Microsoft Security Copilot and Purple AI compete in technology security and automation. Microsoft Security Copilot seems to have an advantage in data management and integration, while Purple AI is better in adaptive learning capabilities.
Features: Microsoft Security Copilot offers real-time threat detection, security incident response automation, and seamless integration. Purple AI provides natural language processing, user interaction automation, and adaptable learning algorithms.
Ease of Deployment and Customer Service: Microsoft Security Copilot integrates with existing Microsoft infrastructure for straightforward deployment and provides extensive support. Purple AI offers efficient deployment with customizable options and responsive customer service.
Pricing and ROI: Microsoft Security Copilot requires a substantial setup cost but offers long-term ROI advantages. Purple AI has a competitive pricing model with lower upfront costs, delivering high ROI through effective interaction automation.
They appreciate the rich telemetry data from the solution, as it provides in-depth threat identification.
Cortex XDR by Palo Alto Networks helps to reduce my total cost of ownership significantly.
In Cortex XDR by Palo Alto Networks, most of the remediation is automated and the accuracy is quite good.
The summary capability saves me fifty percent of the processing time on emails.
The biggest return on investment that I've seen when using Microsoft Security Copilot is the ability to scale.
We are not hiring any more in the IT and security team, and we feel we may be able to reduce the workforce there or have the workforce spend time elsewhere, not on security and integration incidents.
It provides us with a summary of the alert and suggests what suspicious activities have occurred, along with guidance on what to look for next.
We have achieved good ROI with Purple AI.
The technical support from Palo Alto deserves a mark of ten because they reach out within an hour whenever assistance is needed.
There is no back and forth, and they know what we are asking for and come up with the best resolution for a solution.
If any of these services are missed, it becomes a problem in terms of support tickets, follow-up, or special configuration that needs to be done in the system.
On a scale from one to ten, I would rate customer service and technical support for Microsoft Security Copilot as a nine.
They tend to be quite rigid with documentation and often redirect me to look at documents instead of directly assisting me, which can cause delays.
Based on our customers' experiences, I would rate their support a seven out of ten.
We just directly get connected to the technical person.
I would rate the technical support for Purple AI an eight out of ten.
You can onboard 10,000 endpoints in just hours, which demonstrates the excellent scalability of this product.
Activating the newly purchased licenses is instantaneous, allowing installations without adjustments since it's cloud-based.
Cortex XDR by Palo Alto Networks can be expanded anytime by purchasing another license without any issues related to scalability.
We don't have any concerns whatsoever with scalability.
Scalability is the name of the game, involving understanding exactly where focus and money need to be placed and ensuring that where focus and money are placed can scale with the size, speed, and capabilities of organizations as they adopt AI in the workplace.
I think Microsoft Security Copilot scales well with the growing needs of our organization.
If we scale and add any two to three pieces within our existing plan, based on the endpoint, it gives the next term and when we pay the money, it adds that amount in the billing and it's quite easy.
Purple AI has very high chances of scalability.
Purple AI works well for all types of alerts across various data sources and environments; hence, I find it good for scalability.
Cortex remains fast and responsive, even with increasing data and alerts.
The thresholds we've seen on our firewall boxes at some instances reached 80% to 85%, but even at that level of utilization, we don't observe any latency or any issues reported with respect to accessing the application.
Cortex XDR is stable, offering high quality and reliable performance.
When talking about confidentiality, integrity, and availability, availability is the critical concern.
There are circumstances where we expected certain things to surface through our prompting with Microsoft Security Copilot, but they did not come up.
They have not had any incidents so far despite having everything on Microsoft Security Copilot.
The only concern is the prompting requirement, as we have to provide prompts in a proper manner, otherwise it will not work correctly.
I have not faced any challenges when implementing Purple AI.
Sometimes it lacks performance and may take a while to load, or it may not show alerts at all, requiring us to log out and log back in.
Improving reporting and dashboard customization, along with the addition of real-time and exportable reports, would help SOC teams greatly.
The inclusion of this feature would allow the application of DLP policies alongside antivirus policies via a single agent and console, making it more competitive as other OEMs often offer DLP solutions as part of their antivirus products.
If the per GB data could be provided at a certain level free of cost or at the same cost which the customer is taking for the entire bundle, that would be better.
Microsoft needs to give at least some kind of à la carte option between E3 and E5, maybe an E4, to cherry-pick from E5.
If a way could be found to make it more cost-effective and streamline the licensing mechanism, they have the technology to succeed in the marketplace.
Even though Microsoft is a major technology company with insurance coverage, customers worry about potential data leaks, especially in sensitive industries such as banking and semiconductor manufacturing.
AI combined with automation is a very powerful tool, and combining these could reduce both time and work because automation saves time for everyone.
As an improvement, if SentinelOne could focus on IOA similar to what CrowdStrike is giving, that would be a good point.
The only concern related to pricing is the ingestion-based pricing model, which is higher at scale.
The pricing on SentinelOne is far more reasonable and cheaper than Cortex XDR by Palo Alto Networks.
I would say it is definitely not a cheap product, considering how mature it is and how scalable all Palo Alto products are together.
Cortex XDR is perceived as expensive by some customers, yet offers dynamic pricing.
Most of my customers are already within Microsoft stack, and the pricing is mostly well accepted.
We wanted something under one umbrella, which is something Microsoft is able to give.
Its pricing scares our customers the most.
Providing SentinelOne solution for small scale enterprise, if they could offer better prices, it would be more useful.
I would say the solution is a little expensive.
It incorporates AI for normal behavior detection, distinguishing unusual operations.
The product provides automation responses in case of a threat attack, severity assessments, centralized manageability, and comprehensive compliance features, resulting in reduced costs.
It includes machine learning to easily analyze data and detect complex threats across endpoints, networks, or clouds.
The integration of Microsoft Security Copilot with other Microsoft solutions has had a positive impact on my company's security posture because it's integrated into the operating system.
One of the major use cases that we have seen is the reduced time spent on integrating and understanding Purview's output versus Sentinel's output, because the two speak to each other through Microsoft Security Copilot.
Microsoft Security Copilot has helped us and our clients reduce the mean time to resolution significantly.
In today's world, the time to respond to an attack is key.
The best feature is that the summary is very precise, crisp, and presented in layman's language while still including all the technical aspects required for analysis.
Purple AI provides availability and ensures that all threat detection and response are available in a single platform.



| Company Size | Count |
|---|---|
| Small Business | 45 |
| Midsize Enterprise | 20 |
| Large Enterprise | 48 |
| Company Size | Count |
|---|---|
| Small Business | 6 |
| Midsize Enterprise | 2 |
| Large Enterprise | 12 |
Cortex XDR by Palo Alto Networks provides advanced threat detection with AI-driven endpoint protection and seamless integration, ensuring multi-layered security and automatic threat response.
Cortex XDR is designed to safeguard endpoints against malware and suspicious activities. It offers advanced threat detection and response capabilities using behavioral analysis, AI, and machine learning. It seamlessly integrates with security infrastructures, providing endpoint security, firewall integration, and enhanced visibility in both cloud-based and on-premises environments.
What are the key features of Cortex XDR?Organizations in diverse sectors deploy Cortex XDR to protect against malware, leveraging its advanced threat detection capabilities. Its integration with existing security infrastructures appeals to those seeking comprehensive protection in both cloud and on-premises environments, providing enhanced visibility and threat intelligence.
Microsoft Security Copilot offers innovative AI-driven security features tailored for efficient data management and protection, particularly in education and healthcare, ensuring streamlined operations and enhanced data security.
Microsoft Security Copilot enhances organizational security through its advanced features, including data sensitivity labeling and AI-driven insights, crucial for educational and healthcare sectors. Its auditing capabilities allow for efficient monitoring, while self-service analytics support active decision-making processes. With seamless integration with Microsoft platforms, it provides a synchronized ecosystem for effective data management. Improvements aim at extending capabilities across multiple systems and enhancing natural language processing to minimize prompt dependency.
What are the key features of Microsoft Security Copilot?
What benefits should organizations expect?
In the educational sector, Microsoft Security Copilot secures teacher and student data, manages incidents, and controls information access. Healthcare organizations utilize it to protect patient data, manage security incidents, and refine communication across hospitals and pharmacies. The platform's capabilities expand continually, aiding in tasks like summarizing discussions and rephrasing emails, while users explore further functions for increasing industry's operational efficiency.
Purple AI marks a significant advancement in the cybersecurity landscape, offering comprehensive benefits to enhance the efficiency and effectiveness of cybersecurity teams. The platform leverages generative artificial intelligence to revolutionize the approach to threat hunting, investigations, and responses, providing a suite of tools that streamline these critical security functions.
We monitor all AI-Powered Cybersecurity Platforms reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.