+
+

Related Products

  • Graylog
    440 Ratings
    Visit Website
  • ManageEngine Log360
    196 Ratings
    Visit Website
  • Blumira
    150 Ratings
    Visit Website
  • ManageEngine EventLog Analyzer
    211 Ratings
    Visit Website
  • AdRem NetCrunch
    165 Ratings
    Visit Website
  • Grafana Cloud
    860 Ratings
    Visit Website
  • Cloudflare
    2,048 Ratings
    Visit Website
  • Bitdefender Ultimate Small Business Security
    5 Ratings
    Visit Website
  • ManageEngine Endpoint Central
    3,347 Ratings
    Visit Website
  • New Relic
    2,941 Ratings
    Visit Website

About

Get a simple and fast security analytics implementation, along with a user-friendly interface that can be integrated with an entire IT infrastructure with LogPoint. LogPoint’s modern SIEM with UEBA provides advanced analytics and ML-driven automation capabilities that enable their customers to securely build-, manage, and effectively transform their businesses.They have a flat licensing model, based on nodes rather than data volume. This helps to reduce the cost of deploying a SIEM solution on-premise, in the cloud or even as an MSSP. The solution integrates easily with all devices in your network, giving a holistic and correlated overview of events in your IT infrastructure. LogPoint’s Modern SIEM solution translates all data into one common language, making it possible to compare events across all systems. Having a common language makes it both very easy and efficient to search, analyze and report on data.

About

Standing watch, by your side. Intelligent security analytics for your entire enterprise. See and stop threats before they cause harm, with SIEM reinvented for a modern world. Microsoft Sentinel is your birds-eye view across the enterprise. Put the cloud and large-scale intelligence from decades of Microsoft security experience to work. Make your threat detection and response smarter and faster with artificial intelligence (AI). Eliminate security infrastructure setup and maintenance, and elastically scale to meet your security needs—while reducing IT costs. Collect data at cloud scale—across all users, devices, applications, and infrastructure, both on-premises and in multiple clouds. Detect previously uncovered threats and minimize false positives using analytics and unparalleled threat intelligence from Microsoft. Investigate threats with AI and hunt suspicious activities at scale, tapping into decades of cybersecurity work at Microsoft.

Platforms Supported

Windows Supported
Mac Not Supported
Linux Not Supported
Cloud Supported
On-Premises Supported
iPhone Not Supported
iPad Not Supported
Android Not Supported
Chromebook Not Supported

Platforms Supported

Windows Not Supported
Mac Not Supported
Linux Not Supported
Cloud Supported
On-Premises Supported
iPhone Not Supported
iPad Not Supported
Android Not Supported
Chromebook Not Supported

Audience

IT security teams searching for a powerful SIEM solution

Audience

IT security teams

Support

Phone Support Supported
24/7 Live Support Supported
Online Not Supported

Support

Phone Support Supported
24/7 Live Support Supported
Online Supported

API

Offers API Not Supported

API

Offers API Supported

Screenshots and Videos

Screenshots and Videos

Pricing

No information available.
Free Version Not Supported
Free Trial Supported

Pricing

Logs from Microsoft 365 are ingested for free.
Free Version Supported
Free Trial Supported

Reviews/Ratings

Overall 5.0 / 5
ease 5.0 / 5
features 4.0 / 5
design 5.0 / 5
support 5.0 / 5

Reviews/Ratings

Overall 5.0 / 5
ease 4.5 / 5
features 5.0 / 5
design 4.0 / 5
support 5.0 / 5

Pros & Cons from Real Users

Pros

  • Ease of use and easy installation and customisation, no Linux or Unix knowhow needed, Excellent Support that also helps with how to questions, Supported Normalization of hundreds of log sources. Non programming SOAR with easy to use graphical workbook editor & very nice case management, Predefined and supported collectors and fetchers, Dashboards, Reports, Alert Rules etc.

Cons

  • If we must find something, user administration and rule based access is not always 100% transparent and might lead to duplicates.

Pros & Cons from Real Users

Pros

  • Seamlessly integrates with other Microsoft services such as Azure and Office 365, leveraging existing infrastructure and familiarity. Utilizes AI and machine learning to detect and respond to advanced threats quickly. Scales effectively to meet the needs of both small businesses and large enterprises, handling vast amounts of data efficiently. Provides automation capabilities for incident response and remediation, improving efficiency and reducing manual effort. Helps organizations meet compliance requirements with built-in tools and capabilities.
  • Built on Azure, Microsoft Sentinel scales effortlessly to handle increasing log volumes without requiring on-premises infrastructure upgrades Deep integration with M365, Azure Active Directory, Defender for Endpoint, and mdCloud enhances security monitoring across endpoints, identities, and workloads Sentinel collects and correlates data from a wide range of sources, including third-party solutions, using connectors. Integration with threat intelligence feeds enhances its detection capabilities Supports KQL (Kusto Query Language) for custom query creation, giving analysts flexibility in analyzing and visualizing log data Sentinel leverages built-in AI and ML to identify anomalies, detect threats, and reduce false positives. Customizable analytics rules allow security teams to focus on relevant alerts

Cons

  • Users may face a learning curve, especially if they are not familiar with Azure or Microsoft's ecosystem, impacting initial setup and configuration. Depending on usage and scale, costs associated with Azure Sentinel can be significant, especially for smaller organizations or those with limited budgets.
  • While Sentinel follows a pay-as-you-go model, costs for data ingestion can escalate quickly, especially for large-scale organizations generating high volumes of logs. Retention beyond 90 days incurs additional expenses, making cost management a challenge Sentinel works best within the Microsoft ecosystem. Organizations with diverse tech stacks or heavy reliance on non-Microsoft services may find its integrations with third-party tools less seamless or feature-rich compared to vendor-agnostic SIEM solutions

Training

Documentation Supported
Webinars Supported
Live Online Not Supported
In Person Supported

Training

Documentation Supported
Webinars Supported
Live Online Supported
In Person Supported

Company Information

LogPoint
Founded: 2001
Denmark
www.logpoint.com

Company Information

Microsoft
Founded: 1975
United States
azure.microsoft.com/en-us/products/microsoft-sentinel/

Alternatives

Alternatives

EventSentry

EventSentry

NETIKUS.NET ltd

Categories

Categories

SIEM Features

Application Security Supported
Behavioral Analytics Supported
Compliance Reporting Supported
Endpoint Management Supported
File Integrity Monitoring Supported
Forensic Analysis Supported
Log Management Supported
Network Monitoring Supported
Real Time Monitoring Supported
Threat Intelligence Supported
User Activity Monitoring Supported

Application Performance Monitoring (APM) Features

Baseline Manager Not Supported
Diagnostic Tools Supported
Full Transaction Diagnostics Supported
Performance Control Supported
Resource Management Not Supported
Root-Cause Diagnosis Supported
Server Performance Supported
Trace Individual Transactions Supported

Computer Security Features

Anti Spam Not Supported
Antivirus Not Supported
Audit Trail Not Supported
Compliance Management Supported
Database Security Audit Supported
File Access Control Not Supported
Financial Data Protection Not Supported
Maintenance Scheduling Not Supported
Real Time Monitoring Supported
Security Event Log Supported
Virus Definition Update Not Supported
Vulnerability Protection Supported

SIEM Features

Application Security Supported
Behavioral Analytics Supported
Compliance Reporting Supported
Endpoint Management Supported
File Integrity Monitoring Supported
Forensic Analysis Supported
Log Management Supported
Network Monitoring Supported
Real Time Monitoring Supported
Threat Intelligence Supported
User Activity Monitoring Supported

Integrations

NXLog Supported
SOC Prime Platform Supported
Amazon Redshift Not Supported
Amazon Simple Queue Service (SQS) Not Supported
Azure DevOps Not Supported
Blink Not Supported
Chronicle SOAR Supported
CybaOps Not Supported
EndaceProbe Not Supported
Guardeon Not Supported
IONIX Not Supported
Liminal Not Supported
LinkedIn Not Supported
PhishEye Not Supported
Proofpoint Adaptive Email Security Not Supported
Silent Push Not Supported
Sophos Cloud Optix Not Supported
VirtualMetric Not Supported
WithSecure Elements Infinite Not Supported
Zendesk Not Supported

Integrations

NXLog Supported
SOC Prime Platform Supported
Amazon Redshift Supported
Amazon Simple Queue Service (SQS) Supported
Azure DevOps Supported
Blink Supported
Chronicle SOAR Not Supported
CybaOps Supported
EndaceProbe Supported
Guardeon Supported
IONIX Supported
Liminal Supported
LinkedIn Supported
PhishEye Supported
Proofpoint Adaptive Email Security Supported
Silent Push Supported
Sophos Cloud Optix Supported
VirtualMetric Supported
WithSecure Elements Infinite Supported
Zendesk Supported
Claim LogPoint and update features and information
Claim LogPoint and update features and information
Claim Microsoft Sentinel and update features and information
Claim Microsoft Sentinel and update features and information