No more typing reviews! Try our Samantha, our new voice AI agent.

Microsoft Defender Experts for Hunting vs Netsurion comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Microsoft Defender Experts ...
Ranking in Managed Detection and Response (MDR)
19th
Average Rating
9.0
Reviews Sentiment
6.3
Number of Reviews
5
Ranking in other categories
No ranking in other categories
Netsurion
Ranking in Managed Detection and Response (MDR)
31st
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
24
Ranking in other categories
Managed Security Services Providers (MSSP) (19th), Security Information and Event Management (SIEM) (48th), SOC as a Service (7th), Extended Detection and Response (XDR) (43rd)
 

Mindshare comparison

As of August 2026, in the Managed Detection and Response (MDR) category, the mindshare of Microsoft Defender Experts for Hunting is 1.4%, down from 1.6% compared to the previous year. The mindshare of Netsurion is 1.2%, up from 0.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Managed Detection and Response (MDR) Mindshare Distribution
ProductMindshare (%)
Microsoft Defender Experts for Hunting1.4%
Netsurion1.2%
Other97.4%
Managed Detection and Response (MDR)
 

Featured Reviews

Mondher-Smii - PeerSpot reviewer
Cybersecurity Manager at Insomea
Has supported clients in managing incidents through clear pricing and hybrid deployment options
What really stands out about Microsoft Defender Experts for Hunting is that it's easy to use. The cost is clear, and the pricing is transparent. The onboarding of the product on the customer's environment is straightforward. We can use it in a hybrid environment, in the cloud, or on-premise environment. This is the main advantage regarding this product. If it's configured correctly, everything will be good, resilient, and secure, which supports threat mitigation efforts depending on the configuration on the tenant and the parameters on Microsoft Defender Experts for Hunting. Threat intelligence updates have some impact on our overall security posture. They give us external eyes regarding threat actors, which is good. It's very helpful to enrich the SIEM, which is Microsoft Sentinel. It's a good feature that we can include threat intel on the product.
John-Berry - PeerSpot reviewer
Information Technology Manager at ProfitSolv
The SOC center monitors, hunts, and notifies us of threats around the clock
I know they are working to resolve this issue, but Netsurion is currently unable to retrieve logs from S3 buckets. We use WP Engine for a lot of web hosting as well as AWS, and both of these platforms use S3 buckets. I would like Netsurion to be able to pull logs from Linux devices. We have some of that capability, and I believe they can do it. However, the way it works with Amazon is strange and glitchy. Therefore, working something out with Amazon would be great. Netsurion's SOC can be a bit too aggressive at times. We have asked them to adjust their playbook because I am tired of being notified about the same issue multiple times a day. I am aware of the issue, and it is not a cause for concern. Let's only take action on this issue if we see an actual problem.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Easy to use is what my customers say is the biggest benefit of Microsoft Defender Experts for Hunting for them."
"Microsoft Defender Experts for Hunting helps my customers detect or prevent emerging threats that are not yet published but Microsoft has visibility into."
"The solution helps to detect some suspicious items for us and our clients."
"The best feature of this solution is that it is an integrated and comprehensive solution for the entire Microsoft ecosystem."
"What really stands out about Microsoft Defender Experts for Hunting is that it's easy to use, the cost is clear, and the pricing is transparent, with straightforward onboarding in hybrid, cloud, or on-premise environments."
"Netsurion's 24/7 monitoring has enhanced the overall security of the company."
"We don't have the eyeballs available to stare and watch for things, or even have the capability of building internal alert systems. So, the managed SOC has been huge for freeing up staff to work on other responsibilities. We are saving on at least one full-time employee."
"They have a number of integrations with different products. Google Workspace is one of them, and Microsoft Azure is another one. They integrate with a number of other things, such as Duo for multi-factor authentication. They can pull the logs from Duo to see if users are coming from bad repeatable IPs or if there are malicious known IPs that may be popping up in the logs. They are able to see that, and they can identify that. Some of the other integrations they do are from inside your network. For firewalls, they can integrate with SonicWall, Cisco, Fortinet, etc. They have a pretty wide variety of things to integrate with and be able to pull the logins from those devices."
"The network alert is the most valuable feature. That way, we in the IT department are aware of user lockout and invalid password attempts way before a user ever even calls in."
"The most valuable feature is that we get the events: the alerts about disk space and the security reports that we get once a day, including user lockouts and the like."
"EventTracker is exactly that; it's giving me all of the features and functions that we need to do our jobs, and at a price point that's incredibly attractive."
"The 24/7 monitoring and alerting have positively affected our security maturity because now we have people with eyes on our security events 24/7."
"I like EventTracker's dashboard. I see it every time I log in because it's the first thing you get to. We have our own widgets that we use. For the sake of transparency, there are a few widgets that we look at there and then we move out from there... Among the particularly helpful widgets, the not-reporting widget is a big one. The number-of-logs-processed is also a good one."
 

Cons

"We tried the proactive threat hunting feature, but it was not a good experience with Microsoft Defender Experts for Hunting. It created more trouble than expected with false positives and non-expected answers."
"There is a lot of change in a small period. This might not be helpful for IT administrators and users."
"As a partner, Microsoft Defender Experts for Hunting could be improved by getting earlier threat detection signals so we could proactively research on our own end and help support a campaign to raise awareness as well as proactive response."
"The solution’s user interface could be improved."
"The price of the solution is costly, which I find significant."
"I would also like to have a dashboard that I can access anytime to review the real-time data from their website."
"Where there is an opportunity for improvement is in the interface used for performing the searches."
"Where there is an opportunity for improvement is in the interface used for performing the searches. You have to understand Elasticsearch search too well for the security team to be able to take really full advantage of that part of the product. It's not as intuitive as I would like it to be for new staff coming in. The general query capability is a little bit challenging."
"There's always room to improve because there would be no competition if they had a perfect solution. The GUI to perform searches within the product may not be intuitive to a new user."
"It would be great if they had a client for phones by which they could push a notification to us, as opposed to via email."
"With version 8, there are quite a few things; the query tool was one of the big ones, and the query speed was one of the big ones, but they've made some great strides between versions 8 and 9."
"The agents on the endpoints seem to fail quite a bit, requiring manual involvement from the local administrators. I would like to see their product be much more ad hoc and update automatically."
"With version 8, there are quite a few things. The query tool was one of the big ones, and the query speed was one of the big ones, but they've made some great strides between versions 8 and 9. There were also issues in version 8 around the ability to get the data back out. It's one thing to collect data, but it's a whole other thing to be able to present it or run it in a timely manner. The old tool, depending on how far back I was looking, might even time out and I would have to run it again."
 

Pricing and Cost Advice

Information not available
"We put together the package of what we needed. It was based pretty much on the number of agents that we were deploying. If we needed to manage logging from certain specific applications, like Active Directory and SQL Server, there has been no additional cost for that. We had agents deployed for those specific servers and the applications were included, then there was just an additional installation that they had to do for us."
"The pricing and licensing seem very reasonable. The managed service part of it feels like it gives me the equivalent of a full-time engineer for a lot less money. So, I feel it's a good value."
"Our budget follows the calendar year. We just started a new budget year at the beginning of the month. We did budget for an increase in our threat management system selection. Therefore, we have the budget to implement and accommodate a threat management system change, including an increase for the quoted actions that we received to improve EventTracker. We are just waiting on our council to approve that budget, which might not be for a little while. Hopefully, when they do, we will be able to jump on doing something."
"The upfront costs have increased, and we have been locked into this contract. The cost of changing over from it is way too high."
"I don't know if the pricing is by the seat but we're paying about $20,000 to 25,000 a year. On top of that, we pay for the managed support services. That runs us about another $35,000 or $40,000 a year."
"Netsurion's pricing is competitive. At the same time, they're the only ones who do what we want to do the way we want it. I can't say we would've paid more, but we would've had to have come up with our own solution if they weren't providing that."
"It is a bit expensive as compared to some of the other products that have come out in recent years. Expense-wise, the only downside is that it is not cheap."
"Our pricing for Netsurion last year was US $52,000 per year."
report
Use our free recommendation engine to learn which Managed Detection and Response (MDR) solutions are best for your needs.
908,877 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
22%
Financial Services Firm
11%
Comms Service Provider
7%
Manufacturing Company
6%
Construction Company
13%
Outsourcing Company
13%
Performing Arts
9%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise7
Large Enterprise7
 

Questions from the Community

What needs improvement with Microsoft Defender Experts for Hunting?
As a partner, Microsoft Defender Experts for Hunting could be improved by getting earlier threat detection signals so we could proactively research on our own end and help support a campaign to rai...
What is your primary use case for Microsoft Defender Experts for Hunting?
As a working security partner, my main use case for Microsoft Defender Experts for Hunting is that many of our customers also have Microsoft Defender Experts for Hunting and really find a lot of va...
What advice do you have for others considering Microsoft Defender Experts for Hunting?
As a partner, there can be some concern that Microsoft Defender Experts for Hunting is taking away some of our business because they're providing a solution that we also provide. However, the team ...
Ask a question
Earn 20 points
 

Also Known As

No data available
Netsurion Managed Threat Protection, Netsurion EventTracker
 

Overview

 

Sample Customers

Information Not Available
The Salvation Army, The FRESH Market, Pacific Western Bank, NASA, American Academy of Orthopaedic Surgeons (AAOS), and Talbot’s Stores
Find out what your peers are saying about Microsoft Defender Experts for Hunting vs. Netsurion and other solutions. Updated: June 2026.
908,877 professionals have used our research since 2012.