Securonix Next-Gen SIEM and Microsoft Entra ID Protection both compete in the cybersecurity space, focusing on threat detection and identity management, respectively. Securonix appears to have the upper hand in advanced SIEM capabilities, while Microsoft Entra stands out in identity and access management features.
Features: Securonix Next-Gen SIEM provides strong user behavior analytics, anomaly detection, and extensive cloud integration capabilities. It allows for customization of use cases and is effective in reducing false positives in threat detection. Microsoft Entra ID Protection excels with comprehensive identity and access management featuring conditional access, multifactor authentication, and robust control over user access.
Room for Improvement: Securonix could enhance integration with tools like ServiceNow, improve reporting functions, and streamline deployment. Users suggest the system is complex, needing better technical support responsiveness. Microsoft Entra ID could improve documentation access, hybrid connectivity, and log retention flexibility. Users report its pricing model and integration capabilities with third-party solutions require simplification.
Ease of Deployment and Customer Service: Securonix offers deployment options across on-premises, public, and hybrid cloud environments. Its customer support is deemed proactive, though some users experience inconsistent technical help. Microsoft Entra ID Protection operates mainly in public and hybrid clouds. Customer service is regarded as solid, but documentation accessibility and response times are areas for improvement.
Pricing and ROI: Securonix is considered cost-effective, particularly compared to solutions like Splunk, though pricing may vary with data usage and client size. Users cite a strong ROI with enhanced threat detection and reduced infrastructure needs. Microsoft Entra ID's pricing is competitive, yet licensing clarity could improve. It delivers a positive ROI, especially in compliance-heavy environments, though some small enterprises find it expensive.
There is a return on investment in terms of time-saving, control, and ease of manageability of the environment.
The solution is time-saving, particularly in the long run after it is deployed, enabling us to get value promptly.
Tickets often bounce from person to person, requiring the sharing of information multiple times.
They often refer to internal blogs, which doesn't offer much new information and can limit our capabilities in troubleshooting.
My teammates have had good communication with Microsoft.
If I raise a ticket, it initially goes to the L1 team, but the next level of escalation is really effective.
There is no UK-based support, which leads to delays in waiting for US support.
Since it is a cloud computing product, it can accommodate a range of company sizes, from a few users to large businesses.
The solution is scalable as it is cloud-based and cloud-native.
Microsoft has not offered control over how they calculate high or low-risk scenarios.
There is no write-back feature from the cloud to local, which would allow me to use my own credentials from the cloud tenant securely.
There is room for improvement in the ability for Entra ID Protection to inherit roles and configurations from whatever solution I am migrating from.
The passing and setup are quite complex at the beginning, making onboarding not smooth.
When dealing with a large amount of data, such as when firewall logs increase, queries sometimes crash or get stuck.
SIEM could have better integration with other technologies.
Entra ID Protection is not badly priced, but some clients, especially in medium to smaller scale companies in third-world countries, find it quite expensive.
Microsoft Entra ID requires additional licensing components.
The pricing for Microsoft Entra ID protection is not expensive.
Licensing is based on events per second (EPS), costing between $50 to $60 per EPS.
The pricing has similar ingestion charges compared to other solutions, such as Splunk.
Having a single sign-on feature with Entra ID ensures seamless access to various applications, even those with significant security constraints.
These features ease the job of security analysts, providing a better vision of user activities and potential risks.
Microsoft Entra ID can detect if a user is at risk and then execute actions based on the risk level.
The software includes user behavior interactions, dashboards, and training capabilities.
Now, the process is automatic, reducing our workload.
Microsoft Entra ID Protection enhances security with advanced identity controls and seamless integration across environments. It ensures robust protection via multifactor authentication and single sign-on capabilities, safeguarding enterprises' sensitive information efficiently.
Microsoft Entra ID Protection offers comprehensive identity management and privileged access management features, making it critical for businesses transitioning to hybrid models or cloud solutions. Utilizing multifactor authentication, single sign-on, and security policy creation, it excels in securing access across both on-premise and cloud platforms. By integrating with Microsoft Defender, it enhances security measures. While it is highly effective, areas for improvement include identity labeling, password management, and more straightforward third-party integrations. Expanding access to Mac devices and simplification of the licensing model are also areas to be addressed for improved scalability.
What are the key features of Microsoft Entra ID Protection?In industries such as finance and healthcare, entities leverage Microsoft Entra ID Protection to maintain stringent access controls, optimize privileged access management, and facilitate smooth transitions to cloud environments. They utilize its integration with Azure AD to ensure comprehensive identity protection while aligning to compliance requirements specific to their fields.
Securonix Next-Gen SIEM is a security information and event management solution designed to provide advanced threat detection, response, and compliance capabilities. It leverages machine learning and big data analytics to offer a comprehensive security platform for modern enterprises.
Securonix Next-Gen SIEM utilizes advanced analytics and machine learning to detect complex threats that traditional SIEM solutions might miss. Its architecture is built on Hadoop, enabling scalability and the processing of large volumes of data in real-time. This allows organizations to gain deep insights into security incidents, prioritize threats, and automate response actions. The solution also includes behavior analytics to detect insider threats and unknown attacks, integrating seamlessly with existing IT infrastructure.
What are the critical features of Securonix Next-Gen SIEM?
What is the ROI expectations?
Securonix Next-Gen SIEM is implemented across various industries, including finance, healthcare, and retail. Its flexibility and advanced analytics capabilities make it suitable for environments with complex security needs. In finance, it helps detect fraud, while in healthcare, it ensures patient data security. In retail, it protects against data breaches and payment fraud.
In summary, Securonix Next-Gen SIEM offers advanced threat detection, scalability, and integration capabilities, making it a robust solution for modern enterprises.
We monitor all Identity Threat Detection and Response (ITDR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.