Try our new research platform with insights from 80,000+ expert users

Microsoft Entra Verified ID vs Microsoft Sentinel comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Microsoft Entra Verified ID
Ranking in Microsoft Security Suite
20th
Average Rating
8.0
Reviews Sentiment
6.8
Number of Reviews
8
Ranking in other categories
Customer Identity and Access Management (CIAM) (8th)
Microsoft Sentinel
Ranking in Microsoft Security Suite
6th
Average Rating
8.2
Reviews Sentiment
7.0
Number of Reviews
104
Ranking in other categories
Security Information and Event Management (SIEM) (4th), Security Orchestration Automation and Response (SOAR) (1st), AI-Powered Cybersecurity Platforms (5th)
 

Mindshare comparison

As of January 2026, in the Microsoft Security Suite category, the mindshare of Microsoft Entra Verified ID is 1.5%, down from 1.7% compared to the previous year. The mindshare of Microsoft Sentinel is 4.7%, down from 5.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Microsoft Security Suite Market Share Distribution
ProductMarket Share (%)
Microsoft Sentinel4.7%
Microsoft Entra Verified ID1.5%
Other93.8%
Microsoft Security Suite
 

Featured Reviews

MuhammadWaqar - PeerSpot reviewer
IT Director at Interwood Mobel Pvt Ltd
Supports user management and authentication but needs simpler hybrid integration for broader adoption
I believe there should be an easy provision for the on-premises and for the hybrid environment in Microsoft Entra Verified ID, as there seems to be some difficulty with hybrid implementations, especially in a country like Pakistan where most are transitioning to cloud but not fully migrating, instead opting for hybrid solutions. An ease for hybrid integration would greatly help the technical teams. I believe the policy implementation is a little bit complex on the Microsoft side; there should be a simpler way to implement policies, utilizing standardized templates for compliance, such as industry-specific templates for the service industry, which would be helpful for HIPAA and other compliances.
Kallamuddin Ansari - PeerSpot reviewer
Cyber Security Consultant at ProTechmanize
Centralized monitoring has improved threat response but cost control still needs refinement
Based on real operations used in our corporate IT environment, the key features include log correlation and incident view. Microsoft Sentinel's biggest strength is how it correlates multiple related alerts into a single incident. This significantly reduces alert noise and helps the SOC focus on real threats instead of isolated events. Another valuable feature is KQL-based threat hunting with Kusto Query Language. The flexibility of this language allows us to build custom hunting queries based on our environment's behavior. This is extremely useful for detecting low and slow threats or hidden threats that default rules may miss. Cloud-native scalability and stability is another important feature. Being cloud-native, Microsoft Sentinel scales well for medium to large corporate environments without infrastructure management. Stability has been solid in day-to-day production. SOAR automation using playbooks is a feature we highly recommend. Microsoft Sentinel's SOAR functionality helps automate repetitive SOC tasks like alert enrichment and notification. This saves analyst time and improves response consistency.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The MFA number matching feature effectively prevents unauthorized access by phishing bad actors who might obtain email credentials. This feature requires users to verify a number on their screen, ensuring they only approve genuine requests."
"The authentication features of Microsoft Entra Verified ID are valuable. As an infrastructure professional, I appreciate the exceptional integration between on-premises Active Directory features and Entra ID."
"Microsoft Entra Verified ID has smoothed out our identity verification process and made it easier for us to authenticate users, making us more confident about our users being who they say they are so we can trust that we have secure logins for all our users."
"I like the Microsoft Authenticator app since it comes with two-factor authentication."
"I find Microsoft Dynamics 365 very easy and useful because most of the users on our end are using Microsoft, thus they are very familiar with the Microsoft Office stack, and some of SharePoint and Teams."
"Microsoft Entra Verified ID has helped reduce fraud or impersonation attacks because if you are using a government-sanctioned ID, what is more secure than that?"
"I would recommend this solution to others because it's simple enough to deploy."
"The most valuable features of the solution are mainly in the areas of security and auditing."
"I've worked on most of the top SIEM solutions, and Sentinel has an edge in most areas. For example, it has built-in SOAR capabilities, allowing you to run playbooks automatically. Other vendors typically offer SOAR as a separate licensed solution or module, but you get it free with Sentinel. In-depth incident integration is available out of the box."
"Microsoft Sentinel stands out among SIEM tools for its user-friendliness and powerful built-in query language."
"It has a lot of great features."
"We feel safe knowing that we have a solution that we can use to react in case of an emergency."
"The signal correlation and dashboards features of Microsoft Sentinel are fantastic because it correlates the signal logs with other products. The customizable dashboards are also valuable."
"The features that stand out are the detection engine and its integration with multiple data sources."
"Mainly, this is a cloud-native product. So, there are zero concerns about managing the whole infrastructure on-premises."
"It is always correlating to IOCs for normal attacks, using Azure-related resources. For example, if any illegitimate IP starts unusual activity on our Azure firewall, then it automatically generates an alarm for us."
 

Cons

"While Microsoft continues to improve the solution, integrating the ID with biometric features could be enhanced, especially in terms of standard B2C flows for multi-factor authentication. Improvements in remembering devices and the timing of MFA triggers could also be beneficial."
"I believe there should be an easy provision for the on-premises and for the hybrid environment in Microsoft Entra Verified ID, as there seems to be some difficulty with hybrid implementations, especially in a country like Pakistan where most are transitioning to cloud but not fully migrating, instead opting for hybrid solutions."
"The tool's expensive nature is an area of concern where improvements are required."
"There are issues with the integration of Microsoft Entra Verified ID and MFA. Sometimes, the MFA process doesn't succeed, requiring users to sign out and log back in."
"Microsoft products basically have no support other than the knowledge base, so I would give it a two out of 10."
"There is room for improvement in Microsoft Entra Verified ID, particularly in the integration with other platforms, as they could do better with the API, for example."
"I have not really seen return on investment with Microsoft Entra Verified ID."
"I must do two-factor authentication when I sign in from a different location. It creates friction. It's not personalized for the end user. I would like to see specific insights."
"If I can use Sentinel offline at home and use it on a local network, it would be great. I'm not sure if I can use Sentinel offline versus the tools I have."
"Sentinel should be improved with more connectors. At the moment, it only covers a few vendors. If I remember correctly, only 100 products are supported natively in Sentinel, although you can connect them with syslog. But Microsoft should increase the number of native connectors to get logs into Sentinel."
"The on-prem log sources still require a lot of development."
"If I see an alert and I want to drill down and get more details about the alert, it's not just one click. In other SIEM tools, you just have to click the IP address of the entity and they give you the complete picture. In Sentinel, you have to write queries or use saved queries to get details."
"Its documentation is not so simple. It is easy for somebody who is Microsoft certified or more closely attached to Microsoft solutions. It is not easy for those who are working on open-source platforms. There isn't a central point where everything is documented, and there is no specific training or certification."
"Sometimes, we are observing large ingestion delays. We expect logs within 5 minutes, but it takes about 10 to 15 minutes."
"There is room for improvement in terms of integrations. We have some tools, such as our off-site Meraki firewalls, that have not fully integrated with Sentinel. We lack integration for Syslogs into Sentinel."
"From a client perspective, they'd like to see more cost savings."
 

Pricing and Cost Advice

"The pricing and setup are standard. With Entra, you choose between P1 and P2 licenses. We recommend having at least one P2 license in a company for better alert management, even though P2 is more expensive."
"I still feel the pricing is on the higher side for larger customers. They don't pay anything for on-prem Active Directory. Although we receive additional features with Microsoft’s SSO, pricing is an area Microsoft can work on."
"If one is cheap and ten is very expensive, I rate the product price as seven."
"The price is reasonable because Sentinel includes features like user behavior analytics and SOAR that are typically sold separately. Overall, a standalone on-prem solution would require some high-end servers, and there's a different cost. It is a cloud-based solution, so there are backend cloud computing costs, but they are negligible."
"Sentinel is costly compared to other solutions, but it's fair. SIEM solutions like CrowdStrike charge based on daily log volume. They generally process a set number of logs for free before they start charging. Microsoft's pricing is clearer. It's free under five gigabytes. Some of these logs we ingest have a cost, so they don't hide it. I believe the tenant pays the price, and Microsoft helps create awareness of the cost."
"It is priced fairly given the value that you get from the use of the product. The biggest mistake people make with Microsoft Sentinel is not understanding the pricing model and the amount of data that they are going to be running through the tool because you are paying based on the flow. You are paying based on the amount of data that is moving through the tool. People do not plan, and therefore, they get surprised by the cost associated with using the tool. They connect everything because they want to know everything, but connecting everything is very expensive."
"The solution is expensive and there is a daily usage fee."
"Cost-wise, Sentinel is based on the volume of information being ingested, so it can be quite pricey. The ability to use strategies to control what data is being ingested is important."
"From a cost perspective, there are some additional charges in addition to the licensing."
"The pricing isn't very high. It depends on the number of logs you have. If you're expecting to ingest 50 to 60G in a day, but you're only ingesting 20 to 25G per day at first and you have a good team to analyze the logs, then you can segregate the ingestion at under 15G."
"The pay-as-you-go model is beneficial to customers."
report
Use our free recommendation engine to learn which Microsoft Security Suite solutions are best for your needs.
881,082 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
18%
Manufacturing Company
10%
Financial Services Firm
9%
Healthcare Company
8%
Computer Software Company
14%
Financial Services Firm
10%
Manufacturing Company
9%
Government
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business4
Large Enterprise4
By reviewers
Company SizeCount
Small Business38
Midsize Enterprise22
Large Enterprise45
 

Questions from the Community

What needs improvement with Microsoft Entra Verified ID?
It is hard for me to say how Microsoft Entra Verified ID can be improved. I really do not know the extent of how that can benefit everything. I am trying to learn that here at the Ignite conference.
What is your primary use case for Microsoft Entra Verified ID?
My main use cases for Microsoft Entra Verified ID are verifying the end user saying who they are and being able to back that up with government-issued proof.
What advice do you have for others considering Microsoft Entra Verified ID?
My organization has not implemented the Face Check feature yet; we are using YubiKeys. My organization's trust in digital interactions really has not changed since implementing Microsoft Entra Veri...
Is there a common threat intelligence tool that aggregates multiple threat intelligence sources?
Yes, Azure Sentinel is a SIEM on the Cloud. Multiple data sources can be uploaded and analyzed with Azure Sentinel and its Threat Hunting functionality with AI available as templates or customized ...
What is a better choice, Splunk or Azure Sentinel?
It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for ingestion of anything, but the charge per GB/Day Indexed and it gets expensive as log ...
Which is better - Azure Sentinel or AWS Security Hub?
We like that Azure Sentinel does not require as much maintenance as legacy SIEMs that are on-premises. Azure Sentinel is auto-scaling - you will not have to worry about performance impact, you will...
 

Also Known As

No data available
Azure Sentinel
 

Overview

 

Sample Customers

Information Not Available
Microsoft Sentinel is trusted by companies of all sizes including ABM, ASOS, Uniper, First West Credit Union, Avanade, and more.
Find out what your peers are saying about Microsoft Entra Verified ID vs. Microsoft Sentinel and other solutions. Updated: December 2025.
881,082 professionals have used our research since 2012.