No more typing reviews! Try our Samantha, our new voice AI agent.

Microsoft Entra Verified ID vs Microsoft Sentinel comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Microsoft Entra Verified ID
Ranking in Microsoft Security Suite
21st
Average Rating
8.0
Reviews Sentiment
6.8
Number of Reviews
8
Ranking in other categories
Customer Identity and Access Management (CIAM) (8th)
Microsoft Sentinel
Ranking in Microsoft Security Suite
6th
Average Rating
8.2
Reviews Sentiment
6.9
Number of Reviews
107
Ranking in other categories
Security Information and Event Management (SIEM) (4th), Security Orchestration Automation and Response (SOAR) (1st), AI-Powered Cybersecurity Platforms (5th)
 

Mindshare comparison

As of March 2026, in the Microsoft Security Suite category, the mindshare of Microsoft Entra Verified ID is 1.6%, up from 1.2% compared to the previous year. The mindshare of Microsoft Sentinel is 4.8%, down from 5.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Microsoft Security Suite Mindshare Distribution
ProductMindshare (%)
Microsoft Sentinel4.8%
Microsoft Entra Verified ID1.6%
Other93.6%
Microsoft Security Suite
 

Featured Reviews

MuhammadWaqar - PeerSpot reviewer
IT Director at Interwood Mobel Pvt Ltd
Supports user management and authentication but needs simpler hybrid integration for broader adoption
I believe there should be an easy provision for the on-premises and for the hybrid environment in Microsoft Entra Verified ID, as there seems to be some difficulty with hybrid implementations, especially in a country like Pakistan where most are transitioning to cloud but not fully migrating, instead opting for hybrid solutions. An ease for hybrid integration would greatly help the technical teams. I believe the policy implementation is a little bit complex on the Microsoft side; there should be a simpler way to implement policies, utilizing standardized templates for compliance, such as industry-specific templates for the service industry, which would be helpful for HIPAA and other compliances.
Kallamuddin Ansari - PeerSpot reviewer
Cyber Security Consultant at ProTechmanize
Centralized monitoring has improved threat response but cost control still needs refinement
Based on real operations used in our corporate IT environment, the key features include log correlation and incident view. Microsoft Sentinel's biggest strength is how it correlates multiple related alerts into a single incident. This significantly reduces alert noise and helps the SOC focus on real threats instead of isolated events. Another valuable feature is KQL-based threat hunting with Kusto Query Language. The flexibility of this language allows us to build custom hunting queries based on our environment's behavior. This is extremely useful for detecting low and slow threats or hidden threats that default rules may miss. Cloud-native scalability and stability is another important feature. Being cloud-native, Microsoft Sentinel scales well for medium to large corporate environments without infrastructure management. Stability has been solid in day-to-day production. SOAR automation using playbooks is a feature we highly recommend. Microsoft Sentinel's SOAR functionality helps automate repetitive SOC tasks like alert enrichment and notification. This saves analyst time and improves response consistency.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The authentication features of Microsoft Entra Verified ID are valuable. As an infrastructure professional, I appreciate the exceptional integration between on-premises Active Directory features and Entra ID."
"Entra allows us and our customers to access workloads on Azure and Office 365 securely, and we've integrated it with other applications to provide a single pane of glass for user identification, eliminating the need for multiple IDs."
"I would recommend this solution to others because it's simple enough to deploy."
"Microsoft Entra Verified ID has smoothed out our identity verification process and made it easier for us to authenticate users, making us more confident about our users being who they say they are so we can trust that we have secure logins for all our users."
"The biggest return on investment when using Microsoft Entra Verified ID is the single sign-on (SSO) feature."
"Microsoft Entra Verified ID has helped reduce fraud or impersonation attacks because if you are using a government-sanctioned ID, what is more secure than that?"
"I find Microsoft Dynamics 365 very easy and useful because most of the users on our end are using Microsoft, thus they are very familiar with the Microsoft Office stack, and some of SharePoint and Teams."
"The MFA number matching feature effectively prevents unauthorized access by phishing bad actors who might obtain email credentials. This feature requires users to verify a number on their screen, ensuring they only approve genuine requests."
"It helps to implement connectors for Microsoft solutions, available out of the box and providing real-time integration, including Microsoft 365 Defender (formerly Microsoft Threat Protection) solutions, and Microsoft 365 sources, including Office 365, Azure AD, Microsoft Defender for Identity (formerly Azure ATP), and Microsoft Defender for Cloud Apps, and more."
"Good monthly operational cost model for the detection and response outcomes delivered, M365 logs don't count toward the limits which is a good benefit."
"Microsoft Sentinel's ability to correlate data from multiple sources has improved our capability significantly."
"Sentinel is a full-fledged SIEM and SOAR solution, made to enhance your security posture and entirely centered around enhancing security."
"The pricing of the product is excellent."
"The main benefit is the ease of integration."
"Native integration with Microsoft security products or other Microsoft software is also crucial. For example, we can integrate Sentinel with Office 365 with one click. Other integrations aren't as easy. Sometimes, we have to do it manually."
"I like the KQL query. It simplifies getting data from the table and seeing the logs. All you need to know are the table names. It's quite easy to build use cases by using KQL."
 

Cons

"I still feel the pricing is on the higher side for larger customers."
"There are issues with the integration of Microsoft Entra Verified ID and MFA. Sometimes, the MFA process doesn't succeed, requiring users to sign out and log back in."
"I believe there should be an easy provision for the on-premises and for the hybrid environment in Microsoft Entra Verified ID, as there seems to be some difficulty with hybrid implementations, especially in a country like Pakistan where most are transitioning to cloud but not fully migrating, instead opting for hybrid solutions."
"While Microsoft continues to improve the solution, integrating the ID with biometric features could be enhanced, especially in terms of standard B2C flows for multi-factor authentication. Improvements in remembering devices and the timing of MFA triggers could also be beneficial."
"Standard support could be improved, as it's often not as responsive."
"The tool's expensive nature is an area of concern where improvements are required."
"I have not really seen return on investment with Microsoft Entra Verified ID."
"There is room for improvement in Microsoft Entra Verified ID, particularly in the integration with other platforms, as they could do better with the API, for example."
"Improvement-wise, I would like to see more integration with third-party solutions or old-school antivirus products that have some kind of logging capability. I wouldn't mind having that exposed within Sentinel. We do have situations where certain companies have bought licensing or have made an investment in a product, and that product will be there for the next two or three years. To be able to view information from those legacy products would be great. We can then better leverage the Sentinel solution and its capabilities."
"For certain vendors, some of the data that Microsoft Sentinel captures is redacted due to privacy reasons."
"They should integrate it with many other software-as-a-service providers and make connectors available so that you don't have to do any sort of log normalization."
"Our SIEM is only as good as the information we are ingesting. We are all human and we forget to ingest things."
"There is some relatively advanced knowledge that you have to have to properly leverage Sentinel's full capabilities. I'm thinking about things like the creation of workbooks, how you do threat-hunting, and the kinds of notifications you're getting... It takes time for people to ramp up on that and develop a familiarity or expertise with it."
"The three challenges we have are outside of the Microsoft ecosystem. In New Zealand, there are customers that run dual stack, running Microsoft but also competitor products, EDR software, cloud security software, and other tooling."
"In terms of features I would like to see in future releases, I'm interested in a few more use cases around automation. I do believe a lot of automation is available, and more is in progress, but that would be my area of interest."
"The data connectors for third-party tools could be improved, as some aren't available in Sentinel. They need to be available in the data connector panel."
 

Pricing and Cost Advice

"The pricing and setup are standard. With Entra, you choose between P1 and P2 licenses. We recommend having at least one P2 license in a company for better alert management, even though P2 is more expensive."
"I still feel the pricing is on the higher side for larger customers. They don't pay anything for on-prem Active Directory. Although we receive additional features with Microsoft’s SSO, pricing is an area Microsoft can work on."
"If one is cheap and ten is very expensive, I rate the product price as seven."
"The pricing is fair... With a traditional SIEM, you pay a lump sum for licenses. But with Sentinel, it's pay-as-you-go according to the amount of data you inject."
"Microsoft Sentinel can be costly, particularly for data management."
"It is certainly the most expensive solution. The cost is very high. We need to do an assessment using the one-month trial so that we can study the cost side. Before implementing it, we must do a careful calculation."
"Sentinel is a bit expensive. If you can figure a way of configuring it to meet your needs, then you can find a way around the cost."
"I don't know yet because they gave us a 30-day test window for free."
"I have had mixed feedback. At one point, I heard a client say that it sometimes seems more expensive. Most of the clients are on Office 365 or M365, and they are forced to take Azure SIEM because of the integration."
"For us, it is not expensive at this time, but if we start to collect all logs from our on-premise SIEM solutions, it will cost more than QRadar. If we calculate its cost over the next five or ten years, it will cost more than what we paid for QRadar."
"Azure Sentinel is very costly, or at least it appears to be very costly. The costs vary based on your ingestion and your retention charges."
report
Use our free recommendation engine to learn which Microsoft Security Suite solutions are best for your needs.
885,311 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
18%
Manufacturing Company
9%
Construction Company
8%
Financial Services Firm
7%
Computer Software Company
12%
Financial Services Firm
10%
Manufacturing Company
9%
Government
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business4
Large Enterprise4
By reviewers
Company SizeCount
Small Business41
Midsize Enterprise22
Large Enterprise46
 

Questions from the Community

What needs improvement with Microsoft Entra Verified ID?
It is hard for me to say how Microsoft Entra Verified ID can be improved. I really do not know the extent of how that can benefit everything. I am trying to learn that here at the Ignite conference.
What is your primary use case for Microsoft Entra Verified ID?
My main use cases for Microsoft Entra Verified ID are verifying the end user saying who they are and being able to back that up with government-issued proof.
What advice do you have for others considering Microsoft Entra Verified ID?
My organization has not implemented the Face Check feature yet; we are using YubiKeys. My organization's trust in digital interactions really has not changed since implementing Microsoft Entra Veri...
Is there a common threat intelligence tool that aggregates multiple threat intelligence sources?
Yes, Azure Sentinel is a SIEM on the Cloud. Multiple data sources can be uploaded and analyzed with Azure Sentinel and its Threat Hunting functionality with AI available as templates or customized ...
What is a better choice, Splunk or Azure Sentinel?
It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for ingestion of anything, but the charge per GB/Day Indexed and it gets expensive as log ...
Which is better - Azure Sentinel or AWS Security Hub?
We like that Azure Sentinel does not require as much maintenance as legacy SIEMs that are on-premises. Azure Sentinel is auto-scaling - you will not have to worry about performance impact, you will...
 

Also Known As

No data available
Azure Sentinel
 

Overview

 

Sample Customers

Information Not Available
Microsoft Sentinel is trusted by companies of all sizes including ABM, ASOS, Uniper, First West Credit Union, Avanade, and more.
Find out what your peers are saying about Microsoft Entra Verified ID vs. Microsoft Sentinel and other solutions. Updated: February 2026.
885,311 professionals have used our research since 2012.