Centreon vs Sumo Logic Security comparison

Cancel
You must select at least 2 products to compare!
Microsoft Logo
32,763 views|18,195 comparisons
92% willing to recommend
Centreon Logo
7,609 views|4,825 comparisons
96% willing to recommend
Sumo Logic Logo
2,317 views|1,530 comparisons
95% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Centreon and Sumo Logic Security based on real PeerSpot user reviews.

Find out in this report how the two Security Information and Event Management (SIEM) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed Centreon vs. Sumo Logic Security Report (Updated: July 2019).
767,667 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"The solution has features that helped improve the security posture of our clients. It provides the ability to correlate a large variety of log sources very cost-effectively, especially for Microsoft sources.""The automation rules and playbooks are the most useful that I've seen. A number of other places segregate the automation and playbook as separate tools, whereas Microsoft is a SIEM and SOAR tool in one.""Sentinel uses Azure Logic Apps for automation, which is really powerful. This allows us to easily automate responses to incidents.""We didn't have anything similar. So, it really provides value from the incidents and automation point of view. The overview of the security fabric is most valuable.""The log query feature has been the most valuable because it's very good. You can put your data on the cloud and run queues from Sentinel. It will do it all very fast. I love that I don't have to upload it to an Excel file and then manually look for a piece of information. Sentinel is much faster and is good for big databases.""The pricing of the product is excellent.""The most valuable feature is the performance because unlike legacy SIEMs that were on-premises, it does not require as much maintenance.""Its inbuilt Kusto Query Language is a valuable feature. It provides the flexibility needed to leverage advanced data analytics rules and policies and enables us to easily navigate all our security events in a single view. It helps any user easily understand the data or any security lags in their data and applications."

More Microsoft Sentinel Pros →

"Valuable features include the ability to schedule downtime, intensity or depth of monitoring which it does, different plugin packs, Centreon MAP, Centreon BI.""We have a single GUI where we can view the status of all our infrastructure.""I can't point to one valuable feature. All of Centreon is good.""The most important feature is that it permits us to receive alarms if there is an incident within the infrastructure. The feature I love the most is the reporting feature, the MBI (Monitoring Business Intelligence) which permits us to send advanced reports to our customers in PDF format or in Doc format. We also deploy Centreon Map which gives our customers intuitive views of their information system.""Centreon's most valuable features are preventative maintenance and cost-efficiency. Everything is monitored, and we get a log before the system fails. We have an opportunity to fix the issue and avoid downtime.""The product is available in ISO image format, ready for deployment. Centreon also has a comprehensive guide and documentation that are simple and easy to follow.""It supports active monitoring so we don't have to use traps. From time to time traps are not very useful because we never know if they are actually working or not. The reporting part is also valuable as are the event logs. Using them we can check right away if something has had a hiccup.""We use the remote server functionality on some customer sites, because you can see an independent view and are not dependent on a single connection. If you have branch offices or bigger office outside your headquarters, you can use remote servers because if the connection is broken or disrupted, then remote server will obtain a view of your environment and server availability. This is a good point against using other solutions. Because with other solutions, you don't have this feature. Then, you will be blind if you have this type of a situation."

More Centreon Pros →

"I have no concerns about the stability of the product. I feel it handles the stress we put on it very well.""Technical support is always great.""We can integrate threat intelligence solutions into the product.""The most valuable features of Sumo Logic Security are the rules, use cases, and ease of use. Additionally, the integration is straightforward and good GUI.""We are able to diagnose problems before our customers.""The solution is quite stable.""With this tool, we provide access to every developer team the ability to find errors, then they come to us and ask for specific help.""For many of our services, we use Sumo Logic to track errors and send notifications to our Slack channel, if there are issues. Then, we have our support people monitoring this, and they can react quickly."

More Sumo Logic Security Pros →

Cons
"We have been working with multiple customers, and every time we onboard a customer, we are missing an essential feature that surprisingly doesn't exist in Sentinel. We searched the forums and knowledge bases but couldn't find a solution. When you onboard new customers, you need to enable the data connectors. That part is easy, but you must create rules from scratch for every associated connector. You click "next," "next," "next," and it requires five clicks for each analytical rule. Imagine we have a customer with 150 rules.""One key area that can be improved is by building a strong integration with our XDR platform.""They should just add more and more out-of-the-box connectors. It is quite a new product, and it has a lot of connectors, and even more would be good.""If I see an alert and I want to drill down and get more details about the alert, it's not just one click. In other SIEM tools, you just have to click the IP address of the entity and they give you the complete picture. In Sentinel, you have to write queries or use saved queries to get details.""There is some relatively advanced knowledge that you have to have to properly leverage Sentinel's full capabilities. I'm thinking about things like the creation of workbooks, how you do threat-hunting, and the kinds of notifications you're getting... It takes time for people to ramp up on that and develop a familiarity or expertise with it.""Improvement-wise, I would like to see more integration with third-party solutions or old-school antivirus products that have some kind of logging capability. I wouldn't mind having that exposed within Sentinel. We do have situations where certain companies have bought licensing or have made an investment in a product, and that product will be there for the next two or three years. To be able to view information from those legacy products would be great. We can then better leverage the Sentinel solution and its capabilities.""I would like to be able to monitor applications outside of the Azure Cloud.""There are certain delays. For example, if an alert has been rated on Microsoft Defender for Endpoint, it might take up to an hour for that alert to reach Sentinel. This should ideally take no more than one or two seconds."

More Microsoft Sentinel Cons →

"There are improvements that they need to make to their API. When we're using different systems and we want to disable monitoring for a specific server, we still can't do that through the API. That's something that's lacking.""Centreon technical support is only available during Central European business hours. When it comes to critical business solutions, there should be a 24/7 hotline that customers can rely on.""Centreon is actually missing an easy way to create a trendline for the metrics. Actually it is possible to create it, but you need a good knowledge of math, Centreon, and RRD.""Centreon needs to improve the granularity of the data as well as the graphical data. It would also be better to if there was improvement to the filtering/grouping system as well as the creation of views.""I would like to see a better UI, one which is more responsive.""Centreon is very bad with auto-scanning. It's very monolithic software. It doesn't have microservices and it only has basic clustering. You cannot, for example, have six or seven nodes for Centreon's cloud processes.""The most important issue is the capability to interconnect with other systems. It already exists for some of them. For example, the Stream Connector is something we use to populate data in another system. This kind of facility for connecting should exist for all products that it makes sense to have connected to a monitoring solution.""It is necessary to improve service monitoring of database services in the free version."

More Centreon Cons →

"We would like to have some type of predefined setup for the logs, making the setup easier by default.""I would like to see improvement in the user experience when configuring things, ingesting logs, and creating ports.""The API integration in Sumo Logic Security could improve. There are delayed connections or they stop and then automatically start. Having a seamless log collection would be beneficial.""We would like the ability to drill down into a dashboard and get into deeper levels.""In my opinion, this solution has a steep learning curve and requires practice if users to be able to use this tool very efficiently.""If you want to up your subscription through the AWS Marketplace, it can be difficult. You can't just go back to the AWS Marketplace, and say, "I want a bigger one now." You have to contact the sales team, then they do it on the back-end. This could definitely be improved.""The initial setup is the most stressful, like learning how to use it.""There needs to be improvement on imported data which can be used within Sumo Logic to do more advanced queries."

More Sumo Logic Security Cons →

Pricing and Cost Advice
  • "It comes with a Microsoft subscription which the customer has, so they don't have to invest somewhere else."
  • "It is a consumption-based license model. bands at 100, 200, 400 GB per day etc. Azure Sentinel Pricing | Microsoft Azure"
  • "Good monthly operational cost model for the detection and response outcomes delivered, M365 logs don't count toward the limits which is a good benefit."
  • "I have had mixed feedback. At one point, I heard a client say that it sometimes seems more expensive. Most of the clients are on Office 365 or M365, and they are forced to take Azure SIEM because of the integration."
  • "It is kind of like a sliding scale. There are different tiers of pricing that go from $100 per day up to $3,500 per day. So, it just kind of depends on how much data is being stored. There can be additional costs to the standard license other than the additional data. It just kind of depends on what other services you're spinning up in Azure, or if you're using something like Azure log analytics."
  • "I am just paying for the log space with Azure Sentinel. It costs us about $2,000 a month. Most of the logs are free. We are only paying money for Azure Firewall logs because email logs or Azure AD logs are free to use for us."
  • "Sentinel is a bit expensive. If you can figure a way of configuring it to meet your needs, then you can find a way around the cost."
  • "Azure Sentinel is very costly, or at least it appears to be very costly. The costs vary based on your ingestion and your retention charges."
  • More Microsoft Sentinel Pricing and Cost Advice →

  • "It's quite expensive when you use the Enterprise version, but if you compare it to other providers, it's more like a middle-of-the-line product. It's always good to have a price that is lower, but I would say the price is okay because we get very good support and if we have any other issues we can always contact them. There has never been a time when I didn't get help from them."
  • "In terms of licensing, you have to think through if the components that need licensing are really needed. For example, the Map module: If you don't need a map to be shown, I don't see a point in paying for those licenses, if you just use it a couple of times a month or a couple of times a week... You can use the Centreon free version and get the main features. The licensing part is, I would say, only for bigger customers who have the option to pay more and who really need those kinds of modules, fancy reports, etc."
  • "For more complex tasks, we use prepaid support days and ask Centreon to come onsite."
  • "Centreon is an open source product. Thus, there is no need for licensing."
  • "The pricing is acceptable."
  • "They only sell four hour slots for support, so if you have just one question, then you need to pay for four hours. Or, you need to wait until you have enough questions to fill those four hours. They are not flexible in this."
  • "I think Centreon's pricing is fair, especially given the criticality of our system. They were cheaper than the other solutions. The licensing terms were pretty straightforward. I believe it was based on the number of hosts."
  • "The solution is very effective, despite the low price."
  • More Centreon Pricing and Cost Advice →

  • "Purchasing Sumo Logic through the AWS Marketplace was a simple step."
  • "Purchasing the solution through the AWS Marketplace is very easy."
  • "We chose to go through the AWS Marketplace because it makes it a lot easier when we bill our customers. Rather than having to get multiple different sources of information then correlate a monthly bill for our customers, it is just included in the AWS usage charges."
  • "The AWS Marketplace pricing is fairly reasonable for what it does. I wouldn't call it expensive, but I wouldn't call it cheap. It is pretty good."
  • "The only limit to the scalability of the product for us is how much we are willing to pay."
  • "The price scaling comes in a bit expensive."
  • "Pricing has been cheaper than some of the competing tools, like Splunk."
  • "If we went to ELK Stack, which is open source, it would have been less costly, but it would have required more development from our side."
  • More Sumo Logic Security Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
    767,667 professionals have used our research since 2012.
    Questions from the Community
    Top Answer:Yes, Azure Sentinel is a SIEM on the Cloud. Multiple data sources can be uploaded and analyzed with Azure Sentinel and… more »
    Top Answer:It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for… more »
    Top Answer:We like that Azure Sentinel does not require as much maintenance as legacy SIEMs that are on-premises. Azure Sentinel is… more »
    Top Answer:Centreon's most valuable features are preventative maintenance and cost-efficiency. Everything is monitored, and we get… more »
    Top Answer:Prometheus provides the ability to automate the backup of my infrastructure. This automatic backup capability allows me… more »
    Top Answer:We can integrate threat intelligence solutions into the product.
    Top Answer:The product is costly. At the same cost, we can get other tools with better features and capabilities.
    Top Answer:The query of Sumo Logic is complex. It should be improved. The solution should improve its UI. FireEye, Splunk, and… more »
    Comparisons
    Also Known As
    Azure Sentinel
    Learn More
    Overview

    Microsoft Sentinel is a scalable, cloud-native, security information event management (SIEM) and security orchestration automated response (SOAR) solution that lets you see and stop threats before they cause harm. Microsoft Sentinel delivers intelligent security analytics and threat intelligence across the enterprise, providing a single solution for alert detection, threat visibility, proactive hunting, and threat response. Eliminate security infrastructure setup and maintenance, and elastically scale to meet your security needs—while reducing IT costs. With Microsoft Sentinel, you can:

    - Collect data at cloud scale—across all users, devices, applications, and infrastructure, both on-premises and in multiple clouds

    - Detect previously uncovered threats and minimize false positives using analytics and unparalleled threat intelligence from Microsoft

    - Investigate threats with AI and hunt suspicious activities at scale, tapping into decades of cybersecurity work at Microsoft

    - Respond to incidents rapidly with built-in orchestration and automation of common tasks

    To learn more about our solution, ask questions, and share feedback, join our Microsoft Security, Compliance and Identity Community.

    Centreon is an all-in-one IT monitoring solution that is a network, system, applicative supervision, and monitoring tool. It is free and open source, and one of the most flexible and powerful monitoring softwares on the market.

    Centreon Features

    Centreon has many valuable key features. Some of the most useful ones include:

    • Supervision of hybrid infrastructures, from one end to the other
    • Open and flexible architecture 
    • Open-source solution, downloadable for free
    • Filtering capability in GUI interface
    • Proactive end to end monitoring
    • Easily configurable and simple to handle
    • Dedicated dashboard widgets
    • Scalability
    • Independent application for monitoring
    • End to end reporting with actual logs

    Centreon Benefits

    There are several benefits to implementing Centreon. Some of the biggest advantages the solution offers include:

    • Single platform, multi-user rights & access: Centreon is designed with built-in ACL, allowing enterprise users access to the monitored data on a need-to-know basis.
    • Smart data-mapping for customized macro & micro views: Centreon provides real-time custom views in multiple screens with graphic-rich data mapping, which also enables monitoring operators to act and troubleshoot from a distance.
    • Ready monitoring intelligence & reporting: With Centreon, you can easily generate reports of essential operational KPIs by using pre-configured templates, and add reports as needed by exploiting the dedicated monitoring data warehouse.

    Reviews from Real Users

    Below are some reviews and helpful feedback written by Centreon users.

    PeerSpot user Thor M., CEO at a tech services company, says, "The single-pane view provides us a view of all of our network infrastructure, and it is one of the most important tools that we use to see the status of our customers' networks. It provides a nice benefit when it comes to helping align IT operations with business objectives. The top-down views, dashboards, and business context reporting are things that are nice to have because you want to be able to show the customer that everything is working, that problems have been addressed, and that you're providing value.” 

    Thomas C., Managing Director, Canada at Eva, comments, “The most valuable feature of the solution is the flexibility, the ability to integrate all kinds of equipment. As long as something has an IP you can monitor it. What we try to achieve all the time is not only saying a company's system is available, but to give additional data on the performance of the equipment. So the flexibility is what matters the most to us, where we can script everything. Centreon has a lot of Plugin Packs, meaning they support, by design, a lot of devices. And on top of that, we have the ability to add our own scripts and do whatever we want and display the data as we want in the central dashboards.”

    Marcilio L., President at ITS Solucoes, expresses, "The dashboards are valuable because they ease troubleshooting and viewing. It becomes easier to locate the source of a problem... The dashboards make it easier to communicate with our clients. They don't want to see the alert console, they want to see a beautiful dashboard representing their network and their business and to watch it in case something is wrong in their environment."

    Florent Q., Network Engineer at a computer software company, mentions, "The most valuable feature is that we can manually configure everything we need. After it comes inside the interface of Centreon, you can display it. Because the interface is quite user-friendly, you can manually configure the configuration very deeply, which is very pleasant and useful because you can monitor and see everything on your service list, dashboard, or MAP. The most useful feature for me is that you can create your own plugin and monitoring query."

    Sumo Logic empowers the people who power modern, digital business. Our cloud-native SaaS analytics platform powered by logs helps customers deliver reliable and secure cloud-native applications. With Sumo Logic, practitioners and developers can ensure application reliability, secure and protect against modern threats and gain insights into their cloud infrastructures. Customers worldwide rely on our scalable platform to get powerful real-time analytics and insights across observability and security solutions for their cloud-native applications. For more information, visit: SUMOLOGIC.COM

    Sample Customers
    Microsoft Sentinel is trusted by companies of all sizes including ABM, ASOS, Uniper, First West Credit Union, Avanade, and more.
    Airbus, Bollore, BT, Canal Plus, Kuehne Nagel, Limagrain, LVMH, Oberthur Technologies, Orange, Darty, Addax Petroleum, Plastic Omnium, Auchan, Valeo, Saint Gobin, Clarins, Hugo Boss, JC Decaux, French Government (Defense, Justice, Environment, Agriculture), OptiComm, Thales, Zeiss.
    Top Industries
    REVIEWERS
    Financial Services Firm22%
    Computer Software Company11%
    Manufacturing Company8%
    Comms Service Provider8%
    VISITORS READING REVIEWS
    Computer Software Company16%
    Financial Services Firm10%
    Government9%
    Manufacturing Company7%
    REVIEWERS
    Computer Software Company33%
    Logistics Company22%
    Comms Service Provider11%
    Financial Services Firm11%
    VISITORS READING REVIEWS
    Computer Software Company17%
    Government12%
    Financial Services Firm9%
    Comms Service Provider8%
    REVIEWERS
    Financial Services Firm30%
    Media Company20%
    Retailer10%
    Transportation Company10%
    VISITORS READING REVIEWS
    Computer Software Company15%
    Financial Services Firm11%
    Government9%
    Manufacturing Company8%
    Company Size
    REVIEWERS
    Small Business33%
    Midsize Enterprise21%
    Large Enterprise47%
    VISITORS READING REVIEWS
    Small Business25%
    Midsize Enterprise16%
    Large Enterprise59%
    REVIEWERS
    Small Business42%
    Midsize Enterprise21%
    Large Enterprise38%
    VISITORS READING REVIEWS
    Small Business28%
    Midsize Enterprise15%
    Large Enterprise58%
    REVIEWERS
    Small Business26%
    Midsize Enterprise11%
    Large Enterprise63%
    VISITORS READING REVIEWS
    Small Business25%
    Midsize Enterprise16%
    Large Enterprise59%
    Buyer's Guide
    Centreon vs. Sumo Logic Security
    July 2019
    Find out what your peers are saying about Centreon vs. Sumo Logic Security and other solutions. Updated: July 2019.
    767,667 professionals have used our research since 2012.

    Centreon is ranked 11th in IT Infrastructure Monitoring with 27 reviews while Sumo Logic Security is ranked 20th in Security Information and Event Management (SIEM) with 18 reviews. Centreon is rated 8.6, while Sumo Logic Security is rated 8.6. The top reviewer of Centreon writes "Proactive reporting guides our NOC on what needs to be fixed, saving them time". On the other hand, the top reviewer of Sumo Logic Security writes "Used to store and monitor application logs and VPC flow logs". Centreon is most compared with Zabbix, PRTG Network Monitor, Nagios Core, Icinga and Nagios XI, whereas Sumo Logic Security is most compared with Wazuh, Rapid7 InsightIDR, Splunk Enterprise Security, VMware Aria Operations for Logs and IBM Security QRadar. See our Centreon vs. Sumo Logic Security report.

    See our list of best Security Information and Event Management (SIEM) vendors.

    We monitor all Security Information and Event Management (SIEM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.