Workforce mobility and the rise of cloud
services is an essential part of any business, but it creates a number of
challenges for IT. Data spread across devices and cloud services, unpredictable
schedules, and varied network connections all complicate efforts to protect and
govern enterprise information.
The Druva Cloud Platform (formerly Druva inSync &
Druva Phoenix) provides unified data protection, management, and information
governance across endpoints and cloud…
N/A
Microsoft Sentinel
Score 8.6 out of 10
N/A
Microsoft Sentinel (formerly Azure Sentinel) is designed as a birds-eye view across the enterprise. It is presented as a security information and event management (SIEM) solution for proactive threat detection, investigation, and response.
Some competitors Excel at either endpoint protection or SaaS apps, but not both. Druva gave us a single platform to protect laptops, Microsoft 365, Google Workspace, and more—streamlining management and reporting.
We also reviewed Veeam and Rubrik and while all three were good options, Druva Security Cloud won out as our completely cloud hosted solution of choice. Druva Security Cloud seemed to have a better user interface during the POCs. The sales team was proactive and pricing in our …
We liked Druva better for our company and environment. At the time of purchase, Druva outperformed the competition and was able to backup everything in our environment.
Druva is more cost effective for our environment then crash plan. We are also able to get more of our Junior technicians in the space to help support our staff with backups. crash plan was also difficult to implement and required almost around the clock maintenances and changes …
The major component was the cost. I just took a trial for the backup solution but when I asked Druva Security Cloud for the same it was very cost affective and easy to use for me then barracuda.
We use both Druva and OneDrive together to provide a bulletproof backup solution. Both of these are running constantly backing up our data. I wouldn't neccessarily compare both these solutions, but more say how they compliment each other on what they do. All solutions have …
The below are some the reasons Druva Security cloud stacks up against all the others: cost saving- it removed the need for hardware, or software maintenance centralized management - there is centralized management and improved visibility across native apps.
Druva Security Cloud's integration was seamless and the portal much more user friendly and easily understood. Ease of use and reporting makes it far superior to our Dell integration in the past.
At this point, being a smaller organization, we do not have the need to explore any of Druva's current offerings. When the time comes, we know right where to look. We have been more than impressed with everything we have gotten from Druva Security Cloud and their team.
Before Druva Data Resiliency Cloud we used Veeam with the cloud provider 11:11. Veeam was great and did what it needed to do BUT it left a large footprint on our production environment with setting up gateways and proxy VMs for the data. 11:11 was iLand and they were always …
The Druva Data Resiliency Cloud platform stands out from the competition by employing a multipronged strategy. Rubrik Security Cloud also offers scalability and data recovery while Cohesity DataProtect best performs by reducing the need for data silos. I believe that Druva …
Druva Data Resiliency Cloud's, encryption, single management portal and integrations made the decision easy. The pricing and the three year term made it even easier. When my cybersecurity insurance carrier mentioned Druva Phoenix as one of the best back up solutions to …
We decided to go with Microsoft Sentinel because it works really well with Microsoft tools we are already using. Microsoft Sentinel's intelligent features detect and resolve problems more quickly than Sumo Logic. It also allows us to pay for what we use and grow as we need. …
Well, primarily we use different stuff like CrowdStrike. We use different sign-on features. We primarily use those different products because we support a wider ecosystem.
Splunk, Google, SecOps. I look at how it stacks up based on the fact that it's the primary solution that we sell. So I think it stacks up really well. Why do we select it? Well, we selected it primarily because we're a very large Microsoft partner. The technology is very good …
Well before there was Microsoft Sentinel, you had other competing products like ArcSight or Splunk, et cetera. I think they have their own qualities, but the Microsoft integration story is really why we're using it.
We use intune to protect endpoints and we pull logs from all the endpoints through the intune connector into the Microsoft Sentinel SIEM and that way we can run rules on those logs to find anomalies.
Elastic seems to have a much better interface for log search and is able to filter out noise. Microsoft Sentinel also appears to generate a lot of false positives.
Elastic is some carbon for various use cases. So because Elastic is a very, very wrong history in the market. So Sentinel is very recent for products from my understanding.
Prior to using Sentinel, we were using Splunk specifically Splunk Enterprise Security and Splunk Cloud, so their on-prem and their cloud-based products. We switched originally for cost reasons, specifically cost control, but I have found that the ability to create reports, the …
Based on the overall infrastructure configuration that we have and also after analysing various solutions provided by Microsoft Sentinel, we came to a conclusion that the Microsoft Sentinel is the best option for us to help us in overall threat detection on our custom servers, …
I use most of the Sims that are out there, but RSAs, old Sim Log, logic, elastic, a lot of them. Sumo, we checked out Sumo too. We're a Microsoft shop and live almost entirely on top of a Microsoft ecosystem. We are considering other Microsoft security products to integrate …
As mentioned, the product was part of the purchase of several Microsoft Suites that we did earlier last year and with 200 licenses included, we can exclude those from the other SIEM and SOAR product, it just work well with the Microsoft's environment that we partially have Is …
The key advantage of using Sentinel lies in Microsoft already being a renowned name in cloud services. Hence, the Collection of data at the cloud scale across all users, devices, applications, and infrastructure, both on-premises and especially in the MS Cloud, is super easy. …
ArcSight is an on-prem solution that has a different approach than Sentinel.
In a basis this product is more complex to maintain and deploy. The query functionality in Sentinel is more powerful and easier to maintain. ArcSight has a much slower performance and an interface that …
We don't need to maintain a third-party SaaS solution or spend any time integrating it since Microsoft Sentinel is the ideal option to give a single point of attack detection and alert monitoring.
Microsoft Sentinel really goes the extra mile when it comes to an SIEM that slowly improves toward a proper SOAR, this may be the best selling point of the entire solution. Highly scalable, cloud-based, and nearly perfect when dealing with Microsoft-based infrastructures, …
Most of those have been out in the industry for a longer time, so they have a lot more user friendliness to them. So I'd say it's in the mix. It's just not as high as it should be or I would expect it to be.
Previous to Azure Sentinel, we were using the McAfee SIM and it just wasn't keeping up with the times and that was the choice of moving to Azure Sentinel.
We are a cloud-only shop, so Druva Data Resiliency Cloud is a natural fit. We do not have a large Azure VM presence, so I do not know how well they play in that space. If you are not cloud-focused, I am not sure that Druva Data Resiliency Cloud's strengths will be easily seen. However, in the cloud they are tough to beat.
We use it because when a user sees the suspicious activity on his account, Microsoft Sentinel gives alerts to the user's system and the admin system as well. When a user of one of our systems clicked a spam email, that email was trying to install a virus on our server, but Microsoft Sentinel gave an alert to the user and admin both, so that is why our team was able to fix that issue with Microsoft Sentinel very fast. However, it will not be the best option for you if your team is utilizing every feature but you are on a tight budget.
It is a good tool for threat detection and analysis of the threats. We are using this tool for real time threat detection on our employee machines as well as some servers.
It provides various options for collecting data sources by leveraging multiple sources using data connectors. This helps us in gathering data from multiple sources such as our servers as well as our employee machines.
One good thing about this tool is automated incident response thereby increasing the security of servers.
It takes some time to learn how to use and install it properly, and it does not connect effectively with external PaaS systems such as Salesforce CRM, Salesforce Commerce Cloud, and so on.
Microsoft can simplify the display of the logs to make them easier to study, and the user interface occasionally delays, which can also be enhanced.
This is the second company I've brought to Druva. Just today, I was tasked with recovering a file from a user that last saw it 6 months ago. I was able to restore it in under 5 minutes of getting the request. It's really that easy.
Usability is really high on my list when it comes to software/applications. As with all new technologies, there is a bit of a learning curve, but things are relatively easy to find. Occasionally you have to do a few extra clicks, but for the most part, it's quite user friendly and intuitive. You don't have to go a dozen levels deep to find what you're looking for - or at least the surface level issue.
The Microsoft Azure Sentinel solution is very good and even better if you use Azure. It's easy to implement and learn how to use the tool with an intuitive and simple interface. New updates are happening to always bring new news and improve the experience and usability. The solution brings reliability as it is from a very reliable manufacturer.
Like any service, there are scheduled maintenance periods and unscheduled outages, however outages have been very limited and fortunately have not had any impact on our environment.
Page response in the admin center is acceptable- rarely are we waiting for data to load. Backup speeds seem fine, and restore speeds are OK considering it's likely pulling data from cold storage. It often takes 30-60 seconds for the restore to begin transferring files, but speeds are acceptable thereafter
I can't downvote this facet on account of my never having to call upon Druva's Tech Support. Self-help is always my first port of call and the documentation provided by Druva has allowed me to proceed to a point where I can confidently use the system. Even without support, I trust the system implicitly. That said, I'm pretty sure if and when I need it, it'll be awesome.
Implementation from cloud ranger to Druva Data Resiliency Cloud platform was a seamless integration experience to upgrade the policies and license for continual backup/recovery support. This may be one of the best "set it and forget it" apps for backup solutions, that also allow notifications for failures etc...
We also reviewed Veeam and Rubrik and while all three were good options, Druva Security Cloud won out as our completely cloud hosted solution of choice. Druva Security Cloud seemed to have a better user interface during the POCs. The sales team was proactive and pricing in our experience was better for what we got/needed.
Microsoft Sentinel excels in cloud-native scalability, Microsoft ecosystem integration, and AI-driven threat detection with UEBA and Fusion rules, offering faster deployment and lower costs (48% cheaper per Forrester) than Splunk, QRadar, Exabeam, SentinelOne, Securonix, and Wazuh. It lags in third-party integrations and syslog parsing. Organizations choose Microsoft Sentinel for its cost-effectiveness, automation, and Microsoft synergy, especially in Azure-heavy environments, though Splunk and Exabeam lead in flexibility and UEBA, respectively.
As the product is cloud based within AWS, scaleability is unlimited. The on-premise units of scale are predictable and allow administrators to scale up / down as needed. In my experience, the flexibility around these appliances, allow organisations to vertically or horizontally scale the environment with confidence and ease. Conversely, it is possible to set thresholds to ensure that organisations do not over commit and manage budgets effectively.
More importantly it reduced 60% of our operational overhead and time savings in maintaining the backups.
This also tremendously reduced the manual failures like deduplicating the backups and there were many cases it saved us 40% of our entire bill by taking point in time backups.
It saved 1000's of dollars when we used the DR plan and rolled a new infra in less than few minuted with less manpower and less time.
As any cybersecurity product, this has to be more with risk to avoid loss in case of a ransomware that more than relate to a productivity increase. Maybe the impact could be that instead of having people that are checking 24/7 the dashboard, you could implement Sentinel and have less people checking that or people with less expertise. So the saving will be a minor but will be a saving in the cost of your team.