Try our new research platform with insights from 80,000+ expert users

Microsoft Entra Verified ID vs Microsoft Sentinel comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Microsoft Entra Verified ID
Ranking in Microsoft Security Suite
24th
Average Rating
8.0
Reviews Sentiment
7.9
Number of Reviews
5
Ranking in other categories
Customer Identity and Access Management (CIAM) (7th)
Microsoft Sentinel
Ranking in Microsoft Security Suite
6th
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
97
Ranking in other categories
Security Information and Event Management (SIEM) (3rd), Security Orchestration Automation and Response (SOAR) (1st), AI-Powered Cybersecurity Platforms (5th)
 

Mindshare comparison

As of July 2025, in the Microsoft Security Suite category, the mindshare of Microsoft Entra Verified ID is 0.8%, down from 3.0% compared to the previous year. The mindshare of Microsoft Sentinel is 5.0%, down from 6.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Microsoft Security Suite
 

Featured Reviews

Andy Yen - PeerSpot reviewer
Offers single sign-on feature for business applications but needs to offer personalized insights
Microsoft Entra Verified ID has saved time for IT admins. The product helps us save money from the cost of security breaches. It is a more cost-effective solution than others in the market. It comes in a Microsoft suite. You can manage permission and access the products without buying anything additional. I rate it a six out of ten.
Ivan Angelov - PeerSpot reviewer
Threat detection and response capabilities enhance investigation processes
My security team has been using Microsoft Sentinel for around two years. We also have Bastion and SolarWinds as part of our monitoring tools. We use a three-way tool, alongside Microsoft Sentinel, in our environment The most valuable features for us include threat collection, threat detection,…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I like the Microsoft Authenticator app since it comes with two-factor authentication."
"The MFA number matching feature effectively prevents unauthorized access by phishing bad actors who might obtain email credentials. This feature requires users to verify a number on their screen, ensuring they only approve genuine requests."
"The most valuable features of the solution are mainly in the areas of security and auditing."
"The authentication features of Microsoft Entra Verified ID are valuable. As an infrastructure professional, I appreciate the exceptional integration between on-premises Active Directory features and Entra ID."
"I would recommend this solution to others because it's simple enough to deploy."
"It is quite efficient. It helps our clients in identifying their security issues and respond quickly. Our clients want to automate incident response and all those things."
"Previously, it was a little bit difficult to find where an incident came from, including which IP address and which country. So in Sentinel, it's very easy to find where the incident came from since we can easily get the information from the dashboard, after which we take action quickly."
"Sentinel enables us to ingest data from our entire ecosystem. In addition to integrating our Cisco ASA Firewall logs, we get our Palo Alto proxy logs and some on-premises data coming from our hardware devices... That is very important and is one way Sentinel is playing a wider role in our environment."
"The analytic rule is the most valuable feature."
"The log analysis is excellent; it can predict what can or will happen regarding use patterns and vulnerabilities."
"It is able to connect to an ever-growing number of platforms and systems within the Microsoft ecosystem, such as Azure Active Directory and Microsoft 365 or Office 365, as well as to external services and systems that can be brought in and managed. We can manage on-premises infrastructure. We can manage not just the things that are running in Azure in the public cloud, but through Azure Arc and the hybrid capabilities, we can monitor on-premises servers and endpoints. We can monitor VMware infrastructure, for instance, running as part of a hybrid environment."
"Sentinel has an intuitive, user-friendly way to visualize the data properly. It gives me a solid overview of all the logs. We get a more detailed view that I can't get from the other SIEM tools. It has some IP and URL-specific allow listing"
"Mainly, this is a cloud-native product. So, there are zero concerns about managing the whole infrastructure on-premises."
 

Cons

"Microsoft products basically have no support other than the knowledge base, so I would give it a two out of 10."
"The tool's expensive nature is an area of concern where improvements are required."
"While Microsoft continues to improve the solution, integrating the ID with biometric features could be enhanced, especially in terms of standard B2C flows for multi-factor authentication. Improvements in remembering devices and the timing of MFA triggers could also be beneficial."
"There are issues with the integration of Microsoft Entra Verified ID and MFA. Sometimes, the MFA process doesn't succeed, requiring users to sign out and log back in."
"I must do two-factor authentication when I sign in from a different location. It creates friction. It's not personalized for the end user. I would like to see specific insights."
"It would be nice to be able to leverage more AI to handle more data and recovery aspects in the future."
"Driving deeper integration with the Defender XDR portal within Microsoft Sentinel, which is being done, and continuing to increase the number of third-party data connectors available is important."
"We're satisfied with the comprehensiveness of the security protection. That said, we do have issues sometimes where there have been global outages and we need to raise a ticket with Microsoft."
"Their support can be challenging at times, particularly around unique experiences or circumstances with Microsoft Sentinel."
"The reporting could be more structured."
"They should integrate it with many other software-as-a-service providers and make connectors available so that you don't have to do any sort of log normalization."
"Only one thing is missing: NDR is not available out-of-the-box. The competitive cloud-native SIEM providers have the NDR component. Currently, Sentinel needs NDR to be powered from either Corelight or some other NDR provider."
"It has been a challenge with Azure Sentinel to onboard the Syslog server from FortiGate. Azure Sentinel can work better on that shift between the Syslog server and a firewall."
 

Pricing and Cost Advice

"If one is cheap and ten is very expensive, I rate the product price as seven."
"The pricing and setup are standard. With Entra, you choose between P1 and P2 licenses. We recommend having at least one P2 license in a company for better alert management, even though P2 is more expensive."
"I still feel the pricing is on the higher side for larger customers. They don't pay anything for on-prem Active Directory. Although we receive additional features with Microsoft’s SSO, pricing is an area Microsoft can work on."
"Sentinel is expensive relative to other products of the class, so it often isn't affordable for small-scale businesses. However, considering the solution has more extensive capabilities than others, the price is not so high. Pricing is based on GBs of ingested daily data, either by a pay-as-you-go or subscription model."
"No license is required to make use of Sentinel, but you need to buy products to get the data. In general, the price of those products is comparable to similar products."
"Microsoft Sentinel's pricing is relatively expensive and extremely confusing."
"I am not involved on the financial side, but from an enterprise-wide use perspective, I think the price is good enough."
"Sentinel is costly compared to other solutions, but it's fair. SIEM solutions like CrowdStrike charge based on daily log volume. They generally process a set number of logs for free before they start charging. Microsoft's pricing is clearer. It's free under five gigabytes. Some of these logs we ingest have a cost, so they don't hide it. I believe the tenant pays the price, and Microsoft helps create awareness of the cost."
"The combination of the ease of accessibility and the free cost of the service is great. But we buy storage based on our events per second and on how many sources are integrated into the solution."
"We must have saved some money with this product. It is a cloud-native product, and the ingestion is per GB. Every GB costs a certain amount of money. That is how the license of Microsoft Sentinel works."
"From a cost point of view, it is not a cheap product. It's, like, an enterprise-level application. So if you compare it with a low-level application, it's expensive, but if you compare it with the same-level application, it's pretty much cost-effective, I think."
report
Use our free recommendation engine to learn which Microsoft Security Suite solutions are best for your needs.
860,592 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
19%
Healthcare Company
9%
Manufacturing Company
9%
Financial Services Firm
9%
Computer Software Company
16%
Financial Services Firm
10%
Manufacturing Company
8%
Government
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What do you like most about Microsoft Entra Verified ID?
I like the Microsoft Authenticator app since it comes with two-factor authentication.
What needs improvement with Microsoft Entra Verified ID?
I don't think there are areas that could be improved with the product. It looks pretty good already. AI could be an area for continuous improvement or even pricing. The Microsoft Entra Verified ID ...
What is your primary use case for Microsoft Entra Verified ID?
We deal with the Microsoft Entra Verified ID as a dictionary where we put all the users. We use it more for internal purposes, but we do have a lot of guest accounts there. We are in the non-profit...
Is there a common threat intelligence tool that aggregates multiple threat intelligence sources?
Yes, Azure Sentinel is a SIEM on the Cloud. Multiple data sources can be uploaded and analyzed with Azure Sentinel and its Threat Hunting functionality with AI available as templates or customized ...
What is a better choice, Splunk or Azure Sentinel?
It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for ingestion of anything, but the charge per GB/Day Indexed and it gets expensive as log ...
Which is better - Azure Sentinel or AWS Security Hub?
We like that Azure Sentinel does not require as much maintenance as legacy SIEMs that are on-premises. Azure Sentinel is auto-scaling - you will not have to worry about performance impact, you will...
 

Also Known As

No data available
Azure Sentinel
 

Overview

 

Sample Customers

Information Not Available
Microsoft Sentinel is trusted by companies of all sizes including ABM, ASOS, Uniper, First West Credit Union, Avanade, and more.
Find out what your peers are saying about Microsoft Entra Verified ID vs. Microsoft Sentinel and other solutions. Updated: June 2025.
860,592 professionals have used our research since 2012.