Service Provider
4%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Is there a common threat intelligence tool that aggregates multiple threat intelligence sources?
Yes, Azure Sentinel is a SIEM on the Cloud. Multiple data sources can be uploaded and analyzed with Azure Sentinel an...
What is a better choice, Splunk or Azure Sentinel?
It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for ingest...
Which is better - Azure Sentinel or AWS Security Hub?
We like that Azure Sentinel does not require as much maintenance as legacy SIEMs that are on-premises. Azure Sentinel...
Which is better - Mcafee's MVision ePO or ePolicy Orchestrator?
Our organization ran comparison tests to determine whether Mcafee's MVision ePO or ePolicy Orchestrator network secur...
What do you like most about McAfee ePolicy Orchestrator?
I like the solution's feasibility. McAfee ePolicy Orchestrator is also better and easier to use than other ePOs.
What is your experience regarding pricing and costs for McAfee ePolicy Orchestrator?
I do not have exact pricing details, however, I would rate the price at a four out of ten overall. There may be some ...
What do you like most about Symantec Data Loss Prevention?
It can prevent copying and encoding of HTTP data to various sites like Google, and Webex.
What is your experience regarding pricing and costs for Symantec Data Loss Prevention?
The product is expensive. I rate the product’s pricing a 3 out of 10, where 1 is expensive and 10 is cheap.
 

Also Known As

Azure Sentinel
McAfee ePO, ePolicy Orchestrator, Intel Security ePolicy Orchestrator, McAfee MVISION ePO
Symantec DLP
 

Overview

 

Sample Customers

Microsoft Sentinel is trusted by companies of all sizes including ABM, ASOS, Uniper, First West Credit Union, Avanade, and more.
Brelje & Race, Cognizant, Sutherland Global Services, Eagle Rock Energy, Arab National Bank, Bank Central Asia, Kleberg Bank, Leading Mexican Bank, SF Police Credit Union, Macquarie Telecom, Seagate Technology, Blackburn & Darwen Council, California Department of Corrections & Rehabilitation, IRCEP, Major U.S. State Government, State of Alaska, State of Colorado, Cemex, Deutsche Edelstahlwerke
Hadassah University Hospital, Her Majestys Government (HMG), United Kingdom, Hitachi Consulting Software Services India Pvt Ltd., Hua Nan Bank, Hyundai Department Store Group,JW Marriott Hotel Seoul, Lake Health, McCann Erickson Israel, Molina Healthcare Inc., PGi, Quilvest Switzerland Limited, State of Nevada Public Employees Benefits Program, Symantec Corporation (Enterprise Security), The Royal Liverpool and Broadgreen University Hospitals NHS Trust, The Royal Liverpool and Broadgreen University Hospitals NHS Trust (DLP), The Saudi Industrial Property Authority, TSO cloud, Visa, Yunnan Power Grid Company
Find out what your peers are saying about McAfee ePolicy Orchestrator vs. Symantec Data Loss Prevention and other solutions. Updated: March 2020.
789,135 professionals have used our research since 2012.